Holy Water: a creative water-holing attack discovered in the wild
Summary
More than 10 websites related to religion, voluntary programs, charity and several other areas were compromised to selectively trigger a drive-by download attack resulting in a backdoor set up on the targets’ devices. A watering hole is a targeted attack strategy in which cyber criminals compromise websites that are considered to be fertile ground for potential victims and wait for the planted malware to end up on their computers. If the visitor is validated as a target, the second JavaScript stage will load a plugin, which in turn will trigger a download attack, showing a fake Adobe Flash update pop-up. Privacy risks are especially high when we consider various social groups and minorities because there are always actors that are interested in finding out more about such groups” – comments Ivan Kwiatkowski, senior security researcher at Kaspersky. • In addition to adopting essential endpoint protection, implement a corporate-grade security solution that detects advanced threats on the network level at an early stage, such as Kaspersky Anti Targeted Attack Platform.