Watering Hole Attack
An attack where hackers compromise a website frequently visited by a target group, infecting visitors with malware or redirecting them to credential-harvesting pages.
A watering hole attack targets a specific group of users by compromising websites they frequently visit. Rather than attacking the target directly, attackers identify and infect the websites (“watering holes”) the group uses: industry forums, news sites, vendor portals, or community pages.
When victims visit the compromised site, they’re silently infected with malware or redirected to credential-harvesting pages. Because the site is trusted and frequently visited, victims have their guard down.
Defenses include keeping browsers and plugins updated (preventing drive-by downloads), using network-level threat detection, limiting browser privileges, and using a password manager that won’t autofill credentials on modified or redirected pages.
Stop sharing passwords in spreadsheets
TeamPassword stores, shares and rotates your team credentials, encrypted end to end.
Trusted by 900+ agencies and small teams worldwide