CRN Australia's piece on the economics of malicious software is fascinating. They assert that the days of intellectual curiosity-fuelled hacking are behind us and that today's botnetters and spyware creeps are all about the dough. However, competition seems to have crashed the price of some of the market's commodities, like infected PCs, which only generate a $0.30 payment to the infector. I wonder if botnet time itself has crashed -- with botmasters controlling botnets with tens of millions of PCs, you'd think it'd be pretty cheap to get ahold of ten or twenty thousand boxes to do some distributed computation or to zap that kid who just fragged you in Counter-Strike. I keep waiting to see spam for botnet time (apart from the spam offering to send spam, which, of course, is a kind of botnet rental) -- "GET A MILLION PCS FOR AN HOUR: ONLY $5!"
"There are programmers who are working for brokers, and the brokers are selling the malware to other criminals, who are then reselling the malware to other criminals," says Trend Micro's Parry. "When they capture a bunch of systems, they resell those systems to another criminal, and another criminal. The actual hacker types don't want to get their hands dirty with something that would actually send them to prison." Other groups build affiliate networks that tap into legitimate and semi-legitimate businesses. In a presentation at the Defcon hacking conference this year, Peter Gutmann of the University of Auckland's Department of Computer Science described networks in which businesses would pay affiliates up to 30 cents for each machine they infect with spyware or adware...
Other operations mirror legitimate software as a service providers. These "malware-as-a-service" providers rent out access to botnets or Web-based attack tools. Gutmann noted one example in which a Russian group rented out its malicious Website. A prospective buyer could get the 100 visitors for free, but then had to pay US$4 per 1,000 visitors up to 5,000, US$3.80 per 1000 up to 10000, and US$3.50 per 1,000 if they bought 10,000 or more. "Software rental is just another way to get money out of this market," says Oliver Friedrichs, Symantec's Director of Security Response. "It's common to see authors who write keyloggers and botnetworks, and then rent them out to people ultimately who may launch a phishing campaign or a spam campaign."
(via Beyond the Beyond
Alex Wood is an addict but won’t give up his smartphone. But he has five strategies for limiting its control over him: “I used to wake up tired. My body would ache and my head felt sore, like waking up with a hangover. Finally, I took control, like attending an AA class for addicts, I […]
We just got the Sport model of the EPIKGO hoverboard at my office. Besides being terribly chic, it’s apparently bulletproof.
Ok, it’s not just solar powered. It’s also an anti-theft, waterproof marvel that keeps my phone’s power bar from ever getting into the red.Sure the idea seems obvious now – tuck a gigantic solar powered battery pack into an exposed slot and turn the wearer into a walking energy harvester. Simple maybe, but I didn’t […]
When you can’t wait for the world’s longest meeting to end, the mindless leg bouncing makes your boredom obvious and just annoys everybody else. Everyone knows the TPS reports need the damn cover sheet, but some sadistic colleague keeps forgetting, probably on purpose just to eat into your lunch hour. Enough is enough!While serving a […]
What could be more fun than a slingshot that shoots tiny airplanes? A slingshot that shoots tiny glowing airplanes of course! These toy planes are outfitted with ultra-bright LEDs, so you can fly all night without losing them in the trees.Whether you are a regular-sized child, or an overgrown adult one, these light-up flyers offer […]
You know the drill. You go to the dentist and they ask you how often you floss. You lie through your teeth and say, “every day!” (Bonus points if you have some cilantro or chives stuck in your gums from lunch). You don’t want to keep up the charade any longer, but rubbing that tiny strand […]