SECURITY WARNING: Please treat the URL above as you would your password and do not share it with anyone. See the Facebook Help Center for more information.
SECURITY WARNING: Please treat the URL above as you would your password and do not share it with anyone. See the Facebook Help Center for more information.
×
Our cookie policy has changed. Review our cookies policy for more details and to change your cookie preference.
By continuing to browse this site you are agreeing to our use of cookies.
.
.
.
.

The Economist

Gulliver

Business travel

Hotel spying

Spy-fi

  • Timekeeper
    Add this article to your reading list by clicking this button
    Rolex values your time.  Timekeeper by Rolex.
  • Like
    Like
    454453
  • This page has been shared 14 times. View these Tweets.
  • .
.
DIPLOMATS and businessmen visiting the old East Germany used to operate on the (frequently justified) assumption that the Stasi, that country's notoriously nosy secret police, was bugging their hotel rooms with microphones hidden in the headboard or tiny cameras concealed in paintings on the walls.
These days, it seems, things are more sophisticated. On November 10th Kaspersky Labs, a Russian computer security firm, alerted the world to the activities of a group it has dubbed DarkHotel, which has been hijacking hotel Wi-Fi connections since 2007 to allow it to spy on carefully chosen, deliberately targeted guests. Wired has a good write-up of the attack:
The hotel guest probably never knew what hit him. When he tried to get online using his five-star hotel’s WiFi network, he got a pop-up alerting him to a new Adobe software update. When he clicked to accept the download, he got a malicious executable instead.
What he didn’t know was that the sophisticated attackers who targeted him had been lurking on the hotel’s network for days waiting for him to check in. They uploaded their malware to the hotel’s server days before his arrival, then deleted it from the hotel network days after he left.
The attack is technically slick, and therefore probably the work of a nation-state. Nobody knows which, at least for now, but there are some grounds for juicy speculation. The hackers' targets, for instance, are mostly people from India, Japan and North Korea, all countries that either have nuclear weapons already or could easily build them. Most of the infected hotels are in Asia, though a few are in America. All that, combined with clues in the disassembled malware, has led some people to finger the South Korean government. 
If that is true, there might be some red faces in Seoul. Other victims of the malware seem to include senior bosses from American weapons firms (America is South Korea's chief ally in the region) as well as foreign executives from big companies in "all sectors having to do with economic development and investments". 
Kaspersky reckons that, since its exposé, the hackers have been hurriedly switching everything off and doing their best to disappear. Whether they will stay disappeared—and whether there might be other countries running similar attacks—is anyone's guess. The easiest way to get around the problem is probably to eschew hotel Wi-Fi altogether, buy yourself a mobile-data dongle (ideally with cash) and sit by the window when you need access to the internet. Although the truly paranoid might want to remember that there is no guarantee that mobile phone networks are from determined hackers either. 
.

Readers' comments

The Economist welcomes your views. Please stay on topic and be respectful of other readers. Review our comments policy.
.
.
shibakoen
But this shouldn't have worked. One would need admin access on most gov machines to download and install applications. Something like Adobe would be managed and patched. It would have only worked if we're talking about people using personal machines, right? Properly following procedures one would not be affected.
.
About Gulliver
Our correspondents inform and entertain business travellers with news and views to help them make the most of life on the road
.
.
Advertisement
.

Doing business in

Get Flash Player .

Recent Activity

.
Sign UpCreate an account or Log In to see what your friends are doing..
2,486 people recommend this.
.
965 people recommend this.
.
2,066 people recommend this.
.
9 people recommend this.
.
73 people recommend this.
.
2,964 people recommend this.
.
864 people recommend this.
.
2,303 people recommend this.
.
1,273 people recommend this.
.
3,767 people recommend this.
.
3,396 people recommend this.
.
198 people recommend this.
.
.
.
.
Follow The Economist
.
.
Advertisement
.
.
Products and events
Have you listened to The Economist Radio on Facebook?
The Economist Radio is an on-demand social listening platform that allows you to listen, share and recommend The Economist audio content
Test your EQ
Take our weekly news quiz to stay on top of the headlines
In Other Words
Try our new audio app and website, providing reporting and analysis from our correspondents around the world every weekday
Want more from The Economist?
Visit The Economist e-store and you’ll find a range of carefully selected products for business and pleasure, Economist books and diaries, and much more
Sponsor Content
.
.
.
Advertisement
.
.
.
.
Classified ads
.

International Development Organization

Vice President, Innovation and SME …

Jobs.economist.com
.
.
HK Logistics

Team Leader

Jobs.economist.com
.
.
.
.
0%
10%
20%
30%
40%
50%
60%
70%
80%
90%
100%