Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« Getting a Handle on Data Breach Costs | Main | 5 Things to Consider with Mobile Device Encryption »

Busted Bot Herder and Estimating Bot Population

A teenage bot herder has been arrested in New Zealand who, according to CNN, was responsible for a 1 million node botnet. While the arrest is good news, another notable part of the story is the difficulty in estimating the size of botnets.

The FBI has identified at least 2.5 million unsuspecting computer users who have been victims of so-called "botnet" activity. Hackers install viruses, worms and other attack programs that allow them to take over the computers and use them to commit cyber crimes.

In the same story we see Symantec noting double the number of bots:

Between January and June, Symantec Corp., a leading computer security company, detected more than 5 million bot-infested personal computers carrying out at least one attack a day, according to the company's September report. advertisement

That was a 17 percent decrease form the previous reporting period, according to Symantec, which said hackers appeared to be abandoning the technique because of strengthened security and law enforcement initiatives.

The decrease may be due to PC users cleaning up their machines and removing bot software or they may be dormant bots that have been shut down to stay below the radar. Biological viruses can remain inactive for long periods and then begin infecting hosts. That kind of survival strategy evolved because it works and the same pattern would work for bots as well.

It would be great news if the bot population dropped by 17% but monitoring bot activity alone won't convince me of that.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/544

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net