“What’s worked for us in taking down spy rings and entire mob families over the years—embedding an undercover agent deep within a criminal organization—worked beautifully in taking down Dark Market. And once again, our global partnerships paid off.”
FBI Cyber Division Assistant Director Shawn Henry
Last week the FBI and its global partners wrapped up a two-year undercover cyber operation that resulted in 56 arrests worldwide, the prevention of $70 million in potential losses, and the confirmation that while there might be honor among thieves, in the end, they are still just thieves.
Here’s what happened:
...A discerning group of cyber criminals established a forum on the Internet called “Dark Market,” where they bought and sold stolen financial information such as credit card data, login credentials (user names and passwords), and even electronic equipment for carrying out financial crimes.
...At its peak, this vast criminal network had over 2,500 registered members, who all believed they were operating in a protected cyber environment because they went to great lengths to vet members and to weed out undesirable elements.
...What they didn’t know was that one of the site’s administrators and most respected members, who called himself Master Splyntr, was one of us—an undercover FBI agent who had infiltrated the site posing as a cyber crook.
“It was a group of people who trusted each other,” said the undercover agent after the arrests. He explained that there are two types of cyber criminals: those who steal, but not from one another, and “rippers,” who steal from anyone.
Keeping the rippers off the Dark Market site, the agent explained, gave the other members a false sense of confidence. “They did a good job of trying to be secure, and they felt secure. There was honor among thieves, so to speak.”
Master Splyntr was on the site nearly every day, anywhere from one hour to 15 hours a day. Dark Market was like an exclusive club for cyber crooks, a meeting place for getting advice and brokering deals. During his time online, the undercover agent said, “we saw millions of dollars being exchanged.” At the same time, the operation prevented the millions of dollars in losses by tipping off potential cyber crime targets.
From the outset, our agent pointed out, “the goal was to infiltrate the organization.” The operation was extremely successful in developing intelligence on Dark Market’s leading members and the ways in which they conducted their far-flung crimes.
Throughout the operation, we worked closely with our international law enforcement partners, including the U.K.’s Serious Organised Crime Agency, the Turkish National Police, and the German Federal Criminal Police.
“What’s worked for us in taking down spy rings and entire mob families over the years—embedding an undercover agent deep within a criminal organization—worked beautifully in taking down Dark Market,” said our Cyber Division Assistant Director Shawn Henry. “And once again, our global partnerships paid off.”
As for our undercover agent who became a trusted member of the forum, he explained that he often had to think like a crook when signing on as Master Splyntr. “But at the same time,” he added, “you remember what your job is—to get the criminals.”
-----
www.fayettefrontpage.com
Fayette Front Page
www.georgiafrontpage.com
Georgia Front Page
News to Use in Fayetteville, Atlanta, Athens, Peachtree City and all of Georgia
Tuesday, October 21, 2008
'Dark Market' Takedown
Posted by
Georgia Front Page.com
at
4:08 AM
0
comments
Labels: atlanta, crime, cyber, cyber threats, dark market, fayette, fayette front page, fayetteville, fbi, georgia, georgia front page, peachtree city, tyrone
Saturday, October 18, 2008
FBI: The Cyber Threat Today
Crooks and spies using the Internet to commit crimes against U.S. businesses and to attack government networks are getting more sophisticated, and the increasing number of such crimes not only impacts the economy but threatens national security.
That’s the message Shawn Henry, recently appointed head of the FBI Cyber Division, delivered to a group of reporters on Wednesday, revealing that we have thousands of open cases into cyber crimes and organized cyber attacks and detailing our strategy to protect the nation’s networks.
One case in point: We joined our international partners yesterday in announcing a major takedown of a transnational criminal network that was buying and selling stolen financial information through an online forum known as “Dark Market.”
“The business of the United States is done on the Internet,” said Henry, a veteran cyber crime investigator. And the information that flows electronically 24/7 is increasingly the target of not only identity thieves and scammers, but organized crime groups, terrorists, and overseas governments.
“There are a number of countries who have an interest in stealing information from the United States,” Henry said, explaining that as many as two dozen nations have taken an “aggressive interest” in penetrating our networks. In the past year, he added, “the malicious activity has become much more prevalent.”
Malicious activity could come in the form of attacks that deny access to websites, that compromise sensitive information, or that introduce “botnets” that spread viruses and covertly co-opt computers to carry out data theft.
“There are a number of countries who have an interest in stealing information from the United States,” Henry said, explaining that as many as two dozen nations have taken an “aggressive interest” in penetrating our networks.
New groups of hackers—virtual gangs—are a growing threat as well, banding together to pool their expertise and carry out coordinated cyber attacks. Henry pointed out that in years gone by, if a gang wanted to rob a bank, it needed crooks with various skills—safe cracker, get-away driver, look-out, etc. That’s essentially what we’re seeing in the cyber world today, only these virtual gang members have never met in the physical world. “There are organized groups that are very successful,” Henry said.
