[ Team Cymru Community Services ] [ Team Cymru Commercial Services ] [ Dragon Research Group ]
UK Law Firm Sues WikiLeaks Founder Assange Over Pending Fees "Julian Assange - the founder of the whistle blower website WikiLeaks has been reportedly sued by the UK based law firm that he had hired after his arrest back in 2010...." (more) | American Airlines caught up in email scam "The ABC15 Investigators have a consumer alert about an email from American Airlines asking you to confirm the purchase of a ticket you didn't buy...." (more) | iPhone Flaw Sends Messages to Wrong People "A serious flaw in the iMessaging app for Apple's iOS 5 allows strangers to receive personal and in some cases extremely private messages not meant for them...." (more) | Microsoft Vs. Google: Who Has Better Privacy Benefits? "Carpe diem!..." (more) | Hungarian hacker gets 30 months for extortion plot on Marriott "A Hungarian hacker who attempted to extort money from Marriott International Inc. by stealing confidential data from its computers and threatening to expose it was sentenced to 30 months in prison...." (more) | Law enforcement websites under attack by hackers "Saboteurs stole passwords and sensitive information on tipsters while hacking into the websites of several law enforcement agencies worldwide in attacks attributed to the collective known as Anonymous...." (more) | Citi Hit in Brazilian Hacker Attack "A computer hacker group on Friday continued a wave of attacks against Brazilian financial websites, hampering the sites of Citigroup Inc. and other prominent institutions...." (more) | INTERPOL Set To Open Global Cybercrime Center In 2014 "Kaspersky Security Analyst Summit 2012 -- One of the many challenges faced by law enforcement worldwide in investigating cybercrime cases is the ability to efficiently share intelligence among different nations and to disseminate it to the appropriate local police units...." (more) | Europe Opens Antitrust Investigation into Samsung Patents "The European Commission has announced a formal investigation into Samsung's patent enforcement efforts...." (more) | Barnes & Noble's Patent-Misuse Claim Against Microsoft Rejected "An International Trade Commission (ITC) judge has rejected Barnes & Noble's claim that Microsoft was misusing the patent system in order to stifle competition from Android-based devices...." (more) | Microsoft Windows Phone 8 Details Leak "A leaked video prepared by Microsoft for staff at Nokia has revealed more information about the forthcoming Windows Phone 8 mobile operating system...." (more) | Anonymous gain access to FBI and Scotland Yard hacking call "Hacking network Anonymous has released a recording of a conference call between the FBI and UK police in which they discuss efforts against hackers...." (more) | How To Protect Customers From Online Fraud "Consumers and companies today rely on the Internet to perform all manner of tasks, from conducting business, to buying and selling personal items to managing their lives, friendships and family interactions...." (more) | ICT: We didn't block SimSimi "The Information and Communication Technology Ministry denied on Saturday that it had blocked the controversial Thai-language version of the SimSimi smartphone application...." (more) | Will Europe Upend Google's New Privacy Plan? "European data protection authorities are asking Google to delay its roll out of a new consolidated privacy policy that will further integrate your personal information across all of Google's services...." (more) | Anonymous hack the #Greek Justice Ministry's website "Anonymous posted a protest against Greece's EU and IMF-inspired austerity policies on the website of the country's justice ministry today...." (more) | FBI confirms hackers intercepted confidential phone call, says its hunting those responsible "FBI confirms hackers intercepted