
Microsoft warns travelers of attacks that reach Microsoft 365 data
Microsoft describes CaptiveCrunch, a campaign that compromises captive portals to redirect travelers into device-code and OAuth phishing. Attacks register devices in Entra and collect Microsoft 365 data, turning easy SharePoint and Teams access into a travel-network liability.














