Cybercrime Gang Recruiting Botmasters for Large-Scale MiTM Attacks on American Banks

A slew of major American banks, some already stressed by a stream of DDoS attacks carried out over the past 10 days, may soon have to brace themselves for a large-scale coordinated attack bent on pulling off fraudulent wire transfers.

RSA’s FraudAction research team has been monitoring underground chatter and has put together various clues to deduce that a cybercrime gang is actively recruiting up to 100 botmasters to participate in a complicated man-in-the-middle hijacking scam using a variant of the proprietary Gozi Trojan.

This is the first time a private cybercrime organization has recruited outsiders to participate in a financially motivated attack, said Mor Ahuvia, cybercrime communications specialist for RSA FraudAction. The attackers are promising their recruits a cut of the profits, and are requiring an initial investment in hardware and training in how to deploy the Gozi Prinimalka Trojan, Ahuvia added. Also, the gang will only share executable files with their partners, and will not give up the Trojan’s compilers, keeping the recruits dependent on the gang for updates.

  1. stripes says:

    Their credit system is collapsing and they are looking for as many fraudulent ways they can contrive to take as many victims with them as possible.

  2. Sarah says:

    Crude, anti-social and obviously illegal. As we all know, the best way to rob a Bank is to own one.
    Hardly sensational, or spooky, in the sense the “inside job” hackers are on Banks payroll working on HFT ad any other proprietary but semi-legitimate system of graft, such as MERS.
    These are the “crimes” that pay. TBTF and legislate to make what was once illegal, legal: Have authority bewildered into protecting alleged wrong doing for their own political expediency, have a participatory media glass over the ground level tragedies much as they would some far off war zone, keep key information hidden from the debt riddled masses, and the result is getting away with the crimes of the century (any one of ’em).

