Some Hackers Earn $2m A Year

The escalation in cyber-crime has significantly increased. Compared to other criminal activities cyber-crime has relatively low risks and criminals have realised that they can make more money, with less risk of getting caught, and receive smaller penalties if they do get caught, by manipulating cyber technology for their own advantage.

Recent research finds that a number of cyber criminals are earning around $2m annually and others between $40k to $1m and so criminal activity has increased significantly. Now, organised criminal gangs are using the electronic connected world to cyber-attack and hack globally.
 
Nevertheless, hackers spend as much time designing their attacks as they do finding ways to stay below the radar. A single slip-up can result in the end of their malicious enterprise.

But there is some recent good news that European police have recently arrested more than 800 people after shutting down an encrypted phone system, EncroChat, used by organised crime groups to plot murders and drug deals. More than two tonnes of drugs and £54m in cash, sub-machine guns, an  assault rifle, high value cars and luxury watches were impounded, says the British National Crime Agency (NCA). 

The top-secret phone system had been used by criminals to trade drugs and guns has been successfully penetrated and shut down.

The NCA worked with forces across Europe on the UK's "biggest and most significant" law enforcement operation. However, many other cyber criminals are using malware, DDoS and phishing attacks on companies and individuals that have poorly protected data.

The Dark Web provides the perfect platform for hackers to trade their stolen data. It can only be accessed using specialist software, and any websites hosted on the Dark Web are encrypted and can’t be found using traditional search engines or browsers.

In the UK, cyber-crime and fraud are now the most common offences, with around ten percent of the population getting hacked successfully. More than five and a half million cyber offences are thought to take place each year which accounts for almost 50% of all UK crime. Despite the scale of the problem, more than 80% of all these crimes are not reported to the police. Therefore, cyber criminals are rarely caught and prosecuted because they are virtually invisible. Crime has transformed with the digital age and police forces around the world are now having to rapidly adapt in order to tackle the problem.

The global nature of the problem has called for a global response, and many international law enforcement agencies are now working closely together to take down some of the world’s biggest cyber criminals.

Due to the sophisticated tactics that hackers use to cover their tracks, it’s extremely difficult to catch them and bring them to justice. Only around 4/5% of cyber criminals are apprehended for their crimes which demonstrates just how challenging it is for law enforcement agencies to arrest and prosecute these offenders.

Hackers will often use secure software such as a proxy server to hide their identity and funnel their communications through lots of different countries in order to evade detection.

Other technologies like Tor and encryption enable them to add multiple layers to mask their identity. The combination of these tools allows them to commit their crimes undetected and in countries where they know they can’t be prosecuted.

Tracking hackers down is laborious and often takes a lot of time, collaboration and investigative research. Specialist cybercrime units need to be assembled in order to retrieve and analyse any potential evidence. Encrypted files will need decrypted, deleted files recovered and passwords cracked.

Catching Hackers

Despite what may seem like an insurmountable task, hackers are human and make mistakes. It’s often these careless errors that will trip the criminals up and leave a trail of evidence that the police can follow. The majority of cyber-crimes are financially motivated, however for a large number of hackers it’s the thrill of the hack and the excitement of bringing down a company’s computer system that motivates them.

Following an attack, many will turn to hacker’s forums to brag about their exploits and this often provides police with the vital clues they need to start identifying the person responsible. Some cyber police operations have found effective way to lure cyber criminals in and find out more about how they operate and who they are. Essentially, they’re a decoy computer system set up to mimic a likely target for an attack.

The systems will contain data and applications that will trick hackers into thinking they are attacking a legitimate target.  The information gathered from these dummy attacks can provide valuable information on who is responsible and if there are any similarities that links the individual to other attacks.

A hacker can gain access to your organisation easily when your staff are not following your internal policies and procedures and it is very important that your management and employees receive cyber training that they engage with and use.

PaCCS Research:      Metacomplinace:       Metacompliance:     Web Professionals:        TechTarget:     

Cyber Security Intelligence recommends GoCyber cyber training for all employees and management:

Click HERE to register for a  free GoCyber demo

You Might Also Read: 

Young Hacker Makes $1m. Legally:

 

« Iran Threatens Retaliation For Cyber Attack At Nuclear Site
The Key Cyber Security Challenges »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

Resecurity, Inc.

Resecurity, Inc.

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

Blue Frost Security

Blue Frost Security

Blue Frost Security provides high-level IT security consulting, penetration testing services, ISO 27001 Solutions, PCI compliance solutions and training.

Get Cyber Safe

Get Cyber Safe

Get Cyber Safe is a national public awareness campaign created to educate Canadians about Internet security and the simple steps they can take to protect themselves online.

Tufin

Tufin

Tufin enables organizations to automate their security policy visibility, risk management, provisioning and compliance across their multi-vendor, hybrid environment.

HPE Aruba Networking

HPE Aruba Networking

HPE Aruba Networking, a Hewlett Packard Enterprise company, is a leading provider of next-generation network access solutions for the mobile enterprise.

ATSEC Information Security

ATSEC Information Security

ATSEC is an independent, privately-owned company that focuses on providing laboratory and consulting services for information security.

Conscia

Conscia

Conscia provides IT infrastructure solutions and 24/7 services in network, data center, security and mobility.

Ahope

Ahope

Ahope is a mobile security solution provider in Korea with a long history of security solution development.

Sandline Discovery

Sandline Discovery

Sandline Discovery provides digital forensics, eDiscovery solutions, managed review and litigation consulting services.

Resilience First

Resilience First

Resilience First is a not-for-profit organisation, led and funded by business to strengthen collective business resilience in all areas, including cyber security.

KeepSolid

KeepSolid

KeepSolid is a Virtual Private Network services provider offering secure encrypted access to the internet.

Founder Shield

Founder Shield

Founder Shield is a data driven insurance brokerage focused excusively on rapidly evolving high-growth companies.

Sure Valley Ventures

Sure Valley Ventures

Sure Valley Ventures is an entrepreneur led venture capital fund focused on helping software entrepreneurs grow and scale businesses that will have a global impact.

Bitdefender

Bitdefender

Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide.

Custodia Continuity

Custodia Continuity

Custodia Continuity manage your Security, Backup, Continuity and Compliance. You get on with your business.

BSS

BSS

BSS is a solutions and services business based in the UK with a focus on Cyber Security, Data, Financial Crime, Internal Audit, Change, Risk and Resilience.

Falconfeeds

Falconfeeds

Falconfeeds empowers businesses and security professionals with immediate access to the latest and historical threat intelligence data.