Archive

Posts Tagged ‘cybercrime’

Confidence 2009.02 – Underground economy – Raoul Chiesa

November 20th, 2009 2 comments

Subtitle: Why we should be fully-updated on this topic: InfoSec players, Finance world, citizens

Raoul is a member of UNICRI (http://www.unicri.it/), a United Nations crime and justice research institute.

Unicri research technology as well, because if normal people use technology, the bad guys use it as well.

“Every new technology opens the door to new criminal approaches”

In the 70s the first wave of hackers where searching for knowledge. In the early 80s the second wave of hackers was driven by curiosity. The third wave of hackers in the 90s where eager to hack and started to exchange information. The first communities where created. The current fourth wave is now driven by anger and money. Hacking has met politics (hacktivism) and money (cybercrime).

Why is cybercrime on the rise?
1)    There are more and more targets, thanks to broadband
2)    A need to make money, think economical crisis
3)    Hacking got easier, 0-day attacks and skimmers can be easily bought online.
4)    Fall guys are easy to recruit, e.g. for money laundering
5)    The criminals think they cannot be caught
6)    There is no violence, no need to face your victims

Read more…

Defcon talk: Down the rabbit hole – Exposing a criminal server by Iftach Ian Amit

August 6th, 2009 No comments

This talk described the investigation of a criminal server, but how do you start?

The speaker noticed that the same malware turned up on two compromised sites he investigated, so it seemed that there should be a relationship between the two sites. Both sites called back to a url with hostname gwtsdjeni.com. The name schema of the site seems to indicate that this is a torpig site, with one single deviation; the url contained an extra d before the word jeni. So this seemed to be a modified version of the torpig network.

Read more…