Story Tools: PRINT | Text Size: S M L XL | REPORT TYPO | SEND YOUR FEEDBACK

In Depth

Technology

Online crime

Botnets: The end of the web as we know it?

March 29, 2007

Imagine your home computer and a half-million others being secretly commandeered by criminals who use them remotely to send spam e-mails, spread viruses, steal personal information — even crack the codes at credit card companies and banks.

Sound far-fetched? It's already happening. In the past five years, these so-called "zombie" robot networks — or "botnets" — have become the key to most serious internet crimes.

"It's not uncommon for the bad guys to have 50,000 or 100,000 or even half a million computers under their control, and they have the ability to constantly update and wreak havoc with what these machines are doing," said Jose Nazario, a security engineer with Arbor Networks, a network security company based in Lexington, Mass.

"They're overwhelming a lot of systems, and they're also able to attack the internet at large with massive numbers of machines, beyond the scope of what we've seen before," Nazario told CBC News Online.

At the least, the botnets pose such a threat that they could lead to changes in the very nature of the internet.

And in worst-case scenarios? The botnets could be unleashed to cause chaos at airports and other transportation hubs, paralyze companies' financial systems so workers go unpaid, and permanently destroy vital records at hospitals, schools and other institutions.

Will virtual 'gated communities' arise?

Jonathan Zittrain, a professor of internet governance and regulation at Oxford University's Internet Institute, warns that these and other apocalyptic visions are possible.

"Combine one well-written worm [a type of self-replicating virus] of the sort that can evade firewalls and anti-virus software with one truly malicious worm-writer, and we have the prospect of a panic-generating event that could spill over to the real world," Zittrain writes in a section of a book he's completing on the future of the web, which he e-mailed to CBC News Online.

Zittrain believes that without concerted action to secure the web, an overwhelming and entirely plausible e-terrorist attack could spell the end of the open internet.

Under this scenario, users and businesses could decide to retreat to the relative safety of closed-off networks or virtual "gated communities," severely limiting the universal creative process that has characterized the web to date.

"If digital gated communities become the norm, highly skilled internet users … will still be able to enjoy generative computing on platforms that are not locked down, but the rest of the public will not be brought along for the ride," he writes.

It could also mean that things our online society is coming to take for granted, like the ready downloading of software, video and other media, would become much more difficult or disappear altogether.

'Bot-herder' sentenced to 57 months in jail

Some "bot-herders," as they've been called, have been brought to justice: May 2006 saw the first successful U.S. prosecution for criminal botnet outsourcing.

Jeanson Ancheta, 21, of California, was sentenced to 57 months in federal prison for controlling as many as 400,000 bots.

He would rent the bots to "clients" who would then use them to send spam, install spyware and launch distributed denial of service (DDOS) attacks — floods of useless traffic that block users from gaining access to the network — against business rivals.

The judge noted that Ancheta's crimes were "extensive, serious and sophisticated."

Wesley Hsu, the deputy chief of the U.S. Justice Department's cyber and intellectual property crimes section in Los Angeles, said cases like Ancheta's are important.

"We're getting the word out that you can go to jail for this, that this is not some prank that we take lightly," Hsu said in a telephone interview.

Not easy to fight cybercrime

Prosecutions remain relatively few, however, as the nature and scale of the botnet problem makes it difficult for law enforcement to effectively address.

"We're dealing with a kind of high-tech crime that [law enforcement] have never seen before," said Nazario of Arbor Networks.

"The people perpetrating this are not only experienced with programming these botnets, but also with how to hide themselves."

Joe Stewart, a senior researcher at the Atlanta-based security firm SecureWorks, agreed.

"It's not impossible to track these guys down, but it's technical," he told CBC News Online. "It takes people that really understand the guts of these things, and unfortunately there are not enough of these people in law enforcement."

Thorsten Holz of the German Honeynet Project, a group working to learn more about botnets, said lack of speed is one issue that has hampered the authorities.

"It takes too long. They always have to talk to the court to get permission, which takes at least a couple of weeks, and in this time the attackers can just move to another system."

