Method of infection: Water-holing
OSIRIS used a Social Engineering method called “water holing” to attack German IP addresses.
How does water holing attack work?
- The victim enters the infected website.
- The website checks if the target IP is German.
- If it’s a German IP – few evasion techniques are used to bypass EDR
- And then the virus connects to its command server through the Darknet
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
57 Million Flyers Exposed – What This Attack Reveals About Enterprise Security Gaps
✈️ 57 Million Passenger Records Breached via One Vendor
💥 A major airline just suffered a breach exposing names, travel data, and even passport numbers – all through a third-party vendor.
🔍 The breach wasn’t even discovered until it was too late.
📉 This isn’t a one-off. It’s a growing pattern: attackers no longer target you directly – they hit who you trust.
🧠 AUMINT now simulates real-world vendor phishing and MFA bypasses – so your team learns to spot deception before it spreads.
🛡️ Most security teams focus on endpoints and firewalls. But it’s often human trust – not tech – that opens the door.
⚠️ Want to see if your people and vendors are the weakest link?
Book a threat simulation with AUMINT
#CyberSecurity #VendorRisk #BreachResponse #CISO #SocialEngineering #AUMINT #FraudPrevention #AwarenessTraining