R E L A T E D   C O N T E N T
ADVERTISEMENT

Russian Mafia targets online businesses

Protection racket gets hi-tech with DoS attacks

Andy McCue, vnunet.com 21 Nov 2001
ADVERTISEMENT

Organised crime rings in Russia are targeting online gambling sites in denial of service (DoS) extortion rackets and there is little companies can do to prevent it, according to a leading security expert.

The warning follows a spate of similar blackmail scams seen by security consultants in recent months, according to Neil Barrett, technical director at security firm Information Risk Management.

A target site is initially brought down with a short DoS attack lasting up to 15 minutes. Contact is then made with the company followed by another DoS attack and then demands for money.

Ultimately the scam is just a hi-tech version of the tried and tested protection rackets used by Mafia gangs and organised criminals for years, he said.

"It is the online equivalent of muscle men coming into your shop and saying: 'This looks like it will burn easily'. I would be very surprised if at least some companies didn't pay up," said Barrett.

The gangs work out the revenue loss per minute of downtime for the site during the DoS attack and then ask for some of that to be paid monthly under the guise of 'security consultancy services'.

"The thing that points to organised crime is the realism of the demands. The demand is based on a fraction of the amount actually lost during that period. A small number of tens of thousands of pounds to be paid monthly for security consulting services - now that's a business plan," he said.

Attacks have mostly been limited to gambling sites but any online company could be susceptible, warned Barrett.

"Stopping it is only really possible by ensuring protection against a DoS attack but that is difficult because it can be coming from squillions of different places. It is not impossible but it is implausible," he explained.

Companies should involve the police as early as possible in an attempt to identify the criminals by following the money once it has been paid.

Leads have indicated that the Russian Mafia is behind the scam, said Barrett. "The money and communications are often routed through St Petersburg but whether that is the start point or mid-point I don't know. But evidence points to it being run by Russian organised crime," he said.

See also:

The US-based Centre for Internet Security has unveiled a free tool to help network managers patch their servers following reports that the Russian mafia is trying to milk unwary ebusinesses for credit card details.  23 Mar 2001
Lax IT managers have been blamed for a series of attacks on US ecommerce sites and online banks, thought to have been carried out by hackers connected to the Russian mafia.  09 Mar 2001

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C#, GUI Developer – Fixed Income – Investment Bank. My client is seeking a strong C# ASP.Net developer to join their Fixed Income area and operate within one of the top tier investment banks in ... more >
| Computer People
Technical Project Manager / SDLC West London, £75k - (Software Development, SDLC), RUP Serious opportunity for hands on Technical Project Manager to join a leading blue chip organisation based in an easily accessible area of ... more >
| Computer People
C# Developer - Nottingham 4 Month Contract Market Rates I have an exciting opportunity for a C# ASP.NETDeveloper working for an established client within Computer People. Working from their offices in Nottingham you’ll be providing ... more >
| JAM Recruitment
Job Ref: AS/20356/TAX Package: c£60,000.00 + Bonus + Benefits Location: Middlesex Job type: International Assignment / Global Mobility / Expatriate Tax Manager Position type: Permanent Hours: Full-time Contact name: Andy Shaw Contact Company: JAM Mobility ... more >
More job opportunities