Method of infection: Water-holing
OSIRIS used a Social Engineering method called “water holing” to attack German IP addresses.
How does water holing attack work?
- The victim enters the infected website.
- The website checks if the target IP is German.
- If it’s a German IP – few evasion techniques are used to bypass EDR
- And then the virus connects to its command server through the Darknet
Save Your Company from Social Engineering Attacks Like that
Register and Get your Personalized Free Exposure Report NOW,
And see where your Company is Exposed to Hackers
Recently Posted on AUMINT.io Blog
When Trust Backfires: How Hackers Exploit Microsoft’s Own Emails to Breach Enterprises
📧 Microsoft’s Own Emails Used in Sophisticated Phishing Scam
🔍 Cybercriminals are now exploiting genuine Microsoft 365 emails to deceive employees.
📨 Victims receive authentic-looking emails from microsoft-noreply@microsoft.com, thanking them for a purchase they never made.
📞 The email includes a support number, connecting directly to scammers posing as Microsoft support.
🖥️ Once on the call, victims are instructed to install remote support software, often containing Remote Access Trojans (RATs), granting attackers control over their systems.
💡 This tactic leverages trust in Microsoft’s domain and exploits employee fears of unauthorized purchases.
🔒 At AUMINT.io, we specialize in detecting such sophisticated threats and training employees to recognize and respond appropriately.
📅 Schedule a consultation with AUMINT.io today to protect your organization from these emerging scams.
#CyberSecurity #Phishing #SocialEngineering #AUMINT