US seizes website selling malware that stole computer data
US authorities said on Thursday they seized an internet domain that was selling malicious software criminals used to steal data from and take control of victims’ computers.
The seizure of the site, worldwiredlabs dot com, was conducted by federal authorities in Los Angeles as part of an international law enforcement effort, the US Department of Justice said in a statement.
The site sold NetWire, a type of malware called a ‘remote access trojan’ (Rat), which is “a sophisticated program capable of targeting and infecting every major computer operating system,” the statement said.
It allows covert surveillance, creating a “‘backdoor’ for administrative control and unfettered and unauthorised remote access to a victim’s computer, without the victim’s knowledge or permission,” according to court records filed in Los Angeles the statement cited.
It was unclear how many times the malware had been bought off the seized website. The digital rights watchdog Citizen Lab said in a report in 2017 that NetWire first appeared in 2012 and has been used in attacks ranging from credit card fraud to those targetting the healthcare and banking sectors.
“Criminals used NetWire on a global scale, and we have responded by dismantling the infrastructure that has caused untold harm to victims around the world,” US Attorney Martin Estrada said in a statement.
A US spokesperson for the investigation did not immediately respond to a request for further comment.
A Croatian national who was the site’s administrator was arrested in his country on Tuesday while Swiss law enforcement separately seized the computer server hosting the malware infrastructure, the DoJ statement added.
The seizure comes as UD authorities work on improving collaborations with other countries on investigating cybercrimes, which are often cross-border. A new cybersecurity strategy unveiled by the White House last week called for stronger coalitions with foreign governments. MSN
You must be logged in to post a comment Login