Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
How Cybercriminals Clean Their Dirty Money
Newest First  |  Oldest First  |  Threaded View
MarkSindone
50%
50%
MarkSindone,
User Rank: Moderator
2/18/2019 | 11:36:10 PM
Increase and improve
They need to be really good at their line of work to clean up the mess that they have created. Should they leave just a single trace of evidence, it would be easy to nail them. As we evolve alongside tech advances, we are able to witness just how upgraded hacking techniques have emerged too. Hence, the level of security that we need to put in place needs to be tightened as well.
CameronRobertson
50%
50%
CameronRobertson,
User Rank: Moderator
2/11/2019 | 1:12:16 AM
How are we going to catch them
I reckon that with the whole entire cryptocurrency business, it's gotten a lot harder to detect people who are doing all of these illicit activities. But where there's a will, there's a way, and that's why so many of them are still getting away with millions tucked away in storage somewhere...
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
1/24/2019 | 5:19:55 PM
Re: Solutions in sight?
Thank you for this information. I look forward to diving into it.
Alexon Bell
50%
50%
Alexon Bell,
User Rank: Author
1/24/2019 | 3:16:38 PM
Re: Solutions in sight?
There's actually a lot that can be done but it requires a coordinated effort between financial institutions, government and law enforcement. AI is helping to present an unprecedented level of context around data points so we're not having to use old methods that rely on triggers criminals are wise to and are already actively avoiding. By combining disparate data sets, we able to uncover the actual networks of money laundering rather than just spotting the odd transaction here and there. More on how we're doing exactly that at Quantexa: https://www.quantexa.com/solutions/anti-money-laundering/
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
1/23/2019 | 1:39:47 PM
Re: Lots of dicey brick and mortar operations could be laundering money too
@Alexon, this is very interesting and nicely complements the previous point made by SchemaCzar. This is definitely a very complex problem that has multiple challenges to contemplate.
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
1/23/2019 | 1:37:21 PM
Re: Lots of dicey brick and mortar operations could be laundering money too
I'm always curious on how some smaller shops remain open for as long as they do. I think its probably more common that they are hemorrhaging debt rather than perfoming nefarious acts. Not saying thats never the case, but its surprising how long a company can compound their debt until they are forced out.
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
1/23/2019 | 1:29:41 PM
Solutions in sight?
With new technologies and services being offered every day I can only see that Cisco's prediction will become more and more common as the years progress. Is there anything that can be done to stop the bleeding of money laundering?
Alexon Bell
50%
50%
Alexon Bell,
User Rank: Author
1/23/2019 | 1:12:01 PM
Re: Lots of dicey brick and mortar operations could be laundering money too
Absolutely, real estate is a popular vector for money laundering. If you're interested in an overview of the issue, you can check out my article on it here: https://moneyinc.com/my-neighbor-is-a-shell-company/
SchemaCzar
50%
50%
SchemaCzar,
User Rank: Strategist
1/23/2019 | 12:12:54 PM
Lots of dicey brick and mortar operations could be laundering money too
When you drive past a strip mall and see a business with few customers and wonder how it's paying the rent, I think I have an idea.


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
How Enterprises are Attacking the Cybersecurity Problem
Concerns over supply chain vulnerabilities and attack visibility drove some significant changes in enterprise cybersecurity strategies over the past year. Dark Reading's 2021 Strategic Security Survey showed that many organizations are staying the course regarding the use of a mix of attack prevention and threat detection technologies and practices for dealing with cyber threats.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-41152
PUBLISHED: 2021-10-18
OpenOlat is a web-based e-learning platform for teaching, learning, assessment and communication, an LMS, a learning management system. In affected versions by manipulating the HTTP request an attacker can modify the path of a requested file download in the folder component to point to anywhere on t...
CVE-2021-41153
PUBLISHED: 2021-10-18
The evm crate is a pure Rust implementation of Ethereum Virtual Machine. In `evm` crate `< 0.31.0`, `JUMPI` opcode's condition is checked after the destination validity check. However, according to Geth and OpenEthereum, the condition check should happen before the destination validity check. Thi...
CVE-2021-41156
PUBLISHED: 2021-10-18
anuko/timetracker is an, open source time tracking system. In affected versions Time Tracker uses browser_today hidden control on a few pages to collect the today's date from user browsers. Because of not checking this parameter for sanity in versions prior to 1.19.30.5601, it was possible to craft ...
CVE-2021-42650
PUBLISHED: 2021-10-18
Cross Site Scripting (XSS vulnerability exists in Portainer before 2.9.1 via the node input box in Custom Templates.
CVE-2021-41151
PUBLISHED: 2021-10-18
Backstage is an open platform for building developer portals. In affected versions A malicious actor could read sensitive files from the environment where Scaffolder Tasks are run. The attack is executed by crafting a custom Scaffolder template with a `github:publish:pull-request` action and a parti...