Large Zeus Botnet Used For Financial Fraud
An anonymous reader writes "A large Zeus version 2 botnet is being used to conduct financial fraud in the UK and is operated from Eastern Europe. The botnet appears to be controlling more than 100,000 infected computers. The criminals have been harvesting all manner of potentially lucrative and revenue-producing credentials — including online account IDs plus login information to banks, credit and debit card numbers, account types plus balances, bank statements, browser cookies, client side certificates, login information for email accounts and social networks, and even FTP passwords."
login information to banks, credit and debit card numbers, account types plus balances, bank statements, browser cookies, client side certificates, login information for email accounts and social networks and even FTP passwords
I was not mad right up until that last one and even FTP passwords. They can have all that other crap but when they take my precious FTP password, and I use FTP for all my most critical-to-security interent functions, well...war on buddy.
Breaking News: Another XXl botnet steals bank account numbers. However, the acquisition of emails and Facebook accounts is worrying.
Zeus version 2
So, like a good little early adopter, I upgraded and installed version 2 on my machine only to find that it was a huge bloated piece of crap. The original Zeus was so much more simple and elegant and now this thing is just chewing up cycles. Yeah, like the customer won't notice that. Seriously, all I wanted it to do was safely back up my bank statements to a remote server in case I lose them. And after the "Zeus Certified" debacle, I don't know who to believe when I ask "Will this computer run the simplest of viruses like Adobe PDF Reader?" Clearly Zeus is just a resource hog ... and looking forward at Version 3 (if it's even released on time) one wonder if they're even trying to build a quality botnet anymore. It's times like these that make you wonder if it's time to switch over to Mariposa ...
As a precaution I've changed all my passwords to "DROP TABLE Stolen Data"
Mariposa is just as bloated - if not more so.
not only that, its less secure because it doesnt have a "benevolent dictator" calling the shots design-wise.
im running Conficker and its been working like a charm. granted, its market share is not that great, and as long as you hold the mouse the right way, it "just works".
honestly, i think this will be the year of the Conficker. Mariposa and Zeus are just too behind the curve.
I do all my banking at an internet cafe
For justice, we must go to Don Corleone
If you want Linux, Ubuntu, and the rest of the free OS's to stay superior and exploit-free, then why on earth would you ever want mainstream acceptance of said OS's? Wouldn't Linux et all going mainstream and replacing Windows/OSX mean that the botnets (and their owners) and scriptkiddies would then change their tactics to exploit whatever's currently dominant in market share?
If I were you, I'd be praying to the FSM for Windows/MS to stay dominant forever, just so that you could continue to use Linux without fear of someone writing script specifically to target YOUR OS's weaknesses. But that's just me
Here's to hot beer, cold women, and Glaswegian kisses for all.
The vast majority of (at least US) drivers certainly act like they found a driver's license at the bottom of their Cocoa Puffs box.
Faster! Faster! Faster would be better!
Given that virtually every botnet seems to originate in Eastern Europe, I can only assume that neck of the woods is now an endless tableau of McMansions, world-class prostitues, and Mercedes dealerships.
I'm sick and tired of all these Conficker fanboys. You sit and talk about your botnet being so great because its open source, and you can expose your information to any malicious actions you choose, big deal! I'll take my Mariposa walled garden any day, at least I know that I can give up my SSN, mother's maiden name, and current home address and I know it will "Just Work" when it comes to stealing my data.