• On MovieTome: The 10 worst movies of 2009 so far!
April 22, 2009 3:19 PM PDT

To catch a (cyber) thief: It's not easy

by Charles Cooper
  • Font size
  • Print
  • 5 comments
cybercrime

SAN FRANCISCO--The FBI agent whose undercover sting operation led to the dismantling of an international cybercrime ring believes that increasing transnational police cooperation is turning the tide against digital criminals.

J. Keith Mularski, a special agent who works in the Federal Bureau of Investigation's Cyber Division, says that when it comes to fighting cybercrime, the bad guys may still hold a technological upper hand but that the good guys are getting better.

"We're not far behind," says Mularski, who spent a couple of years infiltrating a crime network that offered a range of stolen data--including credit card numbers, bank numbers and personal log-in information--to buyers online. The Web site, DarkMarket.ws, got shut down last October after a German radio network broke the news about the sting operation.

"I wouldn't say that we're winning the battle," said Mularski. Still, he insisted that law enforcement agencies are catching up. "I expect to see great strides" in the near term, he said.

So far, Mularski said police authorities around the world have arrested 60 people in connection with the FBI's targeting of DarkMarket. Despite what clearly marks a big victory, this remains a very long and complicated battle against shadowy opponents. What's more, the traffic in stolen IDs has grown into a multimillion business dominated by crime figures from the Russian mob.

Shutting them down is a matter of luck and perseverance and security experts liken the effort to a game of Whac-a-Mole, where underground forums easily emerge to serve as clearing houses or virtual supermarkets for myriad criminal activities over the Internet.

"The Russians got involved in cybercrime in the early 1990s and organized around software-based piracy," said Dmitri Alperovitch, an executive at the software security firm McAfee.

Since then, he said, Russian organized crime organizations have become more adept, moving on to financial fraud through the use of Internet worms and phishing attempts. He estimated that as much as 70 percent of the spam now sent over the Internet bears the fingerprints of Russian cybercriminals.

Making a rare public appearance at a San Francisco security conference hosted by RSA, Mularski said the plan to infiltrate that closely-knit network was predicated on winning the trust of the other members and that only took place over a period of months. He began his undercover work by assuming the nickname "Master Splinter," based on a character from the Teenage Mutant Ninja Turtles cartoon--"My son is a 'Teenage Mutant Ninja Turtle' fan," he said--and then becoming a participant in the various groups and forums on the DarkMarket site.

The FBI's big break came when DarkMarket got hit by a denial-of-service attack launched by a rival online site. By this time, Mularski, or "Master Splinter," had built up a reputation with the roughly 2,500 people who were members and had even been appointed to be a discussion moderator.

"I said that I was good at securing sites and said we can move (DarkMarket) to my server," he said.

They agreed and the FBI now had hosted one of the world's biggest one-stop shops for conducting ID theft.

Tallying up the results of the sting operation, Mularski said the FBI had prevented more than $70 million in potential economic loss at banks and brokerages. It also collected six complete new malware packages while recovering data on more than 100,000 credit cards.

"It was a great operation, especially internationally," Mularski said, sharing credit with transnational law enforcement agencies from the United Kingdom to Ukraine. As for Russia, he said interaction with local authorities was improving markedly and predicted that "in the future, you'll see more cooperation."

Charles Cooper has covered technology and business for more than 25 years. Before joining CNET News, he worked at the Associated Press, Computer & Software News, Computer Shopper, PC Week, and ZDNet. E-mail Charlie.
Recent posts from Coop's Corner
It's Coop's -30- column: Adios, sorta
To catch a (cyber) thief: It's not easy
I'm officially dropping out of the Twitter gab fest
Telcos said testing plan to offer PCs to businesses
The world is flat. So what's our problem?
First GM, now Silicon Graphics. Lessons learned?
LotusLive Engage: IBM's cloud gets social
LongJump to foster private clouds for corporate IT
Add a Comment (Log in or register) (5 Comments)
  • prev
  • 1
  • next
by n3td3v April 22, 2009 4:28 PM PDT
Propaganda for RSA Confererence.
Reply to this comment
by warspartan April 22, 2009 5:12 PM PDT
It's interesting to see the crackdown on cyber criminals as of late. It's almost like a fad with how much it's been happening.
Reply to this comment
by rcardona2k April 22, 2009 7:28 PM PDT
Win the battle lose the war? Has the right focus been on bailing out the banks on cybersecurity? Meanwhile the Chinese are robbing state-secrets left and right.
Reply to this comment
by danimal1030 April 23, 2009 8:08 AM PDT
Is there anything that everyday users can do to help? I mean really do. Don't tell me don't open attachments from unknown people or dont respond and don't be stupid. I mean If I get these vicious emails can I do anything to fight back?
Reply to this comment
by wieser100 May 18, 2009 6:59 PM PDT
Ok dummies put all your eggs in one basket so they can get smashed.ITs bad enough with in house problems Just imagine what it will be like trying to get a telcom to respond once they get a sizeable percentage of the market. At least a company can fire or at least disipline an in house it person,you would be stuck with them and they know it
Reply to this comment
(5 Comments)
  • prev
  • 1
  • next
advertisement
Click Here

S.F. hacker space: Heaven for the DIY set?

The Noisebridge hacker space offers sewing and Mandarin classes, soldering workshops, Internet-controlled front door access, and a server room with no door.
• Photos: Circuits, code, community

The browser battles go on and on

roundup From Firefox to IE and from Chrome to Opera and Safari, there's no sitting still for browser makers looking to keep their products fresh and competitive.

advertisement

About Coop's Corner

Charles Cooper has covered technology and business for more than 25 years. A graduate of Queens College and Columbia University, Cooper received the Excellence in Journalism award from the Northern California branch of the Society for Professional Journalists for column writing.

Add this feed to your online news reader

Coop's Corner topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right