The InformationWeek -- Blogs

Wolfe's Den Blog

Topics:   Security : Wolfe's Den

  • Email this page E-mail this page
  • Print this page Print this page
  • Bookmark and Share
  • icon

Trend Micro Rips Lid Off Estonian Cybercrime Hub


Posted by Alexander Wolfe, Aug 26, 2009 03:00 PM

An important Trend Micro paper, spotlighting a cybercriminal hub operating out of Estonia, has surfaced on Slashdot. The racket here is that a seemingly legitimate Internet Service Provider is in reality the headquarters for a rogue network, which extends into Europe and the United States. The breadth of the deception outlined in the paper is scary; doubly so because cybercrime is emerging as the single biggest security threat of the next decade.


The paper, by Trend Micro threat analysts Ben April, Feike Hacquebord, and Rainer Link, is entitled "A Cybercrime Hub." It can be downloaded as a pdf here.

Hacquebord introduces the masquerading Estonian ISP in a Trend Micro blog post. The illicit network has been in operation since 2005. "Employees administer sites that host codec Trojans and command and control servers that steer armies of infected computers," he writes.

A bunch of daughter companies in cahoots with the illegitimate ISP were taken offline in 2008. However, the operation recovered from that blow, and today, Hacquebord writes "we count about 20 different webhosting providers where the criminal Estonian outfit has its presence. Besides this, the company own two networks in the United States."

There's more, and it's all scary stuff, so I urge you to read the Trend Micro paper (Again, it's available as a pdf here.)

In closing, I'd like to point you to my recent ByteandSwitch blog post, Cybersecurity Challenge: Is Your Network Safe? (Probably Not). In the post, I talk about cybercrime alarms being raised in regard to U.S. government IT systems.

It's my sense that, while there are certainly lapses in government systems -- many of which stem from the way such systems are acquired and upgraded -- government and military personnel seem more sensitized to the whole issue of cybercriminal gangs operating out of places like Russia and China than do people in the business world. Perhaps it makes sense that they're on heightened alert, because they're a first-level target.

Yet that doesn't mean commercial networks and systems aren't vulnerable. They are almost equally at risk, and we all know there are many, many breaches we don't hear about. (Paging the big banks.)

As I wrote on ByteandSwitch :

"This time around, I don't think the alarmists are crying wolf. The threat from organized cybercriminals is real. Also, the protection lapses of government networks are probably duplicated by most commercial setups."

Follow me on Twitter: (@awolfe58)

What's your take? Let me know, by leaving a comment below or e-mailing me directly at alex@alexwolfe.net.

Like this blog? Subscribe to its RSS feed: (here)

 My videos on ( YouTube)

 Facebook 

  LinkedIn

Alex Wolfe is editor-in-chief of InformationWeek.com.

« Are Schools Preparing Kids To Hit The Facebooks? | Main | Infosys, Tata Sign Big Deals With BP; Advantage To Tata? »



Sign Up Now
For InformationWeek News Alerts




This is a public forum. United Business Media and its affiliates are not responsible for and do not control what is posted herein. United Business Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.

Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of United Business Media LLC and may be edited and republished in print or electronic format as outlined in United Business Media's Terms of Service.

Important Note: This comment area is NOT intended for commercial messages or solicitations of business.




 
 

  1. HPC Joins the Dummy Revolution?
  2. Detecting Scalability Problems With Intel Parallel Universe Portal
  3. Just Say No To SFAQL Parallelism


Join The InformationWeek Group On LinkedIn


                           


  1. Top Resources To Save Big On Cyber Monday
  2. AT&T, T-Mobile, Verizon All Offering Black Friday Sales
  3. Verizon Snags Samsung's Omnia II With WinMo 6.5
  4. Murdoch And Microsoft Redefine Search
  5. Thoughts On The Motorola Droid


  1. IBM Buys Database Security Company
  2. Online Shopping Gains Following Black Friday
  3. Survey: Android Developers Unhappy
  4. Large Hadron Collider Breaks Energy Record
  5. AT&T, LG Intro 1 GHz Smartphone
  6. Dell Dabbles With Chrome OS

 

  Ars Technica
Boing Boing
Channel 9 Forums
CRN Blogs
Dr.Dobb's Portal: Blogs
Engadget
Gizmodo
GrokLaw
  Lifehacker
Schneier on Security
Slashdot
TechCrunch
Techdirt
Techmeme
Valleywag

  DECEMBER 2008
NOVEMBER 2008
OCTOBER 2008
SEPTEMBER 2008
AUGUST 2008
JULY 2008
JUNE 2008
MAY 2008
  APRIL 2008
MARCH 2008
FEBRUARY 2008
JANUARY 2008
DECEMBER 2007
NOVEMBER 2007
OCTOBER 2007
SEPTEMBER 2007