Method of infection: Water-holing
OSIRIS used a Social Engineering method called “water holing” to attack German IP addresses.
How does water holing attack work?
- The victim enters the infected website.
- The website checks if the target IP is German.
- If it’s a German IP – few evasion techniques are used to bypass EDR
- And then the virus connects to its command server through the Darknet
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
The Rise of the “Pretend Employee”: How Remote Work Fuels Insider Threats
🕵️ Fake Remote Workers Are Slipping Through the Cracks
💻 They show up to Zoom.
🎯 They hit performance KPIs.
🔒 But they’re not who they say they are.
⚠️ A dangerous new insider threat is spreading – pretend employees using fake identities, stolen credentials, or stand-ins to access sensitive systems and data.
🌍 In a remote-first world, attackers are exploiting hiring gaps and weak ID verification to get in, blend in, and steal from the inside.
💡 AUMINT.io’s Trident helps you detect the undetectable:
– Simulates insider threat scenarios across roles and regions
– Analyzes behavioral patterns beyond login credentials
– Trains teams to question suspicious actions, not just phishing emails
🎯 Book a free strategy call now – before the next insider risk gets hired.
#InsiderThreat #RemoteWorkSecurity #CyberSecurity #CISO #TridentByAUMINT #SecurityAwareness #HumanRisk #SocialEngineering #BehavioralSecurity