Skip to main content

Microsoft engages cybergang that stole $500 million


Microsoft has orchestrated the bust-up of another top-tier botnet operation.
These bad guys – operators of the sprawling Citadel botnet -- make the fictional band of sophisticated thieves from the movie Ocean's 11 look like amateurs. Authorities estimate they've scored more than $500 million from banks in the United States and abroad by accessing online accounts and rerouting funds.
The software giant and the FBI, working with law enforcement and tech officials from some 80 countries, knocked out 1,000 of 1,400 of the Citadel botnets.
A botnet is a collection of hundreds to thousands of infected PCs that respond to commands routed through a command-and-control server, which is also an infected PC.
The bad guys running Citadel commanded as many as 5 million infected PCs, making Citadel one of the biggest botnet operations. Botnets are the engins that drive cybercrime. They fuel spam, denial of service attacks and cyberespionage. And they are used in big operations, like Citadel, to systematically hijack online financial accounts.
Citadel botnets supplied the computing power to steal from American Express, Bank of America, Citigroup, Credit Suisse, eBay's PayPal, HSBC, JPMorgan Chase, Royal Bank of Canada and Wells Fargo, among dozens of others.
The civil lawsuit Microsoft filed in the U.S. District Court in Charlotte, North Carolina identifies the ringleader as John Doe No. 1, aka Aquabox.
Investigators believe Aquabox is based somewhere in Europe and directs at least 81 helpers who run the botnets.
Because Citadel is programmed to leave online banking accounts in the Ukraine or Russia alone, it's likely the gang members are based there.
Microsoft deserves credit for developing a process the respects laws and encourages law enforcement co-operation across multiple borders. That includes co-ordinating with ISPs and hosting services to cripple identify and cripple active botnets.
The company has done this twice before with the takedown and related civil prosecutions in 2011 of operatives involved in the Rustock botnet and in 2010 with the Waldec botnet.
The criminals remain at large. And sophisticated botnets will continue to function as the robust infrastructure enabling cybercrime. But the Citadel take-down, nonetheless, is on for the good guys. Microsoft's work in this arena serves notice that impunity is not absolute for cybercriminals.
"The bad guys will feel the punch in the gut,"Richard Domingues Boscovich, assistant general counsel with Microsoft's Digital Crimes Unit, told Reuters.
The FBI told Reuters it is working closely with Europol and has obtained search warrants.
"We are upping the game in our level of commitment in going after botnet creators and distributors," FBI Assistant Executive Director Richard McFeely said in a Reuters interview.
"This is a more concerted effort to engage our foreign partners to assist us in identifying, locating and - if we can - get U.S. criminal process on these botnet creators and distributors."

Comments

Popular posts from this blog

Physics behind the Arc Reactor

It started with me ranting about how I should understand the physics of arc reactor more and then  Sera  needs some babel speak ideas for her Tony. I know this has been discussed deeply by most iron man fanatics before, but this is the simplified version for people who can’t be bothered to understand the big science-y words. I’m not saying that this is accurate because I’m not a nuclear engineer either, and I hope I can get some feedbacks from people who actually understand this. Since vibranium is not actually a real element, I’m focusing on the old arc reactor tech that runs on palladium. Let’s do a bit revision on fusion, yes? During nuclear fusion, light atoms combine to form heavier elements; in the process, a small fraction of mass is converted into lots of energy. Fusion reactions are called thermonuclear reactions because high temperatures are required to overcome the coloumbic repulsion between the nuclei being fused, i.e., “thermo” for the heat required...

'Drone It Yourself' Lets You Create a Drone from Any Object

Have you ever wished for a flying book? A flying keyboard? Or, perhaps, a flying bodyboard? Well, it's your lucky day, because thanks to "Drone It Yourself," you can turn pretty much any object into a quadrocopter. The drone kit, created by Dutch independent designer Jasper Van Loenen, is comprised of pieces that can be 3D printed, and then clamped to any object you so desire. All that's needed are the control unit and four propellers, and then you can make virtually anything airborne. news source

Meet DARPA's 6'2" disaster-response robot

At six-foot-two and 330 pounds, this hulking first responder has all the qualities you'd want in the field after a disaster:  strength, endurance and calm under pressure. Better yet, it has two sets of hands, 28 hydraulic joints, stereo cameras in its head and an onboard computer. The  ATLAS humanoid robot , which looks vaguely like something from the "Terminator" movies, was created by Boston Dynamics for DARPA, a research arm of the U.S. Department of Defense. It will compete in the  DARPA Robotics Challenge  (DRC), a competition that invites engineers to create a remotely controlled robot that can respond to natural or man-made disasters. The winning robot could be used in situations deemed too dangerous for humans, like the 2011 nuclear disaster at Fukushima Daiichi Nuclear Power Plant. The DRC is broken up into three challenges. The first was the Virtual Robotics Challenge, in which 26 teams controlled simulated, 3-D robots. Only seven of...