All the latest UK technology news, reviews and analysis

Storm botnet connected to phishing ring

by Shaun Nichols

10 Jan 2008

Be the first to comment

  • Tweet this

An investigation has uncovered a link between a recent phishing operation and the infamous Storm worm.

Security experts believe that the botnet of infected PCs is now being leased out by its operator to other criminal groups.

Researchers at security firm F-Secure uncovered the connection while investigating a group of phishing sites posing as UK bank Halifax.

The company found that the hosting of the phishing domain was being passed around among a number of IP addresses.

When researchers cross-checked the addresses with other domains, they found domains as 'hellosanta2008.com' and 'postcards2008.com' which had been linked to fraudulent greeting cards used to spread the Storm worm over the holiday season.

The findings suggest that the operators of the Storm botnet are now allowing the network of infected machines to be accessed by other groups for various criminal activities.

"We have not seen this before. But we have been expecting something along these lines," said F-Secure chief research officer Mikko Hyppönen in a blog posting.

F-Secure is among many security firms to warn that Storm could become a commercial entity in 2008.

Researchers fear that Storm's computing power could be rented out for various criminal activities.

Storm first appeared in early 2007, circulating malware disguised as film of flooding in Europe. Since then, the controllers have used everything from spam runs to fake greeting cards to snare victims.

Experts warn that the tactics used to build and operate Storm could become a model for future botnets.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

The workplace of the future poll - in association with IBM

What will be the biggest change to corporate technology in the future?

89%

6%

1%

3%

1%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Head of Compliance

Head of Compliance My client is currently seeking...

Financial Reporting

THis role is working for a multi national Financial organisation...

Professional Services Consultant - Data Protection, Backup - £105k+

Professional Services Consultant - Data Protection, Backup...

Web Support Analyst (Drupal, Joomla or Wordpress, CMS, HTML)

Web Support Analyst (Drupal, Joomla or Wordpress, CMS...

Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.

To send to more than one email address, simply separate each address with a comma.