Share

Related Stories

  • The Approaching Mobility Maelstrom
    Last year Drew Amorosi polled the Infosecurity editorial board on their predictions for 2011. This year he decided to broaden the sample and find out what the rest of the industry are talking about. What he received was an overdose of mobile security warnings
  • Zero Day of the Dead
    The data load that has accompanied the globalization of trade would make even Atlas stagger. And that’s without the added burden of counter-terrorisAs you read this, zombie programs are flitting across the internet like a pestilence to infect and drain the life from innocent computer systems. Yet, for all the aggravation and grief they cause, you may never know you are part of a global invasion of the system snatchers, says William Knight. Unless…
  • All Eyes on CSI: Cyberspace
    In an ever-changing world, the way crimes are committed, and subsequently investigated, must also change. Lauren Moraski takes us inside the world of modern-day cybercrime forensic investigation
  • Data Breach Spring
    Infosecurity’s Drew Amorosi examines three data breach incidents from the past few months that, by their nature, keep security vendors in business, regulators busy, and CISOs up at night. Find out why industry observers think this rash of massive breaches could lead to a ‘PCI for consumer privacy’
  • The World’s Dumbest Hackers
    The world’s smartest hackers are often the dumbest. Danny Bradbury introduces the seven deadly sins of hacking, and finds out what happens when a hacker’s heart rules their head

Top 5 Stories

News

Mahalo employee nailed for botnet crime

06 March 2009

An employee of the human-powered search engine Mahalo[http://www.mahalo.com/] was sentenced to four years in prison this week for operating a botnet.

John Schiefer, who operated under the name "acid", operated the botnet for at least a year until January 2006, according to an FBI affadavit.

Schiefer and his co-defendants, including an individual called 'Adam', would monitor the machines that they infected for financial information. They obtained Paypal passwords and usernames by accessing the encrypted login information saved in Internet Explorer, and then used the Paypal accounts to steal money from the users' bank accounts.

"When 'Adam' expressed concern about stealing the money, defendant advised 'Adam' that 'Adam' was not yet 18 and that he should 'quit being a bitch and claim it'," said the FBI document.

Schiefer also registered as an affiliate for Topconverting.com, an adware operation owned by Simpel Internet, claiming that the firm's adware would be consentingly installed by users, but then install the adware without the users' permission. He earned $19 000 from the adware scam, installing the adware on 147 000 machines.

Malaho CEO Jason Calacanis, a former general manager of Netscape, knew about the crime but failed to fire Schiefer. In a heartfelt post on his personal blog, Calcanis said that he hadn't known about the crime at the time of the hire, and had decided to keep Schiefer on after he discovered it. "Almost all talented developers push the envelope when they’re young. Anyone in technology knows this dark, dirty little secret," he said, adding that he hoped to give Schiefer a job when he left jail.

This article is featured in:
Internet and Network Security • Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.