Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Network Security - Five Million Public Wi-Fi Networks Found Exposed, Zimperium Warns
Network Security Attacks Latest News Malware Mobile Security News & Analysis Security Study & Research

Five Million Public Wi-Fi Networks Found Exposed, Zimperium Warns

Kirsten DoyleBy Kirsten DoyleJuly 21, 20255 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Five Million Public Wi-Fi
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

With summer in full swing, the world is moving again. Airports are crowded, business trips are back, and employees are logging in from cafés, taxis, and terminals. But as travel picks up, so do the risks, particularly for the mobile devices we carry with us everywhere.

According to Zimperium’s latest research, more than 5 million unsecured public Wi-Fi networks have been discovered globally since January. One-third of users are connecting to them. And attackers are waiting. 

“Phones and tablets have become essential productivity tools for a mobile workforce,” Zimperium researchers wrote. “But without the right protections, they can become serious liabilities.”

Mobile Is the New Frontline

Malefactors are constantly honing their tactics. The days of ‘mud-against-the-wall’ malware targeting desktops behind firewalls are long gone. Zimperium’s 2025 Global Mobile Threat Report shows that mobile is often a preferred battlefield, and the stakes are high. 

The top threat, as usual, is phishing. Nearly one-third of all mobile threats now stem from it, many using SMS-based “smishing” or deceptive PDFs disguised as travel notifications. A fake boarding pass. A fraudulent hotel confirmation. One tap, and bad actors are in.

Add sideloaded apps into the mix (those installed from outside official app stores) and things get worse.

One in four enterprise devices now carries at least one. Many contain hidden malware or backdoors.

Then there’s the update gap. A quarter of devices can no longer receive the latest OS patches. That means known vulnerabilities stay wide open, ripe for exploitation. 

Even legitimate apps are under scrutiny. Some 60% of Android apps in enterprise environments rely on only basic protections. On iOS, the story is equally bleak; 60% lack essential code protections, leaving them exposed to tampering and reverse engineering. 

Four Major Risks for Travelers

When employees travel, the risks multiply. Here’s what to watch:

MiTM Attacks: Public Wi-Fi is convenient; but also dangerous. Airports, hotels, and cafés are prime targets. Hackers set up rogue hotspots and intercept traffic. Everything from passwords to emails can be siphoned off in seconds. 

Phishing Disguised as Travel Alerts: “Your gate has changed.” “Click here to confirm your hotel.” These messages, often sent via SMS or PDF, trick travelers into giving up credentials or installing malware.

Sideloaded and Risky Apps: A translation tool. A taxi app. A quick game for the flight. Travelers often download apps without thinking, many from unofficial sources. That’s a problem.

Captive Portals That Harvest Data: Many Wi-Fi networks require users to pass through a sign-in page. These portals can request email addresses, phone numbers, even social logins. Spoofed versions can collect data for future phishing or credential stuffing. 

Hot Zones: Southeast Asia, Luxembourg, and U.S. Cities

Zimperium’s threat map shows Southeast Asia as a rising hotspot for mobile malware. Vietnam, Malaysia, and the Philippines are seeing sharp increases in attacks. The methods vary (sideloaded apps, phishing links, network exploits) but the result is the same: compromised mobile devices. 

Oddly, Luxembourg has also emerged as an outlier. A small country with a dense digital ecosystem and high rates of business travel, it’s become a surprising magnet for mobile attacks. 

Back in the U.S., cities like Los Angeles, New York, Portland, Miami, and Seattle are feeling the heat. Peak travel months see spikes in mobile malware as attackers exploit unsecured networks and distracted users.

What Can Businesses Do?

The best defense is visibility. Security teams need to know where devices are, what they’re connecting to, and how they’re behaving. That starts with a mobile threat defense strategy.

Checklist for summer mobile security:

  • Ensure all mobile endpoints are visible and managed 
  • Enforce compliance policies across devices 
  • Block access to unsecured Wi-Fi 
  • Educate employees on travel-specific threats 
  • Deploy a mobile security solution like Zimperium’s 

Not ‘If’ But ‘When’

David Matalon, CEO at Venn says these risks go well beyond just mobile. “As more employees work remotely from home offices or while traveling, they’re often using not just personal phones, but personal laptops as well, often over unsecured networks. The traditional perimeter is gone, and the Bring-Your-Own-Device (BYOD) reality for remote workers requires a shift in strategy: from securing the device to securing the work itself.

Matalon says today’s technology enables organizations isolate and protect work from any personal use on the same computer, even if the network or device is compromised. “It’s time to stop asking ‘if’ work data and apps will be exposed on a personal device, and start planning for ‘when’ it happens.” 

Test Continually, on Real Devices

As mobile devices increasingly function as both endpoints and development environments, they have become a primary vector for attackers, adds Vishrut Iyengar, Senior Solutions Manager at Black Duck. “Zimperium’s findings highlight a concerning reality: many enterprise mobile apps still lack basic protections such as code obfuscation, secure storage, and updated third-party libraries. These weaknesses remain exploitable even in managed enterprise environments.”

Iyengar says security teams should no longer treat mobile as an isolated or secondary concern. “Mobile applications need to be tested continuously, on real devices, and incorporated into a broader application security strategy. This strategy should cover proprietary code, third-party SDKs, and open-source components to ensure complete risk coverage and application security without compromise.”

Enforce Strict Controls

Mobile devices are a prime target for attackers, particularly when employees connect to unsecured Wi-Fi or download apps from outside official stores, comments J Stephen Kowski, Field CTO at SlashNext.

“Security teams need to keep a close eye on all mobile endpoints and enforce strict controls to block risky connections and apps. Automated, real-time detection that adapts to new threats can stop phishing and malware before they cause damage. This approach helps protect sensitive data without slowing down employees who need to work on the go,” Kowski ends. 

Kirsten Doyle
Kirsten Doyle
Information Security Buzz News Editor

Kirsten Doyle has been in the technology journalism and editing space for nearly 24 years, during which time she has developed a great love for all aspects of technology, as well as words themselves. Her experience spans B2B tech, with a lot of focus on cybersecurity, cloud, enterprise, digital transformation, and data centre. Her specialties are in news, thought leadership, features, white papers, and PR writing, and she is an experienced editor for both print and online publications.

  • Kirsten Doyle
    AI-Powered Attacks Become Top Concern for Security Professionals, New Filigran Survey Reveals
  • Kirsten Doyle
    ShinyHunters targets Oracle PeopleSoft customers through critical zero-day
  • Kirsten Doyle
    SIG report: AI-generated code is linked to twice the security risk and rising technical debt
  • Kirsten Doyle
    Miasma worm spreads from Red Hat packages to Microsoft repositories

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Major US telecom providers debut C2 ISAC to counter AI-driven threats

May 26, 20264 Mins Read

FCC Blocks Foreign-Made Routers, Citing National Security Risks

March 26, 20268 Mins Read

Cutting Into Overtime, Not Corners: How Network Automation Drives Business Value

March 13, 20266 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}