Mobile App Security

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Friday, 11 October 2013

Blackhole malware exploit kit suspect arrested

Posted on 12:07 by Unknown
9 October 2013 Last updated at 08:00 ET BBC

Blackhole software
The Blackhole kit offered an interface used to manage malware attacks

Russian police have reportedly arrested a man on suspicion of masterminding two infamous hacking tools.

He is suspected of being the man behind the alias Paunch - the nickname used by the creator of the Blackhole and Cool exploit kits, sold to cybercriminals to infect web users with malware.

The Russian authorities have not confirmed the details.

But security firms said they had already detected a decline in the programs' use.

A spokesman for the law enforcement agency Europol told the BBC: "Europol and the European Cybercrime Centre has been informed that a high-level suspected cyber criminal has been arrested.

"We can only refer you to the Russian authorities, they are the ones who should speak about this topic."

The Russian police's press office said it had nothing to add at this time.

However, Alexander Gostev, chief security expert at the Moscow-based internet protection provider Kaspersky Lab, said the arrest had been confirmed to him by "anonymous sources".
Spreading malware
The Blackhole kit, released in 2010, dominated the crimeware market throughout 2012 and the start of 2013, according to Fraser Howard, a researcher at the anti-virus company Sophos.

He said the code had been sold for an annual licence of $1,500 (£940) or could be rented from its creator for $200 (£125) for one week's use, among other price plans.

The software targeted a range of vulnerabilities in the Java programming language, Adobe's Flash media player, Windows software and PDF files.

It had two ways of doing this:
  • adding malicious code to hundreds of thousands of legitimate websites, which then copied malware to visitors computers
  • creating links in spam messages to specially created sites that infected PCs

Blackhole email
Sophos said that Blackhole was used to send links that directed users to sites that downloaded malware

Among the malware downloaded was:
  • fake anti-virus software that falsely claimed the PC was infected and urged the user to pay a fee to remove viruses
  • Trojans that attempted to steal financial records stored on the PC
  • the ZeroAccess rootkit, which downloaded other software that hijacked the PC for use in a botnet - a facility used to overwhelm websites with traffic and force them offline
  • key loggers that took a record of what was typed on the PC
  • ransomware that attempted to blackmail the PC owner

Although Mr Howard said Blackhole was once the biggest threat of its kind, he added that in recent months it had been overshadowed by rival kits, including Sweet Orange and Neutrino.

According to the researcher, the Blackhole and Cool kits put together were only involved in about 4% of all malware detected by Sophos in August, down from 28% the previous year.

The figure had since dropped to 2% in recent days, he added.

Another independent security blogger stressed that the arrest was still significant.

"If it's true that the brains behind the Blackhole has been apprehended it's a very big deal - a real coup for the cybercrime-fighting authorities, and hopefully cause disruption to the development of one of the most notorious exploit kits the web has ever seen," said Graham Cluley.

"However, it's worth remembering that nature abhors a vacuum, and there would surely be other online criminals waiting to take their place, promoting their alternative exploit kits and malicious code."

Mikko Hypponen, chief research officer at F-Secure, agreed.

"If indeed it is Paunch that they arrested, that is a major arrest - he is a big deal," he told the BBC.

"He was clearly the biggest player in providing exploit kits - not just by selling them, but also renting and leasing them to online criminals.

"Both Blackhole and its successor Cool have been very popular.

"Users didn't have to be very technical to operate them - there was a manual that came with them - they just had to get them running and be able to break into a high-profile website, or create a new one from scratch, to install something bad on your computer."
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in Hacking, James Jones, law, Security | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • LearningWorks: THE MISSING PIECE: Quantifying Non-Completion Pathways to Success
    ” . . . in the California Community College system . . . nearly one-third of students took an average of just two courses over about two yea...
  • Cisco Career Certifications Awarded American National Standards Institute Accreditation
    Achievement Demonstrates Compliance With Rigorous, Internationally Recognized Standards SAN JOSE, CA--(Marketwire - Jan 16, 2013) - Unders...
  • CyberWatch West Free Student 2 Student Webinar October 30th
    Online Workshop Oct 30 at 10:30 am PDT Man-in-the-Middle Attacks Using Mobile Devices Register @ cyberwatchwest.webex.com Student 2 Student ...
  • Spring 2013 NEW CCCApply Webinar Series
      Monday, 28 January 2013, TechEDge Written by Tim Calhoon Saturday, 26 January 2013 The New CCCApply online admissions application...
  • Community college grads out-earn bachelor's degree holders
    By Jon Marcus at The Hechinger Institute @CNNMoney February 26, 2013: 6:23 AM ET Nearly 30% of Americans with associate's degrees now ...
  • ACM CCECC Alice Summer Workshops Registration now open
    Registration has opened for the Alice Summer Workshops! A week has been set aside for a Community College focused workshop at Walt Disn...
  • CA Career Cafe: CALJOBS Job Search Service Now Available
    “ Somewhere someone is looking for exactly what you have to offer. ”                                                                    - ...
  • Code.org Launches To Help Make Computer Programming Accessible To Everyone
    Drew Olanoff ,  TechCrunch       Drew Olanoff has over 10 years of marketing, PR, customer service and support, relationship buildin...
  • EDGE goals addressed in 2013-14 California State Budget
    California's 2013-14 State Budget and an accompanying trailer bill, AB 86, address key EDGE goals of 1) beginning to restore dedicated f...
  • NCRIC Cyber Internship Program
    Northern California Regional Intelligence Center Cyber Internship Program Northern California Regional Intelligence Center (“NCRIC”) Mission...