A question of education and who to trust

More effective law enforcement is just one of the tools needed to defeat the cybercrooks, experts say. More education and caution is needed by home users, who have been called the weak link in the chain that allows the bots to flourish.

Symantec Internet Security says home users are the target of 86 per cent of internet attacks, largely because they are far less likely than corporate users to have effective security measures.

Home users can help keep their machines — and the web — free of trojans (malicious software disguised as a legitimate computer file or program) and bots through some basic, but often ignored, safety steps.

"I talk to law enforcement around the world and they tell me that when they knock on the door of someone whose machine has been compromised, there's a look of shock and horror — but invariably they find there are [security problems such as] no passwords, open wireless, no security software, etc.," said Vincent Weafer, the senior director of development at the information security firm Symantec Corp.

"The best-practice steps are very simple and they haven't changed over the last couple of years."

Any computer that attaches to the internet should always have up-to-date firewalls and anti-virus software in place, for example.

Of critical importance is the immediate installation of software updates as required, especially for Windows users, since bots often get access to machines through known holes in popular software.

Human weakness also continues to be a problem. Two serious worm outbreaks in 2006 — Storm and Meteor — spread to hundreds of thousands of computers because users ignored years of warnings and opened suspicious e-mail attachments from strangers.

Experts still hopeful

In spite of all these issues, security experts generally feel that the criminal botnets can be beaten without changing the way we use the internet.

Secureworks' Stewart said he was confident the open web would continue and Arbor's Nazario echoed the sentiment.

"I think we're going to win in the long run, and very few people will retreat to isolated networks," Nazario said. "When I think about this, I'm an optimist."

Still, Zittrain, who postulates a potentially darker future, may have the last word: "Internet technologists often dismiss the problems of viruses and worms … because technologists know how to protect themselves against them."

Go to the Top

Menu

Main page

Technology

Green machines
Disk drive: Companies struggle with surge in demand for storage
Open season: Will court decision spur Linux adoption?
Analogue TV
Video games: Holiday season
Video games: Going pro
Guitar Hero
Parents' guide to cheap software
Working online
Laptop computers for students
Technology offers charities new ways to attract donations
The invisible middleman of the game industry
Data mining
Two against one
The days of the single-core desktop chip are numbered
Home offices
Cyber crime: Identity crisis in cyberspace
Yellow Pages - paper or web?
Robotics features
iPhone FAQ
Business follows youth to new online world
A question of authority
Our increasing reliance on Wikipedia changes the pursuit of knowledge
Photo printers
Rare earths
Widgets and gadgets
Surround Sound
Microsoft's Shadowrun game
Dell's move to embrace retail
The Facebook generation: Changing the meaning of privacy
Digital cameras
Are cellphones and the internet rewiring our brains?
Intel's new chips
Apple faces security threat with iPhone
Industrial revolution
Web developers set to stake claim on computer desktop with new tools
Digital photography
Traditional film is still in the picture
HD Video
Affordable new cameras take high-definition mainstream
GPS: Where are we?
Quantum computing
What it is, how it works and the promise it holds
Playing the digital-video game
Microsoft's forthcoming Xbox 360 Elite console points to entertainment push
Online crime
Botnets: The end of the web as we know it?
Is Canada losing fight against online thieves?
Malware evolution
Money now the driving force behind internet threats: experts
Adopting Ubuntu
Linux switch can be painless, free
Sci-fi projections
Systems create images on glass, in thin air
Power play
Young people shaping cellphone landscape
Digital cameras
Cellphone number portability
Barriers to change
Desktop to internet
Future of online software unclear: experts
Complaining about complaints systems
Canadian schools
Multimedia meets multi-literacy age
Console showdown
Comparing Wii, PS3 and Xbox 360 networks
Social connections
Online networking: What's your niche?
Virtual family dinners
Crackdown
Xbox 360 console game
Vista and digital rights
Child safety
Perils and progress in fight against online child abuse
Biometric ID
Moving to a Mac
Supply & demand
Why Canada misses out on big gadget launches
Windows Vista
Computers designed for digital lifestyle
Windows Vista
What's in the new consumer versions
Cutting the cord
Powering up without wires
GPS and privacy
Digital deluge
RFID
Consumer Electronics Show
Working online
Web Boom 2.0 (Part II)
GPS surveillance
Hits and misses: Best and worst consumer technologies of 2006
Mars Rovers
Voice over IP
Web Boom 2.0
Technology gift pitfalls to avoid
Classroom Ethics
Rise of the cybercheat
Private Eyes
Are videophones turning us into Big Brother?
Windows Vista
Cyber Security
Video games: Canadian connections to the console war
Satellite radio
Portable media
Video games
Plasma and LCD
Video screens get bigger, better, cheaper
Video games:
New hardware heats up console battle
High-tech kitchens
Microsoft-Novell deal
Lumalive textiles
Music to go
Alternate reality
Women and gadgets
High-tech realtors
The itv promise
Student laptops
Family ties
End of Windows 98
Bumptop
Browser wars
Exploding laptop
The pirate bay
Stupid mac tricks
Keeping the net neutral
PS3 and WII at E3
Sex on the net
Calendars, online and on paper
Google, ipod and more
Viral video
Unlocking the USB key
Free your ipod
In search of
Xbox
Sony and the rootkit
Internet summit
Electronic surveillance
[an error occurred while processing this directive] [an error occurred while processing this directive]
Story Tools: PRINT | Text Size: S M L XL | REPORT TYPO | SEND YOUR FEEDBACK

