Skip to main content

CYBER ATTACK PERSISTENTLY TARGETING ATM USERS, BANKS, FINANCIAL INSTITUTIONS AND ONLINE SHOPPING WEBSITES. Researchers Uncover a Nigerian Hacker's Pursuit Of His Million Dollar Dream.


Nigerian Hacker
Social engineering-driven malware threats continue to be a big threat, but new research details how cybercriminals profit off such schemes to launder hundreds of thousands of dollars from stolen credit cards of unsuspecting victims.

Cybersecurity firm Check Point Research, in a report, uncovered the digital trail of a Nigerian cybercriminal, who went by the name of "Dton" and targeted hundreds of thousands of people under the moniker of "Bill Henry" by sending them malicious emails with custom-built malware.

The company said it disclosed the findings to concerned Nigerian and international law enforcement authorities for further action.

A multi-stage criminal scheme


The operation began with Dton buying stolen credit card details from Ferrum Shop, an online marketplace that sells over 2.5 million stolen credit card credentials, and then charging them each $550 each to fraudulently net more than $100,000 in illicit transactions.

credit card shop

"During the years 2013-2020, the account he regularly logs into has been used to purchase over $13,000 worth in stolen credit card credentials," Check Point noted.

Subsequently, the researchers found that Dton's monetizing cyber crimes were no longer dependent upon buying stolen credit cards. Instead, he started collecting this data himself, for which he purchased bulk email lists of new victims and malicious tools, including keyloggers (AspireLogger) and remote administration tools (RATs) such Nanocore and AZORult, a family of spyware that steals information and is used to download additional malware.

credit card hacking

malware virus machine

email-hacker

In the next step, Dton orchestrates a RAT-spamming operation, wherein the custom-built malware is disguised as innocuous email attachments, and sent out to each of the email addresses, thereby harvesting user credential details without the recipients' knowledge.

"Active for over seven years, Dton orchestrates his operation from Benin City, a city in southern Nigeria with a population over 1.5 million," the researchers told The Hacker News.

"But most of his attention went into buying malicious tools of the trade: Packers and crypters, infostealers and keyloggers, exploits and remote VMs."

"Dton now disguises his custom-built malware into everyday email attachments, blasts them out to each of the email addresses on his lists, and harvests user credential details without the email owners ever knowing."

The RATs contain hard-coded credentials for a single Yandex mail to which all the aggregated stolen victim data is sent to.

interpol cybercrime
But Check Point researchers found a twist in the criminal's modus operandi: "When business with someone goes well, Dton infects them with a RAT just in case it later turns out to be useful; when business with someone goes less than well, Dton resolves the dispute by reporting them to the Interpol."

Protect Yourself from Phishing Attacks


It's no surprise that bad actors are continually finding new ways to trick consumers into providing remote access to their computers to steal information. By combining sophisticated social engineering techniques with information already available about the target from other sources, the attacks have proven to be an easy vector to bypass security barriers.

The ever-evolving sophistication of social engineering scams underscores the need for preparedness and practicing good Security hygiene. It's essential that accounts are secured with two-factor authentication and be vigilant when it comes to opening emails.

THN
#osutayusuf

Comments

Popular posts from this blog

Escaped Murder Suspect Finally Arrested in Yumbe Regional Referral Hospital, Yumbe District.

Story by Osuta Yusuf. 19-November-2024. 📸: Eyotre Kennedy handcuffed on bed while receiving medication this morning at Yumbe Regional Referral Hospital in Yumbe District. Eyotre Kennedy originating from Etoko village, Nyoroo Parish, Nyadri Sub-county in Maracha District who has for many years been terrorizing residents in his village, has finally been arrested this Monday morning 19-November-2024 while receiving treatment at Yumbe Regional Referral Hospital in Yumbe District following injuries he sustained from Theft mission on Saturday night 16-November-2024 in Owapi village, Azapi parish in Odupi Sub-county, Terego East Constituency in Terego District. Click here on the link  https://informationispowah.blogspot.com/2024/11/fugitive-who-chopped-3-people-killed.html   to read the story on his Theft of Goats in Terego. Upon getting cut on the finger and leg by the Mob as he attempted to fight and overpower owner of the goats he attempted to steal on Saturday night ...

41-Years-Old Man Digs His Own Grave in Maracha District.

Story by Osuta Yusuf.  Maracha District.  📸: The grave been dug by Mr Opiga Michael, a victim of frustration. Photo taken by Osuta Yusuf , on Wednesday 11-September-2024. The residents of Ebapi village, Baria Parish in Nyadri Sub-county, Maracha east constituency, Maracha District are in shock after a 41 year old man started digging his own grave. The man, identified as Mr Opiga Michael, who seems to be frustrated over some challenges in life, started digging his own grave on Tuesday 10-September-2024 until he was stopped by the elders in Nyaria clan. 📸: Opiga Michael, the Victim of Frustration. Photo by Osuta Yusuf , Information is Power. While speaking to our reporter on Wednesday evening 11-September-2024, Mr Opiga Michael, said, his main plan  was to commit suicide after finishing digging the grave for burying himself, explained that, he feels frustrated, abandoned and hated by his own clan people, whom he accused of piling lies against him a...

Wedded Ayivu West MP Lematia John Fights Over Another Woman.

  📸: Hon Lematia John. By URN. Police in Arua district are investigating a case of assault and threatening violence involving the Member of Parliament for Ayivu West Constituency John Lematia and James Ariko, a DSTV technician in Arua city. Drama ensued on Easter Sunday 31-3-2024 at Dream Land Hotel located at Kuluva trading center along Arua-Nebbi highway in Arua district when the legislator and the technician engaged in a fight reportedly over a woman identified as Faith Eyotaru 25, a relationship officer at Victoria University Kampala. The scuffle started after Ayivu West Mp John Lematia went to swim at Dreamland Hotel with Faith Eyotaru only to find Ariko, who had gone to the same hotel earlier. However, upon seeing the duo coming out of the vehicle, Ariko confronted Lematia with both men claiming to be having a relationship with the lady. It took the intervention of the staff at the hotel who intervened and separated the fight between the men. Josephine Angucia, the West Nil...