Microsoft: Russian Hackers Leveraging AI to Automate Global Hotel Cyberattacks
cyb3rops · x · 2026-08-01
Microsoft Security Blog detailed a widespread traffic manipulation campaign by the Russian threat actor Midnight Blizzard targeting travelers at hotels worldwide.
Dubbed CaptiveCrunch, the operation has been active since early May 2026. It exploits captive portals to manipulate DNS and HTTP traffic, redirecting users to attacker-controlled infrastructure to deliver malware or intercept authentication flows.
Crucially, the report notes that the group is using AI to support a significant portion of their operations, allowing their techniques and infrastructure to move and change dynamically at an unprecedented pace.
More from Safety
- OpenAI Disrupts Cambodia-Based Criminal Scam Operation Using ChatGPT — OpenAI News · 2026-08-04
- EU AI Act Enforcement Begins August 2 with New Transparency Rules — MannyKayy · 2026-08-01
- Judge Denies xAI's Request to Pause Minnesota Nudification Ban — Fcking_Chuck · 2026-08-01
- Security scanner allows malicious packages to exfiltrate credentials, raising AI safety concerns — RexDouglass · 2026-08-01
- Debate: Is Redwood an Unfair Auditor for AI Incidents Due to 'Doomer' Bias? — nptacek · 2026-08-01
- Scam Alert: Fraudsters Impersonating OpenAI and Anthropic Employees to Spread Malware — sterlingcrispin · 2026-08-01