Skip the navigation
News

Man sentenced to 110 years for hacking, extortion

Uses Bifrost malware to hack into girls' computers and blackmail them into sending lurid photos

By Sharon Gaudin
December 5, 2007 12:00 PM ET

Computerworld - A North Carolina man last week was sentenced to 110 years in prison after admitting that he and a co-conspirator hacked into computers used by young girls and used illicitly gained data to blackmail them.

Ivory D. Dickerson, 33, a civil engineer, admitted that he conspired with the other person to send e-mails or instant messages to underage girls as part of a scheme to trick them into opening a file containing the Bifrost Trojan horse. The malware would then give Dickerson and his co-conspirator control over the victim's computer, and they would try to use hacked information to coerce the girls into creating and then electronically sending them lurid photos of themselves, prosecutors said. 

The Bifrost malware "is relatively easy to obtain," said Richard Wang, manager of SophosLabs U.S. "It's not something you need to pay for. Since we first saw it in April of 2005, we've seen over 1,200 different versions of this Trojan. The guys who write them are always trying to put up new versions to hide them from antivirus software."

Wang added that the Trojan horse not only allows hackers to view information and download other malware onto victims' computers, it also enables them to pop messages onto the victims' screens.

"It gave [Dickerson] administrator-type access," said Assistant U.S. Attorney Roger Handberg, who handled the case in the U.S. District Court in Middle District of Florida. "He was able to access her files and photos.... It's scary. In the law enforcement world, people worry about criminals breaking in through their front door. Now, people have to worry about people breaking in through their computers."

Handberg added that investigators found other hacking tools on Dickerson's computer, but Bifrost was the main one used in the attacks. Once they gained control over a girl's computer, the hackers would harvest her contact list of e-mail addresses, so they could then target other girls.

In one instance, Dickerson used the open back door in a victim's computer to download a keylogger onto her machine, according to court records. He used the keylogger to monitor her online conversations and sent her a threatening message when he noticed she was communicating with a relative about the hack, Handberg said.

Court records showed that Dickerson also threatened that if the victim didn't send him pornographic pictures of herself, he would send pictures he had downloaded from her computer to people in her school.

Information stolen by the keylogger and pictures Dickerson stole off the victim's computer were later found on his external hard drive, Handberg said.

FBI investigators reported that they found folders for each of Dickerson's victims on his personal computer along with evidence that he had hacked into more than 100 computers in the course of several years. Court documents showed that he also had a tool that enabled him to scan the Internet for webcams, so he could try to hack in and record people without their knowledge.



Additional Resources
Forrester Consulting - Optimizing Users and Applications in a Mobile World
WHITE PAPER
Solving application issues over the WAN requires careful consideration. Based on their independent research, Forrester Consulting offers recommendations on how to tackle application performance issues, insufficient bandwidth and the inability to quickly restore users in a disaster.

Read now.

Security KnowledgeVault
WHITE PAPER
Security is not an option. This KnowledgeVault Series offers professional advice how to be proactive in the fight against cybercrimes and multi-layered security threats; how to adopt a holistic approach to protecting and managing data; and how to hire a qualified security assessor. Make security your Number 1 priority.

Read now.

Cut Communications Costs Once and for All
WHITE PAPER
New IP-based communications systems are being deployed by small and midsized businesses at a rapid rate. Learn how these organizations are enabling faster responsiveness, creating better customer experiences, speeding office or mobile interactions, and dramatically reducing existing communications costs.

Read now.

Cybercrime and Hacking White Papers
Streamline Compliance and Increase ROI
Streamline, simplify, and automate compliance related activities; especially those that impact multiple business units. This white paper from NetIQ, outlines solutions that will...
Protecting Point of Sale Systems from Targeted Attack
If you are responsible for protecting retail systems, download this case study to learn how this retailer eliminated the threat of malware on...
From the Frontline - Preventing APT
Is your company's network secure? Are your endpoints and servers secured? Before you answer, read this case study on a US Military Command...
Stop Hackers Before They Attack
Hacktivism, Identify Theft, Financial Gain, Cyber War - regardless of motivation, stopping today's hackers requires a new proactive approach to protecting endpoints. Learn...
The four rules of complete web protection
As an IT manager you've always known the web is a dangerous place. But with infections growing and the demands on your time...
All Cybercrime and Hacking White Papers
Cybercrime and Hacking Webcasts
WikiLeaks: How am I Affected?
The latest WikiLeaks episode has raised questions about how organizations and governments protect their sensitive information. While this incident was isolated, it has...
Optimizing Networks for the Cloud
Join guest speaker, Rohit Mehra, IDC Director of Enterprise Communications Infrastructure, to explore current trends, discuss best practices for optimizing Data Center and...
Apps QuickStart Series Part 2: Designing and Deploying SQL Server on VMware vSphere
Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as...
Apps QuickStart Series Part 1: Designing and Deploying Exchange 2010 on VMware vSphere
Download this webcast to learn the virtual hardware design considerations for Exchange 2010, deployment using the building block approach, options for high-availability and...
Customer Spotlight: How IPC The Hospitalist Company Implemented Oracle on VMware
Have you been looking to hear about customer's experiences with the new VMware vCenter Site Recovery Manager product? View this webcast to learn...
All Cybercrime and Hacking Webcasts
Newsletter Sign-Up

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all newsletters | Privacy Policy
IT Jobs