Resources and Links

Resources:

Webinar: What Keeps You Up at Night?  Proactively Detecting New Online Threats (recording) (PDF)   See how Silver Tail's Forensics tool can be used to significantly reduce the time it takes to identify and understand emerging website threats - saving your organization tens of millions of dollars per event.
Webinar: Zeus Strikes Back! (recording) (PDF)   Mike Eynon hosts a webinar that details the Zeus attack against Silver Tail's data center!
Webinar: Dissecting Zeus, the #1 Banking Trojan (recording) (PDF)   We give an overview of Zeus including how it works and seeing it in action from three different perspectives.
Webinar: Detecting  Man-in-the-Browser Attacks   Laura Mather defines Man-in-the-Browser attacks and gives a demo from the perspective of the consumer, the web server, and the page flow.
Digital Transactions article: What To Do About Business Logic Abuse   Digital Transactions article on What To Do About Business Logic Abuse, written by Laura Mather.
Solution Brief: E-Commerce   Solution Brief on E-Commerce - examples of business logic abuse specific to e-commerce websites and the value of detecting and disrupting online fraud.
Solution Brief: Financial Services  

Solution Brief on Financial Services - examples of business logic abuse in financial services and how Silver Tail adds value to financial services firms.

White Paper on Business Logic Abuse  

White Paper describing "business logic abuse," including examples of online fraud and solutions to detect, investigate and disrupt these attacks.

 

Articles about online fraud:

  Wikipedia post on Business Logic Abuse, including examples of hijack threats, velocity attacks and malicious behavior.
   

C|Net article claiming cybercrime costs as much as $1 billion globally in lost intellectual property and expenditures for repairing the damage last year [2008], according to a new study from McAfee.

  Online article from Symantec about the threats targeting social networks.
  USA Today article on the Heartland Payments Systems breach where the attacker exploited the business logic to steal millions of credit card numbers. This is one of 500+ stories on the topic as it may be the largest in history.
 

Dark Reading article discussing how top internet sites are spreading malware, abusing the legitimate business logic of sites. "The most prevalent trend was the continued use of Web 2.0 content to exploit weaknesses within the Web infrastructure to attract the greatest number of victims," the report states. "Search engines and social networking sites were the biggest targets over the last six months, as hackers continued to get creative and leverage user-created content to compromise sites with good reputations."

 Wired   Wired article on an interesting business logic abuse case study – hackers exploited the online permit generation process to issue illicit logging permits to hundreds of logging companies, resulting in $833M in additional (illegal) revenue by 107 logging companies. THAT is compelling ROI for the bad guys, and even legitimate corporations.

  Wikipedia post on Internet Fraud, including examples and definitions of different attacks.
 Wired   Online article in Wired about the Koobface virus that attacked Facebook. Social networks are becoming prime targets for perpetrating fraud and business logic abuse. Check out Laura's blog post on this.

BusinessWeek

  BusinessWeek article on how "Cyberscams Befriend Social Networks."

New York Times

   

New York Times article on the rapid growth of malware and botnets. "As more business and social life has moved onto the Web, criminals thriving on an underground economy of credit card thefts, bank fraud and other scams rob computer users of an estimated $100 billion a year, according to a conservative estimate by the Organization for Security and Cooperation in Europe."

BusinessWeek

  BusinessWeek article on how the "U.S. Is Losing Global Cyberwar" and the formation of the recommendation to form the Center for Cybersecurity Operations.

TechCrunch

  TechCrunch article on how fraudsters took advantage of a recent eBay holiday promotion. "eBay Holiday Contest Overrun By Automated Scripts, Honest Users Disgruntled"
  Info World article on malware targeted to Firefox browsers.
     

 

© Silver Tail Systems, 2010. All Rights Reserved.