funsec mailing list archives

Russian Trojans Used to Steal 1M in France


From: "Fergie" <fergdawg () netzero net>
Date: Tue, 7 Feb 2006 15:10:25 GMT

Via The Guardian.

[snip]

Russian thieves have stolen more than €1m (£680,000) from personal bank accounts in France using "sleeper bugs" to 
infect computers. French authorities claim the thieves can take control of and empty a bank account in seconds. In one 
hit, a bank customer lost €40,000.

Police say the virus is embedded in emails or websites and remains dormant until the user contacts their bank online. 
When that happens, the bug becomes active and records passwords and bank codes which are then forwarded to the thieves. 
They then use the information to check the victim has money in the bank before transferring funds to the accounts of 
third parties, known as mules, who may have agreed to allow money to pass through their accounts in return for a 
commission of between 5% and 10%.

Police claim this is set up through fictitious companies, including one American firm named World Transfer, although 
the mules could be unaware that their computers are being used for theft.

A dozen Russian thieves, described by police as being typically aged between 20 and 30, and several Ukrainian 
masterminds of the scam have been arrested in Moscow and St Petersburg.

[snip]

http://technology.guardian.co.uk/news/story/0,,1703778,00.html

- ferg


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg () netzero net or fergdawg () sbcglobal net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: