Slashdot Log In
Russian Hacker Gang Vanishes Again
Posted by
kdawson
on Monday November 12, @11:43PM
from the now-you-see-'em dept.
from the now-you-see-'em dept.
Arashtamere writes "The shadowy hacker and malware hosting network that only recently fled Russia to set up operations in China has now pulled the plug there and vanished yet again. An analyst at VeriSign's iDefense Labs unit said iDefense had tracked RBN's migration earlier in the week from servers based in Russia to ones running in China, after obtaining at least seven net blocks of Chinese IP addresses. As of Wednesday, RBN controlled 5,120 IP addresses assigned to Chinese service providers; known RBN clients were even seen using those addresses that day. But with its China move putting the spotlights of the media and the security community on the organization, RBN suddenly went offline on Thursday. 'They severed connections to six of the seven net blocks on November 8,' the analyst said. RBN as a single organization may be dead and gone; it may even now be breaking up into smaller pieces farmed out to multiple countries' Internet infrastructures."
Related Stories
[+]
Profile of the Russian Business Network 180 comments
The Washington Post has an article detailing what is known of the workings of the Russian Business Network, a shadowy entity based in St. Petersburg that hosts a good fraction of the world's spammers, identity thieves, bot herders, and phishers. RBN is not incorporated anywhere and may not technically even be violating Russian law. It provides "bulletproof hosting" for about $600 a month to a wide range of bad guys.The author of the Post story, Brian Krebs, supplements it with two blog posts. One provides more detail and back story including a look at one ISP's security admin who decided last summer to ban all RBN traffic from his network, with outstanding results. The other post maps some of the RBN's upstream suppliers and details the extent of the RBN's involvement in recent cyber-attacks: "Nearly every major advancement in computer viruses or worms over the past two years has emanated from or sent stolen consumer data back to servers" in the RBN.
[+]
Russian Phishers Moving to China? 67 comments
Hugh Pickens writes "The Russian Business Network, an ISP and Web hosting provider based in St. Petersburg, whose client list amounts to a laundry list of organized cybercrime operations appears to have closed shop after a number of its main upstream Internet providers severed ties with the group. The disappearance of RBN comes less than a month after Brian Krebs of the Washington Post wrote a series of stories detailing the organization and history of the shadowy ISP. However, experts at anti-spam group Spamhaus say there are strong indications that a huge swath of Internet space recently established in China may soon emerge as the next incarnation of the Russian Business Network. In related news FBI Director Robert S. Mueller, III gave a speech on cybercrime earlier this week where he said that the FBI has 60 Legal Attaché offices around the world working with partners in Russia, Romania,Poland, Hungary, Italy, and Estonia, among others, to investigate international cyber threats."
Russian Hacker Gang Vanishes Again
|
Log In/Create an Account
| Top
| 64 comments
| Search Discussion
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Hunt them down... big blocks of IP space = obvious (Score:5, Insightful)
(http://www.nerdkits.com/)
But hey, at least these guys are being pursued and thwarted. There are way too many hackers and script kiddies out there who need to get their butts kicked one and become productive members of society with their skills. This is an important lesson and it comes at a price, but ultimately we need to convert these people to use their technical knowledge for good. By making it harder and harder for the underworld to survive, the economic benefits of that lifestyle become overshadowed by its risks. This will bring these people out into the light, and hopefully both reduce the economic pain they cause with their mischief, and also let them contribute constructively.
--
Educational microcontroller kits for the digital generation. [nerdkits.com]
Alternative Theory: Russian Mafia Groups (Score:5, Interesting)
As the Kremlin moves into cyberspace [slashdot.org], each KGB clique will want a "piece of the action" and has absorbed some alumni of the RBN. In the 21st century, even the Russian mafia needs an online presence.
Re:Alternative Theory: Russian Mafia Groups (Score:4, Funny)
nice... (Score:2)
Might as well hang out a sign... ---> R U S S I A N -- B O T N E T -- M A S T E R S -- H E R E ! ! !
Don't be so fast (Score:5, Informative)
(http://communistposters.com/)
Re:Don't be so fast (Score:4, Interesting)
Applauds headline (Score:1, Funny)
(http://slashdot.org/)
Perhaps we are finally ready to put the misnomer 'cracker' to rest once and for all.
Now I feel like a bit of cheese...
yeah? (Score:1)
Uh oh, Russian Hacker Gang... (Score:1)
How unusual.
Duh. (Score:1)
(Last Journal: Wednesday September 28 2005, @12:21PM)
Botnets/SETI/Folding@Home (Score:1)
(http://thirdprize.blogspot.com/index.html)
Which netblocks? (Score:1)
All that I could find was the fourth comment to this article [washingtonpost.com], in which a
Again? (Score:1)
Hopefully they will move to Afghanistan or Iraq, they will bomb them.
The game continues... (Score:2)
(Last Journal: Sunday September 30, @09:20PM)
Exactly what drove this most recent move I don't know yet. It will be interesting to see where they pop up next. I wouldn't be surprised if they even just decided to take a little "cooling off" period, and we'll see them there again shortly.
russia and china arent friends (Score:2)
China could close down these business whenever it sees a need.
The rules of RBN (Score:3, Funny)
The second rule of RBN is, you DO NOT talk about RBN.
If something says BSOD, goes coredump, logs out, the crack is over.
Two crackers to a host.
One crack at a time.
No GUIs, no frameworks.
Cracks will go on as long as they have to.
If this is your first account at RBN, you have to crack.
Re:You never know.... (Score:3, Insightful)
(http://www.wackyhq.com/ | Last Journal: Saturday January 07 2006, @09:17PM)
alll your... (Score:1, Offtopic)
(http://financialsense.com/ | Last Journal: Saturday April 30 2005, @01:26AM)
Hi Five.
Yakshi Mash.