Method of infection: Water-holing
OSIRIS used a Social Engineering method called “water holing” to attack German IP addresses.Β
How does water holing attack work?
- Β The victim enters the infected website.
- The website checks if the target IP is German.
- If it’s a German IP – few evasion techniques are used to bypass EDR
- And then the virus connects to its command server through the Darknet
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
π‘οΈ CISOs: Top 7 Open-Source Threat Intelligence Platforms to Explore π‘οΈ
Threat intelligence is key to staying ahead of attackers β but commercial platforms can be costly. Open-source solutions offer powerful alternatives for gathering, analyzing, and sharing intel without breaking the bank.
Here are the top 7 open-source threat intelligence platforms CISOs should consider:
1οΈβ£ MISP (Malware Information Sharing Platform) β Widely used for collaborative threat sharing and analysis.
https://www.misp-project.org/
2οΈβ£ OpenCTI β Modern platform designed to centralize, analyze, and visualize threat intelligence.
https://www.opencti.io/
3οΈβ£ Yeti β Enables collection, storage, and sharing of cyber threat indicators.
https://yeti-platform.github.io/
4οΈβ£ Cortex β Analysis engine that integrates with MISP for automated investigations.
https://www.theforeman.org/plugins/cortex/
5οΈβ£ CRITIFENCE β Threat intelligence and detection platform with open components.
https://critifence.com/
6οΈβ£ IntelMQ β Automated pipeline for collecting and processing threat data feeds.
https://www.intelmq.org/
7οΈβ£ ThreatFox β Community-driven platform focused on IoCs and threat actor tracking.
https://threatfox.abuse.ch/
Open-source platforms empower security teams to customize workflows, reduce vendor lock-in, and share vital intel in near real-time.
Want to complement your intel with human risk detection? AUMINT.io simulates social engineering attacks and delivers actionable insights to protect your greatest asset β your people.
π Schedule a free intro call here: Book now
π‘ Save this post and elevate your threat intelligence game today!
#CISO #ThreatIntel #OpenSourceSecurity #CyberSecurity #AUMINT