WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts (TLP:CLEAR) Fake Browser Update Threats Observed on Water Industry-Related Websites
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) Fake Browser Update Threats Observed on Water Industry-Related Websites

TLP:CLEAR

Author: Chase Snow

Created: Thursday, March 6, 2025 - 15:45

Categories: Cybersecurity, Security Preparedness

Summary: WaterISAC has been made aware of water industry-related websites that have been infected with SocGholish malware. Certain links on these websites have been observed re-directing users to fake browser update webpages. This is done to trick the user into downloading a payload which ultimately infects the system with SocGholish malware.

Analyst Note: WaterISAC is sending this as a reminder to members to use caution when visiting water industry or sector related websites and to urge users to report anything that looks suspicious, out of the norm, or that may indicate the potential for malware. A certain level of risk is inherent in any kind of internet use; therefore, caution should always be taken even when visiting legitimate websites. As this threat is currently impacting the water sector, Proofpoint’s previous in-depth analysis of this threat is particularly applicable.

Additional Reading:

  • Are You Sure Your Browser is Up to Date? The Current Landscape of Fake Browser Updates
  • SocGholish
  • Cybersecurity Best Practices | CISA

Related WaterISAC PIRs: 6, 10

Related Resources

(TLP:CLEAR) Vulnerability Notification – Critical Vulnerability in Fortinet EMS Actively Exploited, CVE-2026-35616

May 29, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) GAO Report: Actions Needed to Address Persistent Cybersecurity Threats to the Water and Wastewater Sector

May 28, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security

(TLP:CLEAR) FBI Releases Multiple Alerts on Credential Theft and Evolving Ransomware Intrusion Techniques

May 28, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar