Cloud

2/7/2018
12:40 PM
100%
0%

Man Formerly on FBI Most Wanted List Pleads Guilty in 'Scareware' Hack

Latvian man ran bulletproof Web hosting service that served cybercriminals.

The FBI's former fifth-most wanted cybercriminals has pleaded guilty to hacking-related charges in a scareware attack that targeted visitors to the Minneapolis Star Tribune website.

Latvian national Peteris Sahurovs, 28, - aka "Piotrek" and "Sagade" - faces a charge of conspiracy to commit wire fraud for his role in providing Web hosting services and technical support in 2010 to a so-called scareware scheme that infected users on the Star's website via a malicious online ad. The ad served up scareware and phony Windows Security Alerts, warning victims to purchase phony antivirus services to fix their infected computers, which either had slowed or failed altogether.

Sahurovs, who admitted to authorities that he ran a Web hosting service in Latvia that leased server capacity to cybercriminals spreading malware, fake antivirus, spam, and botnet operations, made between $150,000 and $250,000 off the scareware operation on the Minneapolis Star Tribune website.

Read more about his case before US federal authorities here

 

 

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
12 Free, Ready-to-Use Security Tools
Steve Zurier, Freelance Writer,  10/12/2018
Most IT Security Pros Want to Change Jobs
Dark Reading Staff 10/12/2018
Most Malware Arrives Via Email
Dark Reading Staff 10/11/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: This comment is waiting for review by our moderators.
Current Issue
Flash Poll
The Risk Management Struggle
The Risk Management Struggle
The majority of organizations are struggling to implement a risk-based approach to security even though risk reduction has become the primary metric for measuring the effectiveness of enterprise security strategies. Read the report and get more details today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-15378
PUBLISHED: 2018-10-15
A vulnerability in ClamAV versions prior to 0.100.2 could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due to an error related to the MEW unpacker within the “unmew11()?? function (libclamav/mew.c), which can be exploited to trigger an inval...
CVE-2018-18073
PUBLISHED: 2018-10-15
Artifex Ghostscript allows attackers to bypass a sandbox protection mechanism by leveraging exposure of system operators in the saved execution stack in an error object.
CVE-2018-15593
PUBLISHED: 2018-10-15
An issue was discovered in Ivanti Workspace Control before 10.3.10.0 and RES One Workspace. A local authenticated user can decrypt the encrypted datastore or relay server password by leveraging an unspecified attack vector.
CVE-2018-17961
PUBLISHED: 2018-10-15
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving errorhandler setup. NOTE: this issue exists because of an incomplete fix for CVE-2018-17183.
CVE-2018-15591
PUBLISHED: 2018-10-15
An issue was discovered in Ivanti Workspace Control before 10.3.10.0 and RES One Workspace. A local authenticated user can bypass Application Whitelisting restrictions to execute arbitrary code by leveraging multiple unspecified attack vectors.