World »

Killing near London barracks probed as 'terror' act video
WARNING GRAPHIC CONTENT: Two men with butcher knives hacked another to death Wednesday near a London military barracks and one then went on video to explain the crime — shouting political statements, gesturing with bloodied hands and waving a meat cleaver. Soon after, arriving police shot and wounded the unidentified assailants and took them into custody.
2 infants confirmed among dead of Oklahoma tornado video
Rescue workers raced to complete the search for survivors and the dead in the Oklahoma City suburb where a mammoth tornado destroyed countless homes, cleared lots down to bare red earth and claimed 24 lives, including those of 10 children.
Man shot dead during FBI interview for Boston bombing probe
The FBI says a man being questioned by authorities in the Boston bombing probe was fatally shot after he initiated a violent confrontation during an interview with officers in Orlando, Fla.
more »

Canada »

'You will see him again in heaven,' Sharlene Bosma tells daughter video
Sharlene Bosma told more than 1,000 people at the public memorial service for her slain husband, Tim Bosma, about the love they shared.
Mike Duffy's primary home not P.E.I., unedited Senate report says video
A copy of the original report by an internal Senate committee on Senator Mike Duffy's expense claims, obtained by CBC News, makes it clear the committee believes Duffy's primary residence is in Ottawa, and not in P.E.I.
Rob Ford fired as Don Bosco Eagles football coach audio
The Toronto Catholic District School board announced Wednesday that it was turfing Mayor Rob Ford from his position as head coach of the Don Bosco Eagles senior football team.
more »

Politics »

Harper 'not consulted' about Duffy Senate expense repayment video audio
Prime Minister Stephen Harper says that not only did he not know about his chief of staff's "gift" to repay Senator Mike Duffy's expenses before the story broke in the media, he was not consulted and did not sign off on Nigel Wright's decision to write a personal cheque.
Mike Duffy's primary home not P.E.I., unedited Senate report says video
A copy of the original report by an internal Senate committee on Senator Mike Duffy's expense claims, obtained by CBC News, makes it clear the committee believes Duffy's primary residence is in Ottawa, and not in P.E.I.
Nanos Number: Few see positives in current political climate video
Nik Nanos digs beneath the numbers with CBC New Network's Power & Politics to get to the political, economic and social forces that shape our lives. This week: Few Canadians believe the current political environment will result in positive results.
more »

Health »

