Ads by TechWords

See your link here
Receive the latest technology news and information.
Networking
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
Cloud Computing
View all newsletters




Privacy Policy
 

Update: Russian hacker gang vanishes day after moving to China

Infamous Russian Business Network may be breaking into smaller bits

November 10, 2007 12:00 PM ET

Computerworld - The shadowy hacker and malware hosting network that only recently fled Russia to set up operations in China has now pulled the plug there and vanished yet again, researchers said late Friday.

The latest disappearing act of the Russian Business Network (RBN) has left researchers scratching their heads. "Where have they gone, that's the question," said an analyst at VeriSign Inc.'s iDefense Labs unit who wanted to remain anonymous, leery of retribution from the gang. "What's really interesting is how fast they shut everything down."

IDefense had tracked RBN's migration earlier in the week from servers based in Russia to ones running in China. On Tuesday, RBN's Russian servers went dark as the group relinquished control of its assigned IP addresses, effectively severing its connection to the Internet. By Wednesday, however, RBN had relocated to China and Taiwan after obtaining at least seven net blocks of Chinese IP addresses, said iDefense. According to the Sterling, Va.-based security intelligence firm, as of Wednesday, RBN controlled 5,120 IP addresses assigned to Chinese service providers; known RBN clients were even seen using those addresses that day.

But with its China move putting media and security community spotlights on the organization, RBN suddenly went offline on Thursday, said the analyst. "They severed connections to six of the seven net blocks on November 8," the analyst said.

The analyst speculated that while RBN's operators might dismiss the unflattering stories as attacks meant to discredit Russia and its president, Vladimir Putin, the attention was definitely unwelcome. "If their clients are afraid to use them," said the analyst, "it becomes a real issue of finances for RBN."

Security professionals have long alleged that RBN's clients are almost exclusively spammers, hackers, identity thieves, money mule operators, child pornographers and other criminals who have used its network to host malicious Web sites packed with malware or as the launching pad for spam campaigns and denial-of-service attacks. "These people don't like attention," said the analyst.

RBN has tried to deflect that attention before. In mid-October, the group spoke with a Western news organization for the first time when it told Wired that it was a legitimate business and that it was considering suing The Spamhaus Project, an well-known antispam organization, for blacklisting its IP addresses. Two days later, CNews Russia ran a story within the country that claimed the RBN allegations were fabrications meant to smear Putin.

Where RBN has gone or whether it will resurface is, however, a mystery for now. ""Where will they go next, assuming they want to reproduce the same model somewhere else? I don't know," said the iDefense analyst.



Jump to comments

Russian Business Network

Additional Resources

Xerox
By using solid ink technology only from Xerox, you could save up to 65% by printing color for the cost of black and white. Enter for a chance to WIN a PhaserTM 8860 network color printer!
Microsoft
Save time and mitigate security risk. Deploy it now.
Sybase
In this white paper, IDC analyzes the role of next-generation mobile enterprise platforms as organizations seek a more strategic deployment of mobile solutions.

Learn the important issues you must consider before starting your next mobility initiative. Get your mobility white paper from IDC now, compliments of Sybase.

What People Are Saying

White Papers & Webcasts

Southern Company
Download Now  

Aligning IT to Business: The Rising Importance of Application Delivery Networks
Application Delivery Networking (ADN) will play a vital role in helping enterprises incorporate strategic technologies to achieve business initiatives.

Mitigate Risk, Lower Costs and Improve Network Efficiency
Create a stable IP network that not only meets today's challenges, but is flexible enough to also meet future demands.

Share our Strength
Download Now  

Preparing Your Business Services for the Future
Would you trust your network monitoring tools enough to know when something is truly halting a business service?

IPAM: Slashing Network Costs
Slashing Network Costs by Consolidating and Automating Core Network Services

Horror stories: Managing IT Across Multiple Locations
How one extra sharp IT manager eliminates daily agony, hassle and repetition.