Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens
2026-08-01T20:51:35Z•6277b75b7ec4b2680814fb53c8e6999939f98b4cf505aec45c5244443b63fdbf
CVE-2026-48449AI securityAPT29Adobe Campaign ClassicAndroid RATCVSS 10.0ClickFixDLL sideloadingDNS manipulationFlying EagleMicrosoft 365 token theftMidnight BlizzardRussian state-sponsored activitySilverFoxSouth KoreaStorm-2945ValleyRATautonomous offensive agentsbrand impersonationcredential thefthotel Wi-Fi hijackingkernel drivermalware deliveryremote code executionwatering-hole attack
What happened
Security news roundup covering Russian SVR-linked actors hijacking hotel Wi‑Fi portals to steal Microsoft 365 tokens, a critical Adobe Campaign Classic remote code execution vulnerability (CVE-2026-48449, CVSS 10.0), state-backed watering-hole attacks targeting South Korea, advanced SilverFox ValleyRAT activity, Android RAT infrastructure, brand impersonation and ClickFix malware delivery, and the growing use of AI in vulnerability discovery, security evaluations, and offensive operations.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 6277b75b7ec4b2680814fb53c8e6999939f98b4cf505aec45c5244443b63fdbf
- Enrichment time
- 2026-08-01T20:51:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.