Slashdot Mirror


Point and Click Cracking

An anonymous reader writes "Washingtonpost.com is running a story about a number of botnets and keylogger operations being controlled by Web-sites with point-and-click type front-end software interfaces. The sites mentioned in the story look like fairly slick PHP pages designed to sort through password data from keylog victims and update infected computers with new code or instructions. From the story: 'The hacking software also features automated tools that allow the fraudsters to make minute adjustments or sweeping changes to their networks of hacked PCs. With the click of a mouse or a drag on a pull-down menu, users can add or delete files on infected computers.'"

6 of 105 comments (clear)

  1. Most of the problem is the users by solarbob · · Score: 5, Interesting

    Most of the reasons PC's get hacked now days is that end users are still clicking on the links in phising emails and then holes in the browser being exploited. Surely it wouldn't take much for the main browser makers to put in a user idiocy filter to just say aren't you being a bit silly? Of course user education would be best but there will always be a certian newbie segment who are on the internet for the first time and will keep doing this. That software though does look pretty comprehensive

    --
    SolarVPS - Quality Windows and Linux Virtual Servers
    1. Re:Most of the problem is the users by G)-(ostly · · Score: 5, Informative

      Actually, a lot of the time a browser hole isn't required at all. Users are actually still downloading applications that are just applications that function in a malicious way, with full rights actively given by the user to use the system resources for ill.

      After all, once an OS is running something bound to a port, how is it supposed to know whether or not you're an idiot who just installed a keylogger or trojan, or a competent user running some sort of legitimate server software? It can only warn you so much before there's just nothing else that can patch the hole, except maybe some tape over your head.

      At this point, browsers warn people, operating systems warn people, firewalls warn people and virus scanners worm people, and they still just have to run that trojan software for whatever pointless whizz-bang effect it adds to their mouse cursor or emails.

    2. Re:Most of the problem is the users by G)-(ostly · · Score: 5, Interesting

      It's not going to work. People don't know how to use warnings in the physical world properly. Look at warnings provided on the road. How many people ignore Yield signs and try to merge right into oncoming vehicles? How many people just blow right through a blinking yellow without thinking? How many people just blow out of parking lots or driveways? How many people actually look to see if a train is coming before they cross tracks with a warning light and bar?

      It's a matter of risk/reward that's inherent in human nature. If 99 times out of a hundred you approach a crossing with a light and bar there's no train coming when there's no lights, you're going to get used to that. Of course, that one time you come along and the lights are broken, you're going to die, but that's the risk/reward. You're taking the 1% chance that you'll get killed by an unannounced train and comparing it to the fact that you'll have to do the extra work of slowing down, looking and speeding back up for nothing 99% of the time.

      People just don't take serious warnings seriously unless there's a very good chance that they could be harmed by not following them. It doesn't matter how serious the consequences if they occur too infrequently to stay fresh in one's mind.

  2. Stupid Innuendo by Bios_Hakr · · Score: 5, Insightful

    Here's what I hate about news. It's all about alluding to something powerful and blinding the users with innuendo.

    Stop mincing your words and just say it. Stop telling people about "some website" where "evil hackers" can "point and click" to crack your passwords. Just fucking say Rainbow Crack.

    It really fucking gets my goat when someone claims to have secret knowledge. What harm could have come from just saying Metasploit or Rainbow Crack? The evil doers already know. Give JoeUser actual knowledge and let him decide for himself.

    Stop pretending that you know something and the public can't be trusted with it.

    --
    I'd rather you do it wrong, than for me to have to do it at all.
  3. Why do people write these? by failure-man · · Score: 5, Interesting

    One thing I've always wondered about script kiddies: who writes their tools for them, and why? What does the actual black hat get out of the deal? It's not like script kiddies pay for things.

    Is it for fame? Signal-to-noise manipulation? Are the little fuckers getting "0wn3d" by backdoors in their "1337 h4x0r t00lz"?

    Or is it something else entirely?

  4. For thos interested.... by UnidentifiedCoward · · Score: 5, Informative
    The >Washington Post is so kind as to hide the identity of website from which they took the screenshots from which they referenced in the article can be easily located with a simple google search...

    The software -- viewed by a reporter on one of the sites, which washingtonpost.com is not naming because it remains active -- displays detailed graphs showing the distribution of victims by country. At time of this publication, the site harboring Frost's information was receiving a stream of illicit data from a network of roughly 3,000 infected PCs mostly located in Spain, Germany and Britain.


    Oh and here is a feature breakdown from a Russian bulletin board:

    In English...
    - Invisibility in system
    - Implementstion of software FireWalls leak
    - Implementation of Polymorthic algorithm
    - Implementation of AV Software vulnerability: AV Bases Update Breaker
    - Socks5 Proxy Server
    - FTP Server
    - KeyLogger
    - Clipboard Logger
    - Implementation of WebMoney Keeper leak: WebMoney Grabber
    - Implementation of E-gold security system leak
    - Protected Storage Grabber
    - Far FTP, TotalCommander FTP, The Bat Passwords Grabber
    - Sends logs/files to http server
    - Web-based Remote Control
    - Implementation of IE leak: Form Grabber
    - Implementation of UK banks security system leak: Memorable Info Grabber (at this moment released implementation of 6 most popular UK banks security system leak, no screenshots, only text) (List of vulnerable banks)
    - Implementation of DE Banks TAN Security System leak (included security test for 4 DE Banks) (List of vulnerable banks)
    - SMS warning if new TAN detected for clients of Russian BeeLine GSM Mobile Operator

    For those that care.... here is the site.

    If you have half a clue you will figure out where to go from there.