Russian Mafia targets online businesses

Protection racket gets hi-tech with DoS attacks

Written by Andy McCue

Organised crime rings in Russia are targeting online gambling sites in denial of service (DoS) extortion rackets and there is little companies can do to prevent it, according to a leading security expert.

The warning follows a spate of similar blackmail scams seen by security consultants in recent months, according to Neil Barrett, technical director at security firm Information Risk Management.

A target site is initially brought down with a short DoS attack lasting up to 15 minutes. Contact is then made with the company followed by another DoS attack and then demands for money.

Ultimately the scam is just a hi-tech version of the tried and tested protection rackets used by Mafia gangs and organised criminals for years, he said.

"It is the online equivalent of muscle men coming into your shop and saying: 'This looks like it will burn easily'. I would be very surprised if at least some companies didn't pay up," said Barrett.

The gangs work out the revenue loss per minute of downtime for the site during the DoS attack and then ask for some of that to be paid monthly under the guise of 'security consultancy services'.

"The thing that points to organised crime is the realism of the demands. The demand is based on a fraction of the amount actually lost during that period. A small number of tens of thousands of pounds to be paid monthly for security consulting services - now that's a business plan," he said.

Attacks have mostly been limited to gambling sites but any online company could be susceptible, warned Barrett.

"Stopping it is only really possible by ensuring protection against a DoS attack but that is difficult because it can be coming from squillions of different places. It is not impossible but it is implausible," he explained.

Companies should involve the police as early as possible in an attempt to identify the criminals by following the money once it has been paid.

Leads have indicated that the Russian Mafia is behind the scam, said Barrett. "The money and communications are often routed through St Petersburg but whether that is the start point or mid-point I don't know. But evidence points to it being run by Russian organised crime," he said.

Tags:

reader comments

related articles

CIS freebie thwarts Russian e-mafia

The US-based Centre for Internet Security has unveiled a free tool to help network managers patch their servers following reports that the Russian mafia is trying to milk unwary ebusinesses for credit card details. 23 Mar 2001

 

Russian mafia hackers loot ebusinesses

Lax IT managers have been blamed for a series of attacks on US ecommerce sites and online banks, thought to have been carried out by hackers connected to the Russian mafia. 09 Mar 2001

Criminals keep PCs under surveillance

Attacks on PCs launched with military precision 24 Sep 2008

RSA 2009: FBI agent gives inside story of Dark Market bust

Agent Mularski reveals how his undercover operation helped foil a major cybercrime ring 23 Apr 2009

US cracks 'largest ever' ID theft ring

Gang allegedly stole millions of dollars using 40 million stolen credit and debit card numbers 06 Aug 2008

related whitepapers

today's top stories

Best practice: Five steps to achieving your e-commerce goals

Brian Walker of Forrester Research gives his top tips for ensuring e-commerce success 06 Jul 2009

Google meets the NHS? Politicians show their IT naivety again

The Tories like technology. They increasingly seem to think IT is going to help them win the General Election due next year.... 06 Jul 2009

How to maximise the value of your IT networking investment

A panel of experts discuss networking strategies that deliver real value to business 03 Jul 2009

Reaching the email zero count

I have noticed something quite bizarre today. Both my inboxes (work and personal) are empty – somehow I have managed to work... 06 Jul 2009

Habitat gets a web site makeover

The furniture retailer is revamping its online presence to provide a fully transactional web site. CIO Jacques Dekock explains why 02 Jul 2009

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Would you use social networking sites to look for a job?

Would you use social networking sites to look for a job?

Tell us what you think about job hunting through LinkedIn, Facebook, Twitter etc

View poll results

Latest audio and video articles

network cablesVideo

How to maximise the value of your IT networking investment

A panel of experts discuss networking strategies that deliver real value to business 03 Jul 2009

green footprintsVideo

How to manage enterprise energy use - and the role IT can play

A panel of experts explore how firms can get to grips with their carbon footprint and make smarter use of energy 01 Jul 2009

Latest in-depth articles

Phil PavittAnalysis

From tracks man to tax man

Phil Pavitt, outgoing chief information officer for Transport for London, talks to Rosalie Marshall about the lessons he will take to his new role at HMRC 02 Jul 2009

UPS worker making a deliveryAnalysis

Global standardisation delivers benefits at UPS

Delivery giant sees benefits of central IT solution 02 Jul 2009

Advertisement

Primary Navigation