Business Wire
Welcome
  • Log In
  • Sign Up
Search News:
Help
 Damballa Inc.
September 07, 2011 12:09 PM Eastern Daylight Time 

New Damballa Labs Threat Report Analyzes Internet Crime Trends for First Half of 2011

Damballa Unveils the Industry’s First Research on the Growth of Mobile Malware Criminal Command-and-Control Activity; Also Discloses List of the Most Abused Top Level Domains and Top 10 Botnets in North America

ATLANTA--(BUSINESS WIRE)--Damballa® Labs, the research and cyber intelligence arm of Damballa Inc., today released its “Threat Report – First Half 2011.” The Threat Report includes the security industry’s only known research findings into compromised smartphones actively engaging with criminal command-and-control (C&C) servers, as well an analysis of the top 10 largest botnets in North America and the top 10 most abused top level domains (TLDs). The report can be downloaded at http://landing.damballa.com/20110907-Damballa1H2011ThreatReport.html.

“Criminal operators continue to hone their craft in 2011 using crimeware that can be repurposed for multiple fraud opportunities, sold or leased to other criminals, and that is now successfully infiltrating the mobile space”

The report looks at Internet crime trends with a specific focus on criminal C&C activity in North America as monitored by Damballa Labs over the first six months of 2011. The Damballa Threat Report reveals a number of findings, including:

  • The top 10 largest botnets for the first half of 2011
  • A first-ever look at the growth in mobile malware C&C activity
  • The top 10 most abused TLDs

“Criminal operators continue to hone their craft in 2011 using crimeware that can be repurposed for multiple fraud opportunities, sold or leased to other criminals, and that is now successfully infiltrating the mobile space,” said Gunter Ollmann, vice president of research for Damballa. “As the arms race rages on between the criminals, their increasingly federated crime-as-a-service ecosystem, and the security professionals tasked with combating them, it has become increasingly important that the defenders obtain advanced knowledge of the existence and behavior of new criminal operators and their network of infected assets.”

Report highlights include:

Top 10 Largest Botnets

  • There were major changes in the list - Only three of the top 10 largest botnets for the first half of 2011 appeared in the Damballa Top 10 Botnets for 2010 Threat Report.
  • “OneStreetTroop,” the Damballa reference to a botnet operation reliant on crimeware generated by the popular SpyEye do-it-yourself (DIY) construction set, climbed from number 10 in 2010 to the number 1 position for the first half of 2011.
  • The prevalence of improved DIY crimeware construction kits and associated exploit packs is visible in the makeup of the results for the first half of 2011; with 8 out of the top 10 largest botnets utilizing popular “off-the-shelf” construction kits.

Mobile Threats

  • Over the first six months of 2011, the number of hijacked Android devices engaging in “live” communications with criminal operators grew at a significant rate.
  • Until recently, mobile malware abuse has been limited, to some extent, to premium rate fraud or other tactics that did not rely on a command-and-control architecture. Having mobile malware contact the criminal operator and establish two-way Internet communication now makes the mobile market as susceptible to criminal breach activity as desktop devices.

Most Abused TLDs for Live C&C

  • Not surprisingly, the most popular TLDs (.com, .info, .net, .org and .biz) are among the top 10 most abused by criminals.
  • The TLD “.in” (India) ranked as the fifth most popular TLD for C&C use. This country code TLD has not historically been considered to be heavily abused.
  • 90 percent of all “live” C&C take advantage of the top 10 most abused TLDs.

About Damballa Labs - Damballa Labs is a team of recognized authorities in cyber threats, malware analysis, and applied scientific research that collaborate with some of the best minds in the academic community to discover new and innovative ways to stay ahead of cyber crime activity. Specifically, Damballa Labs retains some of the most knowledgeable experts on DNS, machine learning technologies, and criminal command-and-control infrastructure.

About Damballa Inc. - Pioneering the fight against cybercrime, Damballa protects enterprise, ISP and cloud networks from the devastating effects of targeted attacks, persistent threats, advanced malware, and other cyber threats. Damballa provides the only network security solution that detects and terminates remote-control communication used by criminals to breach networks. Patent-pending solutions from Damballa are platform and system-agnostic, protecting networks with any device type including PCs, Macs, smartphones, and mobile devices. Headquartered in Atlanta, Damballa customers include Fortune 2000 companies, government and educational organizations, and Internet and telecommunication providers. http://www.damballa.com.

