German Law Enforcement Officials Receive 2017 M3AAWG J.D. Falk Award for Initiating Global Takedown of Avalanche Malware
TORONTO, Oct. 04, 2017 (GLOBE NEWSWIRE) -- M3AAWG honored two German law enforcement officials today for their work in developing the global public/private collaboration that shutdown a massive malware offensive infecting computers in 189 countries and costing victims over $6 million in ransomware payments. Lower Saxony Chief Police Inspector Jörn Bisping and Senior Prosecutor Frank Lange received the 2017 M3AAWG J.D. Falk Award from the Messaging, Malware and Mobile Anti-Abuse Working group for spearheading worldwide efforts to dismantle the criminalized Avalanche platform.
A video accompanying this announcement is available at http://www.globenewswire.com/NewsRoom/AttachmentNg/e536b838-7da6-4b77-8a95-c5d36f2d5a62
The global cooperative efforts initiated by the German police and prosecutor's office resulted in eight arrests, 500 court orders, 37 onsite searches and 39 servers seized worldwide. Over 800,000 domains were seized, blocked or had their traffic diverted to a safe server rather than one controlled by criminals - a process known as sinkholing - making it the largest law enforcement operation to redirect malicious domains to date.
"There was unprecedented cooperation worldwide, including registries in Russia and China taking down malicious domains, and support from smaller countries with lesser-known domains. We worked out some of the processes for collaborating better, and future takedowns and activities against cybercriminals will move even faster," Bisping said in discussing the award.
A massive and complex criminal platform, Avalanche was used to deploy several attack vectors. Bots on the Avalanche network could determine if the targeted victim was accessing online banking and, if so, would plant key loggers and other malware on these systems to steal the user's login credentials. Other users would be targeted with ransomware malware. The platform also was used to recruit money laundering "mules" with a convoluted scheme to move stolen funds and ransom out of the country of origin by diverting payments between contracted sources.
In announcing the award at the M3AAWG four-day meeting in Toronto, Canada, the organization's Chairman of the Board Severin Walker said, "Global action is the only way to protect our local citizens. It's our professional responsibility to take the initiative in identifying major threats and then reach out to the international community to help confront them. Chief Inspector Bisping and Senior Prosecutor Lange did just this and millions of end-users are much safer now and have benefited from their dedication."
Five Years of Meticulously Detailed Investigation
The work behind the November 30, 2016 global Avalanche takedown started five years earlier when Bisping, with the Lower Saxony Police in Luneburg, began investigating a single cyberattack that appeared to be responsible for 200 local ransomware cases. In 2013, Lange, a senior prosecutor with the Public Prosecutor's Office in Verden, escalated the investigation to include more than 6,000 similar attacks throughout Germany. As the global scope and complexity of the Avalanche platform became known, they reached out to cybercrime experts such as the German Federal Office for Information Security (BSI) and the Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie (FKIE), which eventually analyzed over 130 TB of captured data to identify the botnet server structure.
Lange said, "We realized through reverse engineering and other detailed analysis that Avalanche was more than just a botnet or a network running a few types of malware; it was a complete infrastructure and it would be impossible to stop without the help of other countries. By this time, we were in a position to invite the international community to work with us on three goals: to take down the servers, issue arrest warrants to those running them, and sinkhole all the families of malware we identified on the platform."
In July of 2015, German police officials asked the U.S. Federal Bureau of Investigation for assistance. This eventually led to the international takedown in late 2016 that diverted traffic headed to the known malicious domains to the collaboration team's servers and to the arrests. The investigation and the subsequent operation also involved the European police agency Europol, the European Union's Judicial Cooperation Unit or Eurojust, the U.S. Department of Justice, cybersecurity organizations such as Shadowserver, and investigators and prosecutors in more than 40 countries.
The J.D. Falk Award recognizes a significant achievement that protects end-users and the people working behind the scenes to make a better online world. The 2017 award was announced at the M3AAWG 41stGeneral Meeting in Toronto, Canada, with over 300 cybersecurity participants from around the world at the Oct. 3-5 event. M3AAWG also hosted UCENet (previously known as the London Action Plan) during the week. The M3AAWG 42nd General Meeting will be February 19-22, 2018 in San Francisco, USA.
