Someone is using the ‘Cozy Bear’ moniker to scare DDoS victims into bitcoin payments

It looks like scammers are impersonating one of Russia’s most notorious hacking groups in order to extort victims out of thousands of dollars worth of bitcoin. Multiple companies have reported to the security vendor Akamai that they were hit with a distributed denial-of-service attack, which degrades victims’ web services by overwhelming them with fake traffic. After a brief DDoS hit, victims say they receive an extortion note from a group claiming to be Cozy Bear, a state-sponsored Russian hacking group. The scheme works like this: attackers launch the DDoS attack from a botnet, in which each IP in the botnet sends a fraction of the overall traffic to the target. The victim has a deadline, typically six days, to pay two bitcoin. If they don’t pay by the time the deadline expires, the fee increases by one bitcoin per day, and the DDoS resumes. Cozy Bear is best known for […]

The post Someone is using the ‘Cozy Bear’ moniker to scare DDoS victims into bitcoin payments appeared first on CyberScoop.

Continue reading Someone is using the ‘Cozy Bear’ moniker to scare DDoS victims into bitcoin payments

Author of record-setting IoT botnets pleads guilty

He kept working on new botnets (and swatting a co-conspirator-cum-competitor) while indicted and on supervised release. Continue reading Author of record-setting IoT botnets pleads guilty

ThreatList: DDoS Attack Sizes Drop 85 Percent Post FBI Crackdown

The FBI’s crackdown on 15 DDoS-for-hire sites appears to have had an impact on DDoS attacks, the average size for which dropped 85 percent in the fourth quarter of 2018, a new report found. Continue reading ThreatList: DDoS Attack Sizes Drop 85 Percent Post FBI Crackdown

Booter Boss Interviewed in 2014 Pleads Guilty

A 20-year-old Illinois man has pleaded guilty to running multiple DDoS-for-hire services that launched millions of attacks over several years. The plea deal comes almost exactly five years after KrebsOnSecurity interviewed both the admitted felon and his father and urged the latter to take a more active interest in his son’s online activities. Continue reading Booter Boss Interviewed in 2014 Pleads Guilty

20-year-old pleads guilty to DDoS-for-hire scheme that netted $550,000

A 20-year-old Illinois man pleaded guilty to charges related to a scheme to launch millions of distributed denial-of-service attacks against U.S. school districts and other targets, the U.S. Department of Justice announced Wednesday. Sergiy Usatyuk and a co-conspirator gained more than $550,000 by charging subscribers for access to booter and stresser services, which typically enable attackers, using only a web browser, to launch a DDoS attack capable of knocking target sites offline. Usatyuk was involved with booter and stresser services including ExoStreeser, QuezStresser, BetaBooter Databooter, Instabooter, Polystress and Zstress. The Exostresser services alone facilitated 1,367,610 DDoS attacks which caused victims to suffer 109,186 hours of downtime, the DOJ said Wednesday. In one case in 2017, a Betabooter user launched a number of DDoS attackers against a Pittsburgh, Pennsylvania, school district that also affected 17 other organization, including the county government, prosecutors said. Usatyuk was active from around August 2015 to November […]

The post 20-year-old pleads guilty to DDoS-for-hire scheme that netted $550,000 appeared first on CyberScoop.

Continue reading 20-year-old pleads guilty to DDoS-for-hire scheme that netted $550,000

250 Webstresser Users to Face Legal Action

More than 250 customers of a popular and powerful online attack-for-hire service that was dismantled by authorities in 2018 are expected to face legal action for the damage they caused, according to Europol, the European Union’s law enforcement agency…. Continue reading 250 Webstresser Users to Face Legal Action

Europol Now Going After People Who Bought DDoS-for-Hire Services

If you were a buyer of any online DDoS-for-hire service, you might be in trouble.

After taking down and arresting the operators of the world’s biggest DDoS-for-hire service last year, the authorities are now in hunt for customers who bought the servic… Continue reading Europol Now Going After People Who Bought DDoS-for-Hire Services