The security world is finally coming to realise that terrorists and criminal hacker organisations are operating with increasing corporate-like efficiency, specialisation and expertise.
From a business perspective, these criminal enterprises are highly productive and staffed by dedicated people willing to operate worldwide, around the clock "without holidays, weekends or vacations," according to Steven Chabinsky, deputy assistant director in the FBI's cyber division. "As a result, when an opportunity presents itself these criminals can start planning within hours."
"The cyber underground now consist of subject matter experts that can focus all their time and energy on improving their techniques, their goods and services," Chabinsky told an audience today at the FOSE conference, a government IT trade show, held here.
During the presentation, Chabinsky presented or proposed, a tentative list of the top 10 positions or roles, in cyber crminal organisations
- Coders/programmers, who write the exploits and malware used by the criminal enterprise.
- Distributors, who trade and sell stolen data and act as vouchers for the goods provided by other specialists.
- ISP;s, Tech experts, who maintain the criminal enterprise's IT infrastructure, including servers, encryption technologies, databases, and the like.
- Hackers, who search for and exploit applications, systems and network vulnerabilities.
- Fraudsters, who create and deploy various social engineering schemes, such as phishing and spam.
- Hosted systems providers, who offer safe hosting of illicit content servers and sites.
- Cashiers, who control drop accounts and provide names and accounts to other criminals for a fee.
- Money mules, who complete wire transfers between bank accounts. The money mules may use student and work visas to travel to the U.S. to open bank accounts.
- Tellers, who are charged with transferring and laundering illicitly gained proceeds through digital currency services and different world currencies.
- Organisation Leaders, charaismatic figure-heads, often "people persons" without technical skills. The leaders assemble the team and choose the targets.
No comments:
Post a Comment