confidential phone call, says its hunting those responsible...." (more) | Syracuse PD site hacked, Anonymous claims attack "Syracuse police say the department's website has been hacked in an attack claimed by the online collective Anonymous, one of a number this week targeting police...." (more) | Hackers deface website of lawyers for US Marine "Members of the hacker group Anonymous defaced the website on Friday of the law firm that defended a US Marine who faced charges in connection with the 2005 killing of 24 Iraqi civilians...." (more) | Ex-hacker: BPD site not in the clear "Cyber attacks aimed at the Boston police could continue, a former member of the hacking collective Anonymous warned yesterday, after the shady organization claimed credit for knocking down the departments website...." (more) | Anonymous reveals Haditha massacre emails "Anonymous have unveiled their second major release for this weeks installment of F***FBIFriday...." (more) | Iran: Supreme Leader Speaks On Nuclear Program, Threats, Israel "Iranian Supreme Leader Ayatollah Ali Khamenei has vowed that Tehran will not give in to international pressure to abandon its nuclear program...." (more) | US Intelligence Chief Warns Of Cyber Cold War OpEd "The U.S. House of Representatives and Senate should pass legislation to increase cyber security in both public and private sectors since the country is involved in a type of cyber Cold War, stated the U.S. Director of National Intelligence James Clapper on Thursday during a congressional presentation...." (more) | US WikiLeaks Soldier Manning Court-Martialed "The U.S. Army has ordered a court-martial for a low-ranking intelligence analyst charged with passing classified documents to WikiLeaks...." (more) | Hackers intercept FBI, Scotland Yard call "Trading jokes and swapping leads, investigators from the FBI and Scotland Yard spent the conference call strategizing about how to bring down the hacking collective known as Anonymous, responsible for a string of embarrassing attacks across the Internet...." (more) |
"DRG's Weekend Reads"= below the radar #InfoSec news+technical insight from around the globe http://t.co/O4suONSI | we're doing an Internet Forensics and Malware Analysis workshop in Sri Lanka in 2 weeks time if you're nearby... http://t.co/fS86FqyQ | German researchers: we can break GMR-1,2 satellite voice ciphers w/$2k h/ware and 30 mins http://t.co/Tf3LRgoX | Great progress in cooperation: European ‘cyber security’ Agency ENISA meeting with EuroPol in Crete http://t.co/YHXiXOzN | #hacked companies still not telling investors despite new guidance from securities regulators http://t.co/JyGM29i7 | Analysis of Apples pack of 39 patches addressing 52 CVE issues, revoking DigiCert Malaysia http://t.co/Ab9Mcr1Q | Verisign admits 2010 DNS #hack attack; concern about future use of stolen info http://t.co/ZoUjVFGD | 4 'no-brainer' ways to prevent your domain name from being hijacked http://t.co/QS8JsqVN | 'Malware as a Service' business just like legit ones: organized, scaleable, great support and life cycles http://t.co/MRK6c5Fu | TinKode=20 y/old Razvan Manole Cernaianu of Romania, arrested for #hacks on NASA, .mil, published bragging videos http://t.co/6oE3jssI | .UA LEOs raid ex.ua for warez, seizing 200 servers (6k Tb), 16 questioned at request of US s/ware firms http://t.co/Umu6AAVw | Kaspersky: Kelihos/Hlux #botnet is back, spamming despite Microsoft's valiant efforts http://t.co/FvWSz3Pv | summary of the 6th PwC Global Economic Crime Survey: 40% see cybercrime rising, 28% expect to be victims http://t.co/jPrKJbQx | "Stripper Touch girl" #Android game infected w/Counterclank? Shocked....here's 13 more: http://t.co/jZnLLv4L | Sarah Palin #hacker loses appeal against evidence deletion http://t.co/KgLk35zK |
Episode 106: Security Scripting, DDoS Tuning & Animations YouTube RSS Feed Twitter

