Millions at risk from massive organized eCrime attack

Home IT

With credentials relating to 200,000 servers, and more than 80,000 legitimate sites known to have been compromised, could this Neosploit driven attack be one of the biggest organized eCrime operations ever?

After many experts thought that the Neosploit crimeware toolkit had gone into retirement, it seems that it was actually just flying under the radar. Now it is back, and how.

Ian Amit is Director of Security Research with Israeli-based Aladdin Knowledge Systems, and has uncovered what could well be one the largest organized eCrime operations ever.

Amit stumbled across the incredible discovery while researching the emergence of the newly discovered Neosploit 3.1 hacker toolkit. And what a discovery it is. Just look at the bullet points:

More than 80,000 legitimate sites found to be compromised

Credentials for more than 200,000 servers found on the criminal server

Major overseas weapons manufacturers & USPS.gov among the prominent sites compromised

Fortune 500 companies, universities, government departments have also fallen victim

Authorities in a total of 86 countries have now been informed and are investigating further

Amit is now working with CERT and numerous law enforcement agencies worldwide, having informed the authorities in a total of 86 countries, in order to ensure those major affected organizations which have been compromised can take appropriate action as soon as possible.

The devastating breadth of this breach can only really be appreciated once you get to grips with the fact that the vast majority of targets have been in Europe, indicating the majority of users that had subscriptions to the central criminal server were from European crime gangs.

Read how Amit discovered this criminal operation and what he told iTWire about the lucky escape visitors to the BBC website had on page 2...

CONTINUES



SPONSORED PRESS RELEASES

Websense Security Labs Reports ‘User Trust’ Targeted Attacks; Over 1 in 10 ‘Top Search’ Results Categorised as Malware; Increased Focus on Web 2.0
Websense, Inc. today revealed the findings from its bi-annual research report: Websense Security Labs, State of Internet Security, Q3-Q4 2009.

Featured IT jobs

This financial client has an excellent opportunity for an experienced Database Developer. SQL 2005 Some Schema design + SSIS & SSRS - 80k+super
Skills Tags:   Design  Development  SQL  SQL Server
Massive Hyperion Project requires a Hyperion Planning Architect / Lead Developer - drive home a huge Hyperion solution.
Skills Tags:   Architect  Design  Development  Hyperion
OBIEE Consultant to work on a very large greenfield OBIEE implementation to date to work end-to-end with excellent modelling & BI Server skills
Skills Tags:   Business Intelligence  Cognos  Hyperion  Informatica  Oracle  SQL
Required: OBIEE Consultant, 50/50 split between business & technical.
Skills Tags:   Consulting  Excel  Informatica  Reporting  Siebel  SQL

Editors Picks

Stories you may have missed 

What iTWire offers for free

E - mail News SMS Headlines Desktop Alerts News Feeds Job Alerts Technology Events Press-Releases