Connect with us

Hi, what are you looking for?

HEADLINES

Organized cybercrime is ‘not your average mafia’

Cybercriminals also worked together to create fake documents so they could obtain money from banks under fraudulent identities.

Does the common stereotype for “organized crime” hold up for organizations of hackers? Research from Michigan State University is one of the first to identify common attributes of cybercrime networks, revealing how these groups function and work together to cause an estimated $445-600 billion of harm globally per year.

“It’s not the ‘Tony Soprano mob boss type’ who’s ordering cybercrime against financial institutions,” said Thomas Holt, MSU professor of criminal justice and co-author of the study. “Certainly, there are different nation states and groups engaging in cybercrime, but the ones causing the most damage are loose groups of individuals who come together to do one thing, do it really well – and even for a period of time – then disappear.”

In cases like New York City’s “Five Families,” organized crime networks have historic validity, and are documented and traceable. In the online space, however, it’s a very difficult trail to follow, Holt said.

“We found that these cybercriminals work in organizations, but those organizations differ depending on the offense,” Holt said. “They may have relationships with each other, but they’re not multi-year, multi-generation, sophisticated groups that you associate with other organized crime networks.”

Advertisement. Scroll to continue reading.

Holt explained that organized cybercrime networks are made up of hackers coming together because of functional skills that allow them to collaborate to commit the specific crime. So, if someone has specific expertise in password encryption and another can code in a specific programming language, they work together because they can be more effective – and cause greater disruption – together than alone.

“Many of these criminals connected online, at least initially, in order to communicate to find one another,” Holt said. “In some of the bigger cases that we had, there’s a core group of actors who know one another really well, who then develop an ancillary network of people who they can use for money muling or for converting the information that they obtained into actual cash.”

Holt and lead author E. R. Leukfeldt, researcher at the Netherlands Institute for the Study of Crime and Law Enforcement, reviewed 18 cases from the Netherlands in which individuals were prosecuted for cases related to phishing. Data came directly from police files and was gathered through wire and IP taps, undercover policing, observation and house searches.

Beyond accessing credit cards and banking information, Holt and Leukfeldt found that cybercriminals also worked together to create fake documents so they could obtain money from banks under fraudulent identities.

The research, published in International Journal of Offender Therapy and Comparative Criminology, also debunks common misconceptions that sophisticated organized criminal networks – such as the Russian mafia – are the ones creating cybercrime.

Advertisement. Scroll to continue reading.

Looking ahead as law enforcement around the world takes steps to crack down on these hackers, Holt hopes his findings will help guide them in the right direction.

“As things move to the dark web and use cryptocurrencies and other avenues for payment, hacker behaviors change and become harder to fully identify, it’s going to become harder to understand some of these relational networks,” Holt said. “We hope to see better relationships between law enforcement and academia, better information sharing, and sourcing so we can better understand actor behaviors.”

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

White Papers

Titled "An Infrastructure-Based Approach to Advance Digital Equity in South-East Asia", the whitepaper identifies connectivity challenges from an infrastructure provider’s perspective in three key economies,...

White Papers

Gaps in telemetry decrease much-needed visibility into organizations’ networks and systems, especially since attacker dwell time (the time from initial access to detection) continues...

White Papers

In addition to the 200 most common passwords worldwide and comparison among 35 countries, this year the study explored what passwords people use for...

HEADLINES

There is a well-established perception that human error is one of the main causes of cyber incidents in business. But things are not as...

HEADLINES

Keeper Security CEO and co-founder Darren Guccione shares his thoughts on some of the trends that will prevail in 2024. He cites the rise...

White Papers

For those retail organizations that paid the ransom, their median recovery costs (not including the ransom payment) were four times the recovery costs of...

White Papers

This is the highest rate of encryption in the past three years and a significant increase from the 61% of healthcare organizations that reported...

Phones

Recently released on One UI 6 as part of Samsung Galaxy’s expanded arsenal of security and privacy innovations, Auto Blocker is an opt-in package...

Advertisement