Anzeige
Mehr »
Login
Freitag, 20.09.2024 Börsentäglich über 12.000 News von 690 internationalen Medien
Spark Energy Minerals - das beste Lithium-Investment aller Zeiten?!
Anzeige

Indizes

Kurs

%
News
24 h / 7 T
Aufrufe
7 Tage

Aktien

Kurs

%
News
24 h / 7 T
Aufrufe
7 Tage

Xetra-Orderbuch

Fonds

Kurs

%

Devisen

Kurs

%

Rohstoffe

Kurs

%

Themen

Kurs

%

Erweiterte Suche
PR Newswire
231 Leser
Artikel bewerten:
(1)

Group-IB contributes to international "Operation Kaerb" that led to the arrest of the masterminds behind the iServer phishing-as-a-service platform which claimed more than 483,000 victims globally

AMSTERDAM, Sept. 19, 2024 /PRNewswire/ -- Group-IB, a leading creator of cybersecurity technologies to investigate, prevent, and fight digital crime, announced today that it has contributed a international operation code named "Operation Kaerb" coordinated by Europol and Ameripol-in partnership with European and Latin American law enforcement agencies and judiciary authorities-which resulted in the arrest of 17 cybercriminals in Argentina, Chile, Colombia, Ecuador, Peru, and Spain, who were behind the iServer phishing-as-a-platform targeting mobile users worldwide. The iServer phishing-as-a-service platform, which was active for five years, is reported by law enforcement investigators to have targeted over 1.2-million mobile phones, and claimed approximately 483,000 victims worldwide. The administrator of the iServer phishing platform, an Argentinian national, was also arrested during the multi-agency law enforcement operation that took place between 10 to 17 September 2024.

 iServer's domain seized by local and internal law enforcement agencies

Screenshot of iServer's website prior to its seizure

Active for at least five years, the iServer platform was primarily used by Spanish-speaking criminals in North and South America, but it has since expanded its reach into Europe and other regions. While iServer was essentially an automated phishing platform, its specific focus on harvesting credentials to unlock stolen phones set it apart from typical phishing-as-a-service offerings. iServer's platform features a web interface that enables low-skilled criminals, known as "unlockers," to steal device passwords, user credentials from cloud-based mobile platforms and other personal information from victims. This allows them to bypass "Lost Mode" and unlock phones acquired through illegal means.

Crimeware-as-a-service model

During its investigations into iServer's criminal activities, Group-IB specialists also uncovered the structure and roles of criminal syndicates operating with the platform: the platform's owner/developer sells access to "unlockers," who in their turn provide phone unlocking services to other criminals with locked stolen devices. The phishing attacks are specifically designed to gather data that grants access to physical mobile devices, enabling criminals to acquire users' credentials and local device passwords to unlock devices or unlink them from their owners. iServer automates the creation and delivery of phishing pages that imitate popular cloud-based mobile platforms, featuring several unique implementations that enhance its effectiveness as a cybercrime tool.

Unlockers obtain the necessary information for unlocking the mobile phones, such as IMEI, language, owner details, and contact information, often accessed through lost mode or via cloud-based mobile platforms. They utilize phishing domains provided by iServer or create their own to set up a phishing attack. After selecting an attack scenario, iServer creates a phishing page and sends an SMS with a malicious link to the victim.

Screenshot of a message received by a victim

A "redirector" link is used to filter and verify the visitor before leading them to the final phishing page; if they do not comply with the rules, access is denied. Once victims enter their credentials, these are verified by the platform, and additional information like OTP codes may be requested.

Screenshot of iServer's phishing page disguised as a popular cloud-based mobile service website.

Another example of iServer's phishing page disguised as a popular cloud-based mobile service website.

Ultimately, criminals receive the stolen and validated credentials through the iServer web interface, enabling them to unlock a phone, turn off "Lost mode" and untie it from the owner's account.

