
And controls a zombie-army of at least 17,000 PCs...
Published: 18 November 2005 08:55 GMT
Security sleuths at FaceTime Communications say they have linked a group of hackers operating in the Middle East to a worm that began spreading last month via AOL's Instant Messenger service.
Experts at FaceTime's security unit reported on Thursday that the hacker group has seized control of at least 17,000 computers across the globe. The hackers have the capability to pilfer personal information from a computer's hard drive or remotely commandeer a PC to help launch attacks against companies or networks.
FaceTime, headquartered in Foster City, California, has alerted the FBI and warned that the 17,000 computers were controlled by a single compromised server. There is a chance that the hacker band may control other servers and thousands more computers, according to Tyler Wells, senior director of engineering at FaceTime.
Wells said: "The fact that they are using instant messaging is a disturbing trend. These guys are using BitTorrent... and that is getting a bit scary. They are using IRC-enabled spyware to control PCs."
BitTorrent is a freely available file-sharing network that hackers have been using to move large files more easily, Wells said.
On 28 October, FaceTime identified a worm that delivers a rootkit designed to go undetected by the security software used to lock down control of a computer after an initial hack.
Subsequent research has revealed that the rootkit worm piggybacking on AOL Instant Messenger acts as a back door for adding spyware, which can be used to pilfer usernames, passwords and other personal information.
A hacker can control this process through IRC, or Internet Relay Chat, communications.
Wells said FaceTime traced specific signatures within various code associated with the exploit. This gave them the ability to resolve where the exploits originated.
The FBI did not immediately respond to a request for comment.
Greg Sandoval writes for CNET News.com
ORACLE CORPORATION - Senior Pre Sales Consultant- AutoVueVisualization Software SuiteLocation:based in Middle East Introduction:The AutoVue division ...
Desktop computer (Windows 2000, XP and Vista) maintenance, administration and trouble shooting (Anti-spyware, Antivirus, backup etc. ...
A strong working knowledge of AIX is required and TSM, Tivoli and WORM skills would be an advantage. Our client is looking to recruit a Storage ...
Agenda Setters 2008
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Naked CIO Naked CIO: Should you monitor staff? Somebody's watching you
Elinor Mills Why 1970s hackers had 'whiz kid' status Q&A: Kevin Mitnick - blackhat hacker turned good guy