Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts
2026-08-04T07:23:21Z•836fbd75a94939fef25565fbf88a150621ff4005e191024e1901b53bf1d4cb40
CVE-2026-18577APT29Android malwareArch Linux AURBTMOB RATClickFixCountLoaderDOUBLECUPDeviceManager RATGoogle Password ManagerMicrosoft 365Midnight BlizzardN-able N-centralRails Active Storageauthentication bypasscloud breachcryptocurrency theftdata breachhotel Wi-Fi attacksinfostealermalicious packagespasskey theftremote code executionsupply-chain attack
What happened
BleepingComputer security feed covering active exploitation, malware campaigns, credential and passkey theft, supply-chain compromises, data breaches, and critical vulnerabilities. Notable items include Midnight Blizzard/APT29 hotel Wi-Fi attacks against Microsoft 365 accounts, exploitation of N-able N-central authentication bypass CVE-2026-18577, a critical Rails Active Storage flaw with potential remote code execution, malware delivered through ClickFix and fake Roblox installers, malicious Arch AUR package takeovers, and multiple cryptocurrency theft incidents.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 836fbd75a94939fef25565fbf88a150621ff4005e191024e1901b53bf1d4cb40
- Enrichment time
- 2026-08-04T07:23:21Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.