. Military Space News .
CYBER WARS
US disables 'Coreflood' botnet, seizes servers

by Staff Writers
Washington (AFP) April 13, 2011
US authorities on Wednesday announced the disabling of a vast network of virus-infected computers used by cyber criminals to steal millions of dollars.

The "Coreflood" botnet is believed to have operated for nearly a decade and to have infected more than two million computers around the world, the Justice Department and FBI said in a joint statement.

They said charges of wire fraud, bank fraud and illegal interception of electronic communications had been filed against 13 suspects identified in court papers only as John Doe 1, John Doe 2, etc.

The complaint said they were all "foreign nationals" but provided no further information about their identities or nationalities.

Five "command and control" computer servers and 29 Internet domain names were seized as part of the operation, described as the "most complete and comprehensive enforcement action ever taken by US authorities to disable an international botnet."

A botnet is a network of malware-infected computers that can be controlled remotely from other computers.

Coreflood, which exploited a vulnerability in computers running Microsoft's Windows operating systems, was used to steal usernames, passwords and other private personal and financial information, US officials said.

As of February 2010, some 2.33 million computers were part of the Coreflood botnet, including 1.85 million in the United States, according to the complaint filed with the US District Court for the District of Connecticut.

"Infected computers in the Coreflood botnet automatically recorded the keystrokes and Internet communications of unsuspecting users, including online banking credentials and passwords," the complaint said.

"The defendants and their co-conspirators used the stolen data, including online banking credentials and passwords, to direct fraudulent wire transfers from the bank accounts of their victims," it added.

The complaint said the full extent of the financial loss is not known but it provided details on a number of victims.

They included a real estate company in Michigan hit for $115,771 in fraudulent wire transfers, an investment company in North Carolina taken for $151,201 and a defense contractor in Tennessee which lost $241,866.

Dave Marcus, research and communications director at McAfee Labs, said the cyber criminals behind Coreflood were apparently able to "turn the botnet into a money making machine."

"It is hard to estimate the actual loot, but the criminals likely made tens of millions of dollars, based on the estimates in the complaint filed by the Department of Justice," Marcus said. "It is not outside of the realm of possibility that they netted more than $100 million."

US attorney David Fein said the seizure of the Coreflood servers and the Internet domain names "is expected to prevent criminals from using Coreflood or computers infected by Coreflood for their nefarious purposes."

"These actions to mitigate the threat posed by the Coreflood botnet are the first of their kind in the United States and reflect our commitment to being creative and proactive in making the Internet more secure," added Shawn Henry of the FBI's Criminal, Cyber, Response and Services Branch.

In July of last year, US, Spanish and Slovenian law enforcement authorities announced the arrest of the suspected creator of the "Mariposa Botnet," which may have infected as many as eight million to 12 million computers around the world.



Share This Article With Planet Earth
del.icio.usdel.icio.us DiggDigg RedditReddit
YahooMyWebYahooMyWeb GoogleGoogle FacebookFacebook



Related Links
Cyberwar - Internet Security News - Systems and Policy Issues



Memory Foam Mattress Review
Newsletters :: SpaceDaily :: SpaceWar :: TerraDaily :: Energy Daily
XML Feeds :: Space News :: Earth News :: War News :: Solar Energy News


CYBER WARS
Google accuses China of blocking Gmail
Beijing (AFP) March 21, 2011
Google accused the Chinese government on Monday of interfering with its Gmail service, after weeks of online disruptions that have coincided with calls for protests emulating those in the Middle East. "There is no technical issue on our side - we have checked extensively. This is a government blockage carefully designed to look like the problem is with Gmail," Google said in a statement to ... read more







CYBER WARS
Obama urged to limit Russia missile shield sway

Lockheed Martin Awarded $43.3 Million Contract For Concept Definition Of Standard Missile-3 Block IIB

Israel's missile shield makes history

Israeli system intercepts Gaza rocket for first time

CYBER WARS
Answering The Warfighter's Call For Joint Air-To-Ground Missile

US helps eliminate Ukraine's Scud missile stockpile

Raytheon Awarded $42 Million For Next-Generation Standard Missile-3 Interceptor

SLAMRAAM Intercepts Targets In Two Test Firings

CYBER WARS
US drones kill six militants in Pakistan: officials

Northrop Grumman Ships First Broad Area Maritime Surveillance Fuselage

Drone 'friendly fire' kills two US troops: officials

Northrop Grumman Fire Scout Hits New Single-Day Endurance Flight Record

CYBER WARS
Preparations Underway As US Army Gears Up For Large-Scale Network Evaluations

Global Military Communications Market In 2010

Raytheon BBN Technologies To Protect Internet Comms For Military Abroad

Gilat Announces New Military Modem For Robust Tactical Satcom-On-The-Move

CYBER WARS
Fire Control Radar Completes Target-Of-Opportunity Tracking

LockMart And Atmos To Pursue Brazil Air Surveillance Radar Program

Elbit Systems Awarded Soltam's Artillery System Contract

PEO Ammo Picks Up 155mm Lightweight Howitzer Program

CYBER WARS
Gates warns of fallout from big US defense cuts

Indonesia plumps for KAI's T-50 trainer?

South America, Africa spend more on arms

Elbit And IAI Establish Joint Company

CYBER WARS
BRICS nations call for UN Security Council reform

World's major emerging powers meet in China

Armenia agrees longterm Russian army presence

World's major emerging powers to meet in China

CYBER WARS
US Navy And Northrop Grumman Accomplish Goals For At-Sea Demonstration Of Maritime Laser

Scientists Build World's First Anti-Laser

Yale scientists build 'anti-laser'

'Air laser' could find bombs at a distance


The content herein, unless otherwise known to be public domain, are Copyright 1995-2010 - SpaceDaily. AFP and UPI Wire Stories are copyright Agence France-Presse and United Press International. ESA Portal Reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by SpaceDaily on any Web page published or hosted by SpaceDaily. Privacy Statement