About the Messaging, Malware and Mobile Anti-Abuse Working Group (M 3 AAWG)
The Messaging, Malware and Mobile Anti-Abuse Working Group (M3AAWG) is where the industry comes together to work against bots, malware, spam, viruses, denial-of-service attacks and other online exploitation. M3AAWG (www.m3aawg.org) members represent more than one billion mailboxes from some of the largest network operators worldwide. It leverages the depth and experience of its global membership to tackle abuse on existing networks and new emerging services through technology, collaboration and public policy. It also works to educate global policy makers on the technical and operational issues related to online abuse and messaging. Headquartered in San Francisco, Calif., M3AAWG is driven by market needs and supported by major network operators and messaging providers.
Media Contact: Linda Marcus, APR, +1-949-887-8887, LMarcus@astra.cc, Astra Communications
M3AAWG Board of Directors: AT&T; CenturyLink; Cloudmark, Inc.; Comcast; dotmailer; Endurance International Group; Facebook; Google; LinkedIn; Mailchimp; Microsoft Corp.; Oath (Yahoo and AOL); Orange; Rackspace; Return Path; SendGrid, Inc.; Vade Secure.
M3AAWG Full Members: 1&1 Internet AG; Adobe Systems Inc.; Agora, Inc.; AOL; Campaign Monitor Pty.; Cisco Systems, Inc.; CloudFlare; Dyn; Exact Target, Inc.; IBM; iContact; Intel Security; Internet Initiative Japan (IIJ); Liberty Global; Listrak; Litmus; Mimecast; Nominum, Inc.; Oracle Marketing Cloud; OVH; PayPal; Proofpoint; Spamhaus; Sparkpost; Sprint; Symantec; and USAA.
A complete member list is available at http://www.m3aawg.org/about/roster.
The issuer of this announcement warrants that they are solely responsible for the content, accuracy and originality of the information contained therein.
Source: Messaging Anti-Abuse Working Group (M3AAWG) via Globenewswire
Om Nasdaq GlobeNewswire
One Liberty Plaza - 165 Broadway
NY 10006 New York
+1 212 401 8700http://www.nasdaqomx.com
NASDAQ (NASDAQ: NDAQ) is a leading provider of trading, exchange technology, information and public company services across six continents.
Følg saker fra Nasdaq GlobeNewswire
Registrer deg med din epostadresse under for å få de nyeste sakene fra Nasdaq GlobeNewswire på epost fortløpende. Du kan melde deg av når som helst.
Siste saker fra Nasdaq GlobeNewswire
SEMAFO: Armed Incident in Bobo Area17.8.2018 15:48 | Pressemelding
MONTREAL, Aug. 17, 2018 (GLOBE NEWSWIRE) -- SEMAFO Inc. (TSX:SMF) (OMX:SMF) regrets to report that a bus transporting employees from the town of Bobo-Dioulasso to the Mana Mine in Burkina Faso was shot at by armed bandits this morning. In the exchange of fire between the policemen and bandits, one SEMAFO national employee and one sub-contractor employee lost their lives. Operations at the Mana Mine, located 80 kilometers from the incident, are not affected. Early analysis suggests that this incident and the armed incident that occurred in the Est region six days ago are unrelated. However, the Corporation will be increasing its security measures at Mana and take appropriate steps to ensure the safety of the mine and of its employees. The Corporation would like to express its sincere sympathy to families of the victims. About SEMAFO SEMAFO is a Canadian-based mining company with gold production and exploration activities in West Africa. The Corporation operates the Mana Mine in Burkina
ThalesNano Energy Introduces H-Genie™: Revolutionary Compact, High Pressure Hydrogen Gas Generation Platform for Chemists17.8.2018 11:00 | Pressemelding
Improves safety, expands chemistry, saves lives. BUDAPEST, Hungary and BOSTON, Aug. 17, 2018 (GLOBE NEWSWIRE) -- ThalesNano Energy LLC today announced, at the 256th ACS conference (booth: 1615), the launch of the first in the series of revolutionary new gas generators, the H-Genie™. The H-Genie™ is a compact high pressure hydrogen generator designed to be used in any laboratory as a safer and simpler alternative to hydrogen cylinders