Themes & Channels

Grab our RSS feed !

Stay informed !
Subscribe to our FREE newsletters...
 The Security Newsletter
 The Storage Newsletter

Finjan Unveils Unprotected Business and Personal Data Found in 5,388 Log Files

Hosted on a Crimeserver running a command and control application

Finjan Inc., in secure web gateway products, announced its discovery of a server controlled by hackers (Crimeserver) containing more than 1.4 Gigabyte of business and personal data stolen from infected PCs. The data consisted of 5,388 unique log files. Both email communications and web-related data were among them.

The compromised data came from all around the world and contained information from individuals, businesses, as well as renowned organizations, including healthcare providers.
To illustrate the scope; the server contained among others 571 log files from the US, 621 from Germany (DE), 322 from France (FR), 308 from India (IN), 232 from Great Britain (GB), 150 from Spain (ES), 86 from Canada (CA), 58 from Italy (IT), 46 from the Netherlands (NL), and 1,037 from Turkey (TR).

Due to the sheer impact, Finjan followed its company guidelines and promptly notified over 40 major international financial institutions located in the US, Europe and India whose customers were compromised as well as various law enforcements around the world.

The report contains examples of compromised data that Finjan found on the Crimeserver, such as:
  • Compromised patient data
  • Compromised bank customer data
  • Business-related email communications
  • Captured Outlook accounts containing email communication

Finjan’s Malicious Code Research Center (MCRC) detected a Crimeserver which was used as a command and control for the Crimeware that was executed on infected PCs. This Crimeserver was also used as the “drop site” for private information being harvested by that Crimeware. The Command & Control applications on this Crimeserver enabled the hacker to manage the actions and performance of his Crimeware, giving him control over the uses of the Crimeware as well as its victims. Since the stolen data was left unprotected on the Crimeserver, without any access restrictions or encryption, the data were freely available for anyone on the web, including criminal elements.

This report provides a unique example of the type and amount of data today’s cybercriminals are collecting. Crimeware infected PCs are a serious business problem that requires proactive action since it is no longer just a technical IT problem. The existence of large amount of data on a server that hackers can easily manage and control shows the rapid evolution of cybercrime,” said Yuval Ben-Itzhak, CTO of Finjan. “We entered a new era in which criminals just need to log into their “data supplier” and download any information suitable for them to conduct their crime – being it financial fraud, industrial espionage or identity theft.”

According to Finjan, the fact that sensitive business and personal data in more than 5,000 cases were compromised in a timeframe of less than one calendar month indicates that the current numbers quoted in the industry reflect only the tip of the Cybercrime iceberg.

The compromised data and the Command and Control applications were detected using Finjan’s patented active real-time code inspection technology while diagnosing users’ web traffic.


The research is described in detail in Finjan’s latest
report: Malicious Page of the Month.

News Options >

AddThis Social Bookmark Button

print this news Print this news

Check-out our sister site !
SecurityNewsletter, Your Daily Source of IT Security News

StorageNewsletter.com

logo 

This Web site, with all the daily news on the worldwide storage industry, is already filled each day, but will be officially opened in few weeks. You can subscribe to be aware of the official launch. Stay tune!
_________________________________

storage_expo_uk_1

storage_expo_uk_2

Olympia, London, UK
: October 15-16

_________________________________

snia_academy_100 

Milan: September 16
Warsaw: September 17

SNW Europe 2008: October 27-29
Messe, Frankfurt, Germany

_________________________________

StorageNewsletter on paper

logosn
A monthly newsletter in English published since 1988
- for deeper analysis,
- exclusive interviews from CEOs
- report of biggest storage events
- technology trends
- company's profiles
- market reports
- and more 

A tremendous resource for those involved in product development, planning, marketing and sales of storage devices, subsystems and software, from everything from mainframes to hand-held PCs

To get a free sample or to subscribe:
http://www.StorageNewsletter.info

COMPLETE STORAGE
START-UP DATABASE

StorageNewsletter.com is offering
a storage start-up database.

It contains more than 450 start-ups in the world, listed with the following data:
- company name,
- headquarters,
- web site,
- CEO,
- year founded,
- business activity,
- yearly financial funding since 2003
  and total received.
It is possible to search by activity sectors (software, hardware, security, SSP, connectivity, fundamental technology, Infiniband).

Complete package for US$390
or less than one dollar a company.

To order this unique database
(in Excel format), please contact us
for an invoice by return mail.

COMPLETE DATABASE
OF MERGERS AND ACQUISITIONS

IN THE WW STORAGE INDUSTRY

More than 600 mergers and acquisitions since 1998 listed, and for each one:
Who bought whom, when, at which price, and the activity of the acquired company.

Complete package for $450.

To order this unique database (in Excel format), please contact us for an invoice by return mail.