"We are honored to stop millions of cyber attacks targeting mobile users. The arrest of the syndicate members, including the mastermind, has averted significant fraud and safeguarded the personal lives of individuals across various regions," said Dmitry Volkov, CEO of Group-IB. "This serves as yet another great example of cross border collaboration, and we will continue to support local and international law enforcement efforts to combat cybercrime globally."

ABOUT GROUP-IB

Established in 2003, Group-IB is a leading creator of cybersecurity technologies to investigate, prevent, and fight digital crime globally. Headquartered in Singapore, and with Digital Crime Resistance Centers in the Middle East and Africa, Europe, Central Asia, and the Asia-Pacific, Group-IB analyses and neutralizes regional and country-specific cyber threats via its Unified Risk Platform, offering unparalleled defence through its industry-leading Threat Intelligence, Fraud Protection, Digital Risk Protection, Managed Extended Detection and Response (XDR), Business Email Protection, and External Attack Surface Management solutions, catering to government, retail, healthcare, gaming, financial sectors, and beyond. Group-IB collaborates with international law enforcement agencies like INTERPOL, EUROPOL, and AFRIPOL to fortify cybersecurity worldwide, and has been awarded by advisory agencies including Aite-Novarica, Gartner, Forrester, Frost & Sullivan, and KuppingerCole.

For more information, visit us at www.group-ib.com or connect with us on LinkedIn, X, Facebook, and Instagram.

FOR MEDIA INQUIRIES
Group-IB Public Relations
PR@Group-IB.com


Photo - https://mma.prnewswire.com/media/2509876/image_5015958_41685418.jpg
Photo - https://mma.prnewswire.com/media/2509877/image_5015958_41685856.jpg
Photo - https://mma.prnewswire.com/media/2509879/image_5015958_41686122.jpg
Photo - https://mma.prnewswire.com/media/2509880/image_5015958_41686153.jpg
Photo - https://mma.prnewswire.com/media/2509882/image_5015958_41686169.jpg
Photo - https://mma.prnewswire.com/media/2509884/image_5015958_41686215.jpg
Logo - https://mma.prnewswire.com/media/1853638/Group_IB_Logo.jpg

Cision View original content:https://www.prnewswire.co.uk/news-releases/group-ib-contributes-to-international-operation-kaerb-that-led-to-the-arrest-of-the-masterminds-behind-the-iserver-phishing-as-a-service-platform-which-claimed-more-than-483-000-victims-globally-302253217.html

© 2024 PR Newswire
Sondersituation: Vervielfachungschance bei diesen Goldaktien

Der Goldpreis haussiert und schwingt sich von Hoch zu Hoch. Getrieben von geopolitischen Unsicherheiten sowie der Aussicht auf eine lockere Geldpolitik der FED gehen Experten aktuell von weiter steigenden Notierungen bis sogar in den Bereich von 3.000 US-Dollar je Unze Gold aus.

Im Schatten des Basispreises notieren Goldproduzenten aus der zweiten Reihe sowie Explorationsunternehmen noch weit weg von ihren historischen Höchstständen entfernt und bieten dadurch erhebliches Aufholpotential.

In diesem kostenlosen Report geben wir Ihnen Favoriten an die Hand, die aufgrund von Sondersituation die Chance auf eine Kursvervielfachung besitzen.

Handeln Sie Jetzt!

Fordern Sie jetzt den brandneuen Spezialreport an und profitieren Sie von dem weiter steigenden Kurs des Edelmetalls.

Sichern Sie sich jetzt Ihren kostenfreien Report.

Werbehinweise: Die Billigung des Basisprospekts durch die BaFin ist nicht als ihre Befürwortung der angebotenen Wertpapiere zu verstehen. Wir empfehlen Interessenten und potenziellen Anlegern den Basisprospekt und die Endgültigen Bedingungen zu lesen, bevor sie eine Anlageentscheidung treffen, um sich möglichst umfassend zu informieren, insbesondere über die potenziellen Risiken und Chancen des Wertpapiers. Sie sind im Begriff, ein Produkt zu erwerben, das nicht einfach ist und schwer zu verstehen sein kann.