The 3 Ps. To address the rising threat, the Cyber Division has a threefold strategic plan—“Prioritize, Proactive, Partnerships.”
By prioritizing our efforts, we can go after the most critical threats. Being proactive means adopting the same time-tested investigative techniques that have been so successful in our physical crime investigations—the use of informants, electronic surveillance, and placement of undercover agents to penetrate and dismantle virtual criminal operations.
The third “P”—partnerships—means building even stronger relationships with law enforcement agencies worldwide. He said we’ve worked with such countries as Great Britain, Canada, Russia, and Turkey to swap best practices and techniques. We’ve also sent agents to Romania to work with law enforcement there, leading to nearly 100 arrests in cyber crime cases representing “tens of millions of dollars” in losses, Henry said.
And the Internet Crime Complaint Center, or IC3—a partnership between the FBI and the National White Collar Crime Center—continues to assist state and local law enforcement in fighting cyber crime. Since its establishment in 2000, IC3 has received more than a million complaints. In the last couple of years, there’s been an “uptick” in the number of reports, according to Henry. Lately, they’re coming in at the rate of nearly 20,000 per month.
-----
www.fayettefrontpage.com
Fayette Front Page
www.georgiafrontpage.com
Georgia Front Page
News to Use in Fayetteville, Atlanta, Columbus, Peachtree City and all of Georgia
Posted by
Georgia Front Page.com
at
11:01 AM
0
comments
Labels: atlanta, botnet, business, complaint, crime, cyber threats, fayette, fayette front page, fayetteville, fbi, georgia, georgia front page, internet, peachtree city
Thursday, October 16, 2008
Georgia Tech Information Security Center Releases Emerging Cyber Threats Forecast for 2009
(BUSINESS WIRE)--The Georgia Tech Information Security Center (GTISC), a national leader in information security research and education, today announced the release of the GTISC Emerging Cyber Threats Report for 2009, outlining the top five areas of security concern and risk for consumer and enterprise Internet users for the coming year. The report was released at the annual GTISC Security Summit on Emerging Cyber Security Threats – a gathering of leading industry and academic leaders from organizations with a stake in protecting the online user community.
For 2009, GTISC is forecasting five key cyber security areas where threats are expected to increase and evolve:
* Malware— specifically under the guise of benign social networking links
* Botnets – specifically the spread of botnet attacks to wireless and peer-to-peer networks
* Cyber warfare — including targets on the U.S. economy and infrastructure
* Threats to VoIP and Mobile Convergence—specifically voice fraud and cellular botnets
* The Evolving Cyber Crime Economy – including the rise of sophisticated malware-for-sale kits and programs
According to the report, data will continue to be the primary motive behind future cyber crime – whether targeting traditional fixed computing environments or mobile applications. Experts from across the IT security spectrum – from government to industry to academia – join GTISC’s call for closer coordination between the security industry, Internet Service Providers (ISPs), application developers and government regulators to safeguard the user community and hinder the spread of sophisticated cyber security threats.
“At GTISC, we strongly believe that a proactive approach to understanding emerging threats will help us develop more effective information security technologies and strategies,” said Mustaque Ahamad, director of GTISC. “The annual GTISC Security Summit on Emerging Cyber Security Threats and this report seek to give us a better understanding of the increasingly sophisticated cyber security challenges we will face in the years ahead. We wish to thank the esteemed members of the IT security community who assisted us with the creation of this report.”
More than 300 corporate executives, industry leaders and technologists from across the country attended the GTISC Security Summit on Emerging Cyber Security Threats, keynoted by Lt. General Robert J. Elder, Jr., Commander Eighth Air Force of the Barksdale Air Force Base. Following Lt. Elder’s address on “Global Operations and Mission Assurance in a Contested Cyber Environment” in the morning, Summit panelists engaged in a lively discussion moderated by IT Security Entrepreneur, Thomas E. Noonan. This year’s panelists, from the U.S. Department of Homeland Security, IBM Internet Security Systems, the Georgia Institute of Technology, Cisco, Motorola and SecureWorks, helped to educate the audience on the proliferation of cyber threats, including those listed in the report, and highlighted possible countermeasures to safeguard the user and business communities.
To view the entire GTISC Emerging Cyber Threats for 2009 report or to watch a pre-recorded Web cast of the Summit, please visit http://www.gtiscsecuritysummit.com.
-----
www.georgiafrontpage.com
Georgia Front Page
www.fayettefrontpage.com
Fayette Front Page
News to Use in Fayetteville, Atlanta, Augusta, Peachtree City and all of Georgia
Posted by
Georgia Front Page.com
at
6:10 AM
0
comments
Labels: atlanta, botnet, concerns, crime, cyber threats, georgia, georgia front page, georgia tech, information, internet, malware, report, security, warfare