ReliaQuest, a cybersecurity company, documented the CaptiveCrunch campaign, which targets captive Wi-Fi portals to steal credentials via AitM attacks.
Discovered from: Russian Hackers Exploit Google OAuth and WhatsApp Linking in Multi-Platform Account Hijacking Campaigns