All the latest UK technology news, reviews and analysis

Security firm warns of UK-specific Zeus 2.0 botnet

by Dave Neal

03 Aug 2010

Be the first to comment

  • Tweet this
Phishing image
The Zeus 2.0 botnet is harvesting a wide range of personal data via phishing attacks

Trusteer claims to have found the first instance of a pure Zeus 2.0 botnet, which it said is targeting customers of UK financial institutions.

The security firm discovered the botnet during a six-month study of Zeus 2.0, and said that it is the first of its kind to be built solely on the emerging botnet. However, the company explained that there are other instances around.

Mickey Boodaei, chief executive at Trusteer, said that the botnet specifically targets UK citizens and their financial information.

Zeus 2.0 gathers typical information like log-ins and passwords for banking sites, but also harvests data that could be used for social engineering, such as place of work and job role.

"It's very focused. It's targeting the UK market, its financial institutions and its citizens," said Boodaei.

The botnet steals credit and debit card numbers, banking site log-ins, bank statements, passwords, FTP passwords, certificates and cookie information, representing a major threat to financial services customers, according to Trusteer.

"What is especially worrying is that this botnet doesn't just stop at user IDs and passwords," said Amit Klein, chief technology officer at Trusteer.

"By harvesting client-side certificates and cookies, the cyber criminals can extract a lot of extra information that can be used to augment their illegal access to those users' online accounts."

The botnet is easily searchable, added Boodaei, and has a "Google-like interface" that can be used to drill down into results, searching for users of a particular bank, for example.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

27%

1%

13%

59%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Software Developer (.Net, VB.Net) – Skipton

Graduate Developer / Software Developer (.Net, VB.Net...

PHP Developer / Web Developer (PHP4/5, Object Orientated PHP)

PHP Developer / Web Developer (PHP4/5, Object Orientated...

Web Games Designer

Web Games Designer – Gibraltar Web Games Designer...

E-commerce Business / Systems Analyst - retail

An exciting opportunity for a Systems / Business Analyst...

To send to more than one email address, simply separate each address with a comma.