Method of infection: Water-holing
OSIRIS used a Social Engineering method called “water holing” to attack German IP addresses.Β
How does water holing attack work?
- Β The victim enters the infected website.
- The website checks if the target IP is German.
- If it’s a German IP – few evasion techniques are used to bypass EDR
- And then the virus connects to its command server through the Darknet
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
π― Free Phishing Domain Trackers Saving CISOs Daily Headaches π―
Phishing attacks remain one of the biggest threats to organizations, but staying ahead is possible with the right monitoring. These free phishing domain trackers help CISOs identify suspicious domains before they target employees.
Here are the top free phishing domain trackers:
1οΈβ£ PhishTank β Community-driven database of active phishing sites.
π https://www.phishtank.com/
2οΈβ£ APWG eCrime Exchange (eCX) Free Feeds β Aggregates phishing domain data from global sources.
π https://www.antiphishing.org/
3οΈβ£ OpenPhish Community Edition β Real-time feed of confirmed phishing URLs.
π https://openphish.com/
4οΈβ£ FraudWatch International Free Tools β Alerts on phishing and domain impersonation.
π https://fraudwatchinternational.com/
5οΈβ£ URLhaus β Tracks malware and phishing domains used in attacks.
π https://urlhaus.abuse.ch/
6οΈβ£ Google Safe Browsing β Check URLs against Googleβs database of unsafe sites.
π https://safebrowsing.google.com/
7οΈβ£ AUMINT.io Threat Feed Samples β Curated phishing domain intelligence with human risk insights.
π https://aumint.io/resources
β‘ Using these free trackers, CISOs can proactively block phishing campaigns, protect employees, and reduce incident response workload.
At AUMINT.io, we go further by simulating real-world phishing attacks to see which employees are likely to click and where controls need reinforcement.
π Want to test your teamβs resilience against phishing today? Book a free demo
#PhishingPrevention #CISO #CyberSecurity #ThreatIntelligence #AUMINT