Software developers at an enterprise regularly visit a well-known third-party technical documentation website to view API specifications. A threat actor compromises this external website and injects malicious code designed to execute a drive-by download targeting visitors connecting from the enterprise's public IP block. Which of the following social engineering attack vectors is described in this scenario?
- Watering hole attackAnswer
- BSpear phishing
- CPharming
- DTyposquatting
Answer
Watering hole attack
A watering hole attack occurs when a threat actor identifies and compromises a legitimate third-party website frequently visited by members of a targeted organization. When users visit the compromised site, malicious code silently executes to compromise their systems.
Step-by-Step Solution
Key Concept
Watering Hole Attack