Chronic fatigue may be reversed with exercise
Taking it easy is not the best treatment for chronic fatigue syndrome, rather exercise and behaviour therapy are, a large study finds.
AT&T buys T-Mobile USA for $39B US
AT&T Inc. said Sunday it will buy T-Mobile USA from Deutsche Telekom AG in a cash-and-stock deal valued at $39 billion US, becoming the largest cellphone company in the U.S.
Milky Way home to 50 billion planets: NASA
Scientists have compiled the first cosmic census of planets in our galaxy: at least 50 billion planets are estimated to call the Milky Way home.
more »

Arts & Entertainment»

Aretha Franklin cancels Canadian shows
Aretha Franklin is extending her current break and has cancelled performances for the month of June, including apperances in Montreal and Ottawa.
Beatles lyrics donated to British Library
The British Library on Wednesday added substantially to its already formidable collection with handwritten lyrics to Beatles' classics Strawberry Fields Forever, She Said She Said and In My Life.
Jimmy Kimmel, Jon Stewart crack jokes about Rob Ford
Toronto Mayor Rob Ford's woes over crack cocaine allegations are providing plenty of late-night TV fodder for Jimmy Kimmel, Jon Stewart and other comedians south of the border.
more »

Technology & Science »

Arctic bacteria discovered breeding at record –15 C
Bacteria that can live and multiply in High Arctic permafrost at temperatures well below the freezing point of water have been discovered by a Canadian-led team of researchers, offering clues about the types of organisms that might exist in similar extreme environments elsewhere in our solar system.
Video forensics: How easy would it be to fake a Rob Ford video? video
Two media outlets reported last week that they had seen a cellphone video of Mayor Rob Ford allegedly smoking crack, a claim that has gone global. If a video does surface, how easy would it be to determine its authenticity? CBC News asked video forensic analyst David McKay.
Internet bill would unlock personal details, says watchdog
The Harper government's recent bid to give police more information about Internet users would have unlocked numerous revealing personal details — from web-surfing habits to names of friends, says a new study by the federal privacy watchdog.
more »

Money »

Real estate site Zoocasa adds MLS listings, agent recommendations video
Zoocasa, an upstart real estate company owned by Rogers, has launched a revamped website that aims to compete with Realtor.ca by presenting MLS listings in a more user-friendly format and connecting clients with realtors from major agencies.
U.S. Republicans aim to take hold of Keystone XL decision
The American political brawl over the approval of TransCanada's proposed Keystone XL pipeline shifted into overdrive on Wednesday as Republicans in the House of Representatives made yet another attempt to take the decision out of U.S. President Barack Obama's hands.
Cooling housing market will cost us 150,000 jobs, mortgage group warns
The government's effots to cool the housing market will have a negative impact on the economy and the range of industries that depend on house sales — everything from mortgage financing to furniture and appliance sales — the group that represents the mortgage industry says.
more »

Consumer Life »

Honda recalls Fit subcompacts
Honda Canada says it will recall 14,640 of its 2009 and 2010 Fit subcompact cars to replace lost motion springs.
U.S. travel fee proposal criticized by Harper
Prime Minister Stephen Harper says he doesn't think much of a new border tax that's being proposed by the United States, calling it a cash grab designed to help a budget crisis.
Bell class action suit approved by Que. court
A Quebec Superior Court judge has authorized a class action lawsuit to go ahead against Bell Mobility.
more »

Sports »

Scores: NHL NBA

blog Wharnsby: Senators down to their final lifeline
What began as a promising start for the Senators turned into an ugly 7-3 loss to the Pittsburgh Penguins Wednesday. The defeat was costly as Ottawa now finds itself in a fight for its playoff life, writes CBCSports.ca's Tim Wharnsby.
point of view Top #hockeynight tweets from Wednesday
The focus was on the Senators and the Penguins in Game 4 on Wednesday night, and the goals just piled up. The Twitter world was there to respond as Pittsburgh defeated Ottawa 7-3.
video Did You See That? Sidney Crosby continues to amaze
Sidney Crosby continues to amaze. The Pittsburgh Penguins superstar centre produced yet another highlight-reel goal on Wednesday night against the Ottawa Senators.
more »

Diversions »

[an error occurred while processing this directive]
more »