Recent Data

[ Data Page 1 ] [ Data Page 2 ] [ Data Page 3 ] [ Data Page 4 ] [ Data Page 5 ]

Overall Malicious Activity, Top 10 Countries

This chart lists the top 10 countries seen contributing to malicious activity online in the last 24 hours, as a percentage relative to total malicious activity in the same period. IP geolocation isn't perfect, so this data isn't exact, but we believe it should be roughly representative of the current global picture.

View all available monitoring graphs

Bot Activity, Top 10 Countries

This chart lists the top 10 countries seen contributing to botnet activity online in the last 24 hours, as a percentage relative to total malicious activity in the same period. IP geolocation isn't perfect, so this data isn't exact, but we believe it should be representative of the current global picture.

View all available monitoring graphs

Sampled DNS Request Rate (hourly)

Our insight into Internet traffic around the globe allows us to sample and estimate trends in Domain Name System (DNS) requests, one of the key pieces of Internet infrastructure. This chart provides a glimpse into that sampled rate over the course of seven days, aggregated hourly, for both TCP and UDP DNS requests (though the TCP request rate is so low as to be virtually impossible to see).

View all available monitoring graphs

Sampled Internet Traffic Rate (daily)

We receive sampled and generalized information about Internet traffic flow rates from many partners, and this chart reflects those rates over the past 30 days, aggregated daily. This is by no means the "full speed" of the Internet, but a way of seeing trends and patterns within the overall mix of traffic.

View all available monitoring graphs

Internet Malicious Activity Maps

Internet Malicious Activity Hilbert Map The map to the left shows network locations of malicious activity on the Internet within the past 30 days, plotted using a Hilbert curve. Check out our Internet Malicious Activity Maps page for full details and a larger view of this and other maps.

Recent Releases

Our contribution to Operation Ghost Click

[17 NOV 2011] On 09 November 2011, US law enforcement released details of a major series of arrests as part of Operation Ghost Click. Team Cymru is proud to have been able to add details of victim computers that were part of this criminal infrastructure into one of our daily feeds of data that is provided at no cost to providers around the world. These lists of affected IP addresses enable network managers to identify and remediate computers infected by malware that are taking part in criminal activities.

This has a direct impact on people: it disrupts criminals and improves the lives of legitimate Internet users everywhere; we're honored to have been able to contribute to this effort. Our great thanks to all who contributed to this team effort.

Details of the case and our commentary can be found in this darkreading.com article. Images of the data we provided to our partners can be found via Twitter here and here.


Unexpected and unsubstantiated blog post

[25 OCT 2011] A recent blog post appeared to draw the unsubstantiated conclusion that more than 760 organizations were compromised with some of the same resources used to hit RSA earlier this year. Team Cymru was one of the organizations named in the posting.

We have no evidence of compromise related to incidents at RSA or anywhere else. The source of the report, and those who revealed and posted it, didn't take the time to contact us, or to share incident details with us. Thus we are unable to investigate further. We hope that those who gathered this data will responsibly disclose it to the potential victims.

Please note that without more details on the methodology used to determine the list of organizations, and a scientific review of the same, it's not safe to assume that an entry on the list means either "victim" or "false positive". We've seen no data or methodology description that would support either case.


New Underground Insight: A Criminal Perspective on Exploit Packs

[05 MAY 2011] The Team Cymru Business Intelligence Team is pleased to announce the release of their latest paper, entitled "A Criminal Perspective on Exploit Packs". This paper chronicles the genesis and historical eveolution of the Browser Exploit Pack (BEP). We discuss our research into the installation and usage of 40 different packs. Most notably, the paper discusses dishonor among coding thieves and the entrenched practice of "statistics shaving". Finally, we examine the monetization, code protection, and overall effectiveness of the various packs. For full details, check out the whitepaper, and don't forget to look at the rest of our whitepapers as well!


Team Cymru moving to Florida

[04 MAY 2011] Team Cymru today announced that they are relocating their headquarters staff from Chicago, Illinois, to Central Florida over the summer. The majority of our Chicago staff will move and are excited at the prospect of continuing to use our insight to improve lives, but from a significantly warmer location.

We do not forsee any disruption to our community or commercial feeds and services during this transition and we will continue to update our partners with news as appropriate. If you have any questions or concerns in the meantime, please e-mail outreach@cymru.com and we will be happy to discuss them with you!


View older news items in our news archives.

Friends of Team Cymru  
  CSIRT-MU Dyn, Inc. F-Secure FIRST  
  GoDaddy.com Interoute Communications REN-ISAC Savvis Communications  
  Support Intelligence Tata Communications Verizon Business  
 

Team Cymru Community Services