
News Summary
- Microsoft has advised special caution as Russia-backed hackers are targeting hotel and public Wi-Fi users.
- Hackers are spreading viruses by displaying fake Windows or software update messages on the login portals of public Wi-Fi networks.
- Microsoft recommends users to rely on their personal mobile hotspots instead of public Wi-Fi and avoid suspicious pop-up messages or file downloads.
August 5, Kathmandu – Microsoft has issued a warning to exercise caution when using hotel Wi-Fi networks. Russia-backed hackers are targeting Wi-Fi networks at hotels and other public places. According to Microsoft’s Threat Intelligence division, the hacking group known as ‘Storm-2945’ is actively involved in these attacks.
The hackers are exploiting the captive portals seen when logging into Wi-Fi networks at hotels, airports, or conference venues. When users attempt to connect, they are shown fake software update or security file download prompts.
Users may encounter deceptive windows mimicking Windows updates, Windows Security virus scans, browser updates, or Google’s ‘Verify It Is You’ message. Clicking on these files or updates installs malware onto the device.
Once the virus infects the device, hackers can steal browser cookies, passwords, and sensitive documents. They may also gain remote control of the device by accessing Microsoft 365 accounts, email, and OneDrive.
To protect against such hacking attempts, Microsoft recommends using personal mobile hotspots or private networks instead of hotel, airport, or public Wi-Fi. It also warns users not to accept pop-up messages or file download requests when connected to public Wi-Fi.
Microsoft further advises not to download browser updates, security tools, or software updates from captive portals or suspicious websites. Users should remain vigilant for unusual activity on their devices or login screens when connected to public networks.





