Chinese-language version of the Central Tibetan Administrations website exploits a Java vulnerability to drop spyware onto visiting computers. This is what is known in computer security circles as a watering hole attack. The hackers breach a website known to be visited by a particular group of targets, rather than directly launch an attack against the targets themselves. This is known as watering holes, where the code is embedded into the web and is then dropped onto the computers of those who visit it.”]