<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; security consultant</title>
	<atom:link href="http://www.darknet.org.uk/tag/security-consultant/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>&#8216;Security Consultant&#8217; Caught for Running Large Bot Network</title>
		<link>http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/</link>
		<comments>http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/#comments</comments>
		<pubDate>Tue, 13 Nov 2007 08:37:22 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Legal Issues]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[security consultant]]></category>
		<category><![CDATA[trojans]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[viruses]]></category>
		<category><![CDATA[zombies]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-botnet/</guid>
		<description><![CDATA[Apparently he stopped his naughty activities back in 2006, but still&#8230;a guy that is supposed to securing machines was installing malware and had a bot totaling about a quarter of a million zombies. Most used for info gathering, Paypal accounts and installing Malware for comission, he claims to have made $19,000 in a week installing [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Apparently he stopped his naughty activities back in 2006, but still&#8230;a guy that is supposed to securing machines was installing malware and had a bot totaling about a quarter of a million zombies.</p>
<p>Most used for info gathering, Paypal accounts and installing Malware for comission, he claims to have made $19,000 in a week installing TopConverting (<a href="http://www.washingtonpost.com/wp-dyn/content/article/2006/02/14/AR2006021401342_pf.html">read more</a>).</p>
<blockquote><p>A Los Angeles security professional has admitted to infecting more than a quarter million computers with malicious software and installing spyware that was used to steal personal data and serve victims with online advertisements.</p>
<p>John Kenneth Schiefer, 26, variously known online as &#8220;acid&#8221; and &#8220;acidstorm,&#8221; agreed to plead guilty to at least four felony charges of fraud and wiretapping, charges punishable by $1.75 million in fines and nearly 60 years in prison.</p>
<p>Investigators say Schiefer and two minors &#8212; identified in the complaint only by their online screen names &#8220;pr1me&#8221; and &#8220;dynamic&#8221; &#8212; broke into about 250,000 PCs. On at least 137,000 of those infected systems, Schiefer and his cohorts installed programs that allowed them to control the machines remotely. </p></blockquote>
<p>That&#8217;s a pretty reasonable sized network, enough to rent out for some serious DDoS attacks, and certainly enough Paypal accounts to earn some good money.</p>
<blockquote><p>Schiefer said he and his friends spread the bot programs mainly over AOL Instant Messenger (AIM). By using malicious &#8220;spreader&#8221; programs such as Niteaim and AIM Exploiter, Schiefer and his co-conspirators spammed out messages inviting recipients to click on a link. Anyone who took the bait had a &#8220;Trojan horse&#8221; program downloaded to their machine, an invader that then tried to fetch the malicious bot program.</p>
<p>Schiefer admits he and friends used several hjacked PayPal accounts to purchase Web hosting that helped facilitate the spreading of their bot programs. </p></blockquote>
<p>Pretty lame, but most of the infections were done with pre-built AIM tools. This is ultimate script kiddy stuff, but hey I guess it works right.</p>
<p></p>
<p>Source: <a href="http://blog.washingtonpost.com/securityfix/2007/11/security_pro_admits_to_hijacki.html?nav=rss_blog">Washington Post</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=%E2%80%98Security+Consultant%E2%80%99+Caught+for+Running+Large+Bot+Network+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D742+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/&amp;t=%E2%80%98Security+Consultant%E2%80%99+Caught+for+Running+Large+Bot+Network" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/&amp;title=%E2%80%98Security+Consultant%E2%80%99+Caught+for+Running+Large+Bot+Network" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/&amp;title=%E2%80%98Security+Consultant%E2%80%99+Caught+for+Running+Large+Bot+Network" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/&amp;title=%E2%80%98Security+Consultant%E2%80%99+Caught+for+Running+Large+Bot+Network" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/&amp;title=%E2%80%98Security+Consultant%E2%80%99+Caught+for+Running+Large+Bot+Network" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F11%2Fsecurity-consultant-caught-for-running-large-bot-network%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/11/security-consultant-caught-for-running-large-bot-network/feed/</wfw:commentRss>
		<slash:comments>19</slash:comments>
		</item>
	</channel>
</rss>