Categories

  • Big Data
  • CATV
  • CENIC
  • Certifications
  • Cloud
  • Computational Thinking
  • Computer Engineering
  • Computer Science
  • CTE
  • Database
  • Digital Divide
  • Digital Literacy
  • Digital Media
  • Diversity
  • Educational Technology
  • elearning
  • Electronics
  • Entrepreneur
  • ethics
  • funding opportunity
  • Gaming
  • GIS
  • Grants
  • Hacking
  • Healthcare IT
  • ICT Applications
  • ICT Core Competencies
  • ICT Education
  • ICT Infrastructure
  • ICT Jobs
  • ICT pathways
  • ICT Regulation
  • ICT Research
  • Industry News
  • Innovation
  • Internships
  • James Jones
  • K-12
  • law
  • Linux
  • Mobility
  • MOOC
  • MPICT Announcements
  • Multimedia
  • Networking
  • networking security
  • Olivia Herriford
  • Open Source
  • Operating Systems
  • Pierre Thiry
  • Piracy
  • Public Policy
  • Security
  • Security; Identity Management
  • Smart Grid
  • Social Media
  • Soft Skills
  • Software Assurance
  • Software Engineering
  • Spanish
  • STEM Education
  • Storage
  • Teaching and Learning
  • Telecom
  • Tools
  • virtualization
  • Web
  • WIB
  • Wireless
  • women
  • Women in ICT
  • Workforce Development

Blog Archive

  • ▼  2013 (418)
    • ►  November (41)
    • ▼  October (53)
      • Microsoft creates new cert to make VMware admins '...
      • CSSIA's Train-the-Trainer registration is NOW open!!!
      • CA Career Briefs: Manage Emotions
      • 2013 UC Davis Fall Academy for Integrated Computin...
      • How to Run a Summer Computing Camp - Register by W...
      • Study: U.S. Cities Pay More Money For Less Broadband
      • Protesters Call for an End to NSA Mass Surveillance
      • New top-level web domains announced by Icann
      • MEPs vote to suspend US data sharing
      • 3C Media Solutions Account Available
      • CENIC 2014: Call For Proposals
      • Fon finally launches in the US, inviting consumers...
      • WSJ: Profile of an IT Worker
      • California $19m in SB-1070 CTE Pathways Grants Ava...
      • California AB86: $250m in CTE Grants
      • New CompTIA Certification Addresses Mobile App Dev...
      • China achieves wireless Internet access via lightb...
      • The agriculture business is “a sleeping giant” for...
      • CyberWatch West Free Student 2 Student Webinar Oct...
      • Oakland City Council Passes Open Data Policy
      • GlobalNOC World View
      • New law increases transfer degrees between communi...
      • Ted Talk: James Lyne: Everyday cybercrime -- and ...
      • Large DoS Attacks More Than Quadruple in 2013: Study
      • CA EDGE Campaign: California "Moves Forward" on W...
      • Career Ladders LearningWorks Report Highlights Ben...
      • Free October 30th ICT Sector Workforce Webinar
      • S.F.’s tech community needs to support our schools
      • Code.org December 9-15, 2013 Hour of Code!
      • California governor vetoes state email privacy bill
      • CA Career Cafe: Join a Professional Association
      • Blackhole malware exploit kit suspect arrested
      • Ultrasound chip offers gesture control for mobiles
      • The Anatomy of the IT Industry Workforce
      • Shutdown derails implementation of cybersecurity o...
      • CCCs: Flip Your Classroom Using 3C Media Solutions
      • IT giants back project to slash Internet costs wor...
      • Blu-Ray albums target hi-fi fans
      • Disney develops way to 'feel' touchscreen images
      • Tech Company Makes Massive Grant To SF Middle Schools
      • e-skills uk - GO ON you can do IT
      • Governor signs bills to expand broadband in Califo...
      • MOOCs Could Help 2-Year Colleges and Their Student...
      • Free ICT Workforce Webinar - October 30th
      • For Boston’s techiest academies, even cutting edge...
      • The iPads-in-Schools Challenge: Tools for Consumpt...
      • U.S. Agencies Revamp Standards for Cybersecurity P...
      • San Francisco tech job growth leads nation
      • CompTIA Launches CompTIA Cloud+ to Validate Critic...
      • Cisco NetRiders Competition Registration Period Open
      • The Hour of Code is Coming!
      • CA Career Briefs: Student Persistence
      • CompTIA Mobility+ and Mobile App Security+ Webinars
    • ►  September (44)
    • ►  August (21)
    • ►  July (30)
    • ►  June (28)
    • ►  May (43)
    • ►  April (43)
    • ►  March (35)
    • ►  February (43)
    • ►  January (37)
  • ►  2012 (82)
    • ►  December (25)
    • ►  November (40)
    • ►  October (17)
Powered by Blogger.

About Me

Unknown
View my complete profile