- +
True crime: The botnet barons 04 January, 2008 07:03:57
Two weeks ago, the feds revealed the names of eight people who had used botnets to engage in nefarious activity. Here are their storiesWhen federal agents announced on November 29 that they'd indicted or convicted eight individuals accused of using botnets (networks of computers infected with Trojan horse applications) to engage in criminal activity, the press release barely explained the nature and extent of the men's crimes -- or the investigations that led to arrests in an operation the FBI and other law enforcement agencies have termed Bot Roast II. - +
Attack of the killer bots 18 July, 2007 18:42:07
If malware were insects, botnets would be termitesIf malware were insects, botnets would be termites -- they burrow in behind the walls of your security perimeter, lie dormant for a period of time, then attack.
Click here for case studies, whitepapers and other useful vendor content Microsoft® takes legal action against software pirates
Dimension Data, La Trobe University and Windows Server 2008 partner to improve compliance
WebCentral boosts Security and Reliability with Windows Server 2008
V/Line and Oakton use Microsoft SQL Server 2008 to develop an Executive HR Dashboard
Australian water treatment company uses four GFI products to protect its network
Dataract increases e5 Workflow performance with Microsoft® Windows Server® 2008
NAB works with Avanade® to leverage Microsoft® Windows Server® 2008 for its branch offices
Bankstown Council streamlines their IT with Microsoft® Windows Server® 2008
Newsletter Subscription
US police have arrested two people in Turkey and Morocco under suspicion of involvement in the recent spate of computer worms, according to Microsoft. The worms known as Zotob, Rbot and Mytob, targeted the software giant's Windows 2000 operating system.
Microsoft worked in conjunction with the Turkish and Moroccan authorities and the US Federal Bureau of Investigation (FBI), according to a release from the company. The software vendor, through a division it created two years ago to investigate cybercrime, provided the FBI with technical information and analytical support that was then shared with Turkish and Moroccan police.
Law enforcement officers in Rabat, Morocco, and in Adana and Ankara in Turkey, arrested the alleged distributors of the worms -- Atilla Ekici, 21, of Turkey and Farid Essebar, 18, of Morocco -- Thursday, 12 days after the release of the first Zotob worm, Microsoft and FBI representatives said. Ekici went under the code name of "Coder" and Essebar used the code name "Diabl0," said Louis M. Reigel III, assistant director of the FBI Cyber Division, in a conference call Friday.
Ekici apparently paid Essebar a sum of money to write the worms, but was not involved in their creation himself, Reigel said. "We believe that there was financial gain on the part of the Moroccan in the relationship," he said.
Originally investigators believed there might be two Moroccan individuals involved in the crime, but that proved not to be the case, he said. At this time, investigators do not think Ekici and Essebar were involved in creating any of the worms' variants, but the investigation is ongoing and further arrests or charges will be made if needed, he said.
The FBI is not currently seeking extradition of the suspects to the US, but is working with local authorities in Turkey and Morocco to prosecute the individuals, he said. Though the two countries' cybercrime laws are not as "advanced" as those in the US, the suspects will be charged with appropriate crimes in their home countries, Reigel said.
The suspects may be charged with violating consumer protection and antifraud laws, according to Microsoft Senior Vice President and General Counsel Brad Smith.
The investigation to apprehend the creator of the Mytob worm, which was released in February, began in late March, but the investigation that eventually led to the arrests of Ekici and Essebar began in earnest after the Zotob worm was released two weeks ago, Reigel said. Investigators received no major tip-off but used information from Microsoft that monitored the behavior of the worms to track them to their origin, he said.
The worms exploited vulnerabilities in the Windows 2000 operating system to infect computers running the software with malware that shifted complete control over the PCs to the hackers who launched the attacks.
Fortunately, the worms don't appear to have caused as much damage as previous hacker attacks. Microsoft has since issued security patches to fix the holes in its operating system.
Microsoft's Smith attributed the fact that relatively little damage was caused by the worms to two things: consumers are becoming more savvy to threats and taking more precautions to shield their software from viruses, and Microsoft is making good on its commitment to create more secure products.
Smith also lauded the swiftness with which Microsoft and the FBI identified the suspects with the arrests coming less than two weeks after Zotob was released.
"Clearly I think this kind of public and private collaboration [to fight cybercrime] is a model that is successful here," he said.
ARN Member Login
When an IT disaster occurs, how handy it would be to push a button and start again as if nothing had happened.
Discover and learn more about CA XOSoft today.
Zepto release the Mythos, the 2nd installment in the Centrino 2 refresh 09 July, 2008 12:05:00
Symantec Data Protection Solutions Preferred by Users and Industry Experts 09 July, 2008 11:56:00
Residential VoIP: Let’s Get Naked, Declares IDC 09 July, 2008 10:43:00
DIARY ALERT - Symantec data leakage prevention seminars 08 July, 2008 17:20:00
Dimension Data Appoints New National Human Resources Director 08 July, 2008 16:58:00
NAB works with Avanade® to leverage Microsoft® Windows Server® 2008 for its branch offices
In 2007, Avanade helped the National Australia Bank use Windows Server 2008 to simplify deployment, maximise the efficiency of their low-bandwidth wide area network and consolidate its IT infrastructure.












