Comment on Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accountsparentComments−arm321moBut what about HSTS and HSTS preloading? This sounds more like a deauth/captive portal phish to me.−rolph1mothe hotspot was pwned and abusedthis is a more detailed, and first order account of things from reliaquest itself.https://reliaquest.com/blog/threat-spotlight-dns-poisoning-t...apparently a full funnel VPN policy prevents the workflow.
Comments
But what about HSTS and HSTS preloading? This sounds more like a deauth/captive portal phish to me.
the hotspot was pwned and abused
this is a more detailed, and first order account of things from reliaquest itself.
https://reliaquest.com/blog/threat-spotlight-dns-poisoning-t...
apparently a full funnel VPN policy prevents the workflow.