Security News > 2020 > April > Holy Water watering hole attack targets visitors of certain websites with malware

Holy Water watering hole attack targets visitors of certain websites with malware
2020-04-01 16:34

In a report published Tuesday, Kaspersky detailed the behavior of several watering hole websites established through a malware campaign dubbed Holy Water.

To set up a watering hole attack, cybercriminals observe or ascertain which sites are visited by particular groups of people and then compromise those sites with malware.

After learning of the malware attack from Kaspersky, GitHub disabled the repository for the file, which at least stopped the infection aspect of the campaign.

Almost 10 websites have been compromised with at least dozens of implanted hosts, showing that the attackers have established a large but targeted type of watering hole campaign.

"A watering hole is an interesting strategy that delivers results using targeted attacks on specific groups of people," Ivan Kwiatkowski, Kaspersky senior security researcher, said in a press release.


News URL

https://www.techrepublic.com/article/holy-water-watering-hole-attack-targets-visitors-of-certain-websites-with-malware/#ftag=RSS56d97e7