Contacts

Damballa Inc.
Ann Conrad, 404-961-7402
press@damballa.com
or
Schwartz Communications
Bill Keeler/Tiffany Darmetko, 781-684-0770
damballa@schwartzcomm.com

Recent Stories

  • View Press Release
    Adrian Culley of Damballa to Speak on Prevention and Detection of Advanced Threats at InfoSecurity Europe, London
    April 23, 2013
    ATLANTA & LONDON--(BUSINESS WIRE)--Damballa, the recognised experts in advanced threat protection, announced that Adrian Culley, technical consultant, will speak at InfoSecurity Europe in London to... more »
  • View Press Release
    Webinar: Securosis and Damballa Discuss How to Uncover Advanced Threats Using Network-based Threat Intelligence
    April 17, 2013
    ATLANTA--(BUSINESS WIRE)--Damballa Inc., the recognized experts in advanced threat protection, and information security research and advisory firm, Securosis, will be offering a webinar titled, “Un... more »
  • View Press Release
    Webinar: Securosis and Damballa Discuss How to Uncover Advanced Threats Using Network-based Threat Intelligence
    April 08, 2013
    ATLANTA--(BUSINESS WIRE)--Damballa Inc., the recognized experts in advanced threat protection, and information security research and advisory firm, Securosis, will be offering a webinar titled, “Un... more »
More Stories
RSS feed for Damballa Inc.
 Damballa Inc.

Release Versions

  • EON: Enhanced Online News

Company Information Center

Damballa Inc. RSS feed for Damballa Inc.

Share

  • Facebook
  • Twitter
  • LinkedIn
  • Delicious
  • Reddit
  • StumbleUpon
  • Digg
  • MySpace
  • Newsvine
  • Google Bookmark
  • Yahoo! Bookmark
  • EmailEmail
Tweet
  • EmailEmail
All News
Business Wire
  • Home
    • Home
    • Membership Benefits
    • Submit a Press Release
  • News
    • All News
    • News with Multimedia
    • News by Industry
    • News by Subject
    • News by Language
    • RSS Feeds
    • Business Wire Mobile
    • Features
    • Company NewsCenters
    • Annual Reports
  • Events
    • Trade Shows & Events
    • Earnings & Conference Calls
    • Business Wire Events
  • PR Services
    • Press Release Distribution
    • Distribution Lists
    • Industry Targeting
    • LatinoWire & Ethnic Media
    • Public Policy Wire
    • Trade Show Services
    • Photos & Multimedia Marketing
    • GloMoSoMe
    • Measurement & Analytics
    • Monitoring
    • Fax & Email Services
    • Online Newsrooms
    • News Feeds
  • IR Services
    • Material News Disclosure
    • XBRL
    • EDGAR (US)
    • IPO Services
    • SEDAR (Canada)
    • European Disclosure
    • Corporate Social Responsibility (CSR)
    • Investor Targeting
    • Mobile Alerts
    • Fax & Email Services
    • IR Sites
    • IR Resource Center
  • SEO Services
    • Press Release Optimization
    • EON: Enhanced Online News
    • Webinars & Resources
  • Journalist Tools
    • PressPass: Your News
    • Conduct Surveys
    • Business Wire News Feeds
    • Business Wire News On Your Website
    • Journalism Associations
  • Support & Education
    • FAQ
    • How to Write a Press Release
    • How To Optimize a Press Release for Search
    • Find Your News Online
    • Sample Press Release
    • Features News Tips
    • International Media Tips
    • SEC Regulations
    • Exchange Guidelines
    • White Papers
    • Webinars & Podcasts
    • Get WiredIn!
  • About Us
    • Business Wire Newsroom
    • Contact Us
    • History
    • Jobs
  • About Us
  • Contact Us
  • Site Map
  • Privacy Statement
  • Terms of Use
  • ©2013 Business Wire

More Business Wire sites

  • Canada
  • UK/Ireland
  • Deutschland
  • France
  • Italy
  • Japan
  • EON: Enhanced Online News
  • Tradeshownews.com
  • PYMNTS.com

About Us

  • Business Wire Newsroom
  • Contact Us
  • Business Wired blog

News on BusinessWire.com

  • All News
  • RSS Feeds
  • Business Wire Mobile Apps

Follow Us on Twitter

  • @BusinessWire
  • @BWSportsWire
  • @BWPolitics
  • @BWCSRNews
  • @EONpr
  • @TradeshowNews
  • @BW_Canada
  • @BWIntlMedia
  • @BWInfoDiva
  • @BusinessWireFR
  • @BWLatinoWire

Like Us on Facebook

  • Business Wire
  • Tradeshow News