>a fake hotspot (“Delta WiFi Fast”), with a phishing landing page “designed to harvest passengers’ personal credentials.”
It wasn't a fake hotspot. It was a real hotspot with a SSID that potentially infringed Delta's trademark. CFAA doesn't prevent harvesting people's credentials since it's the user's own machine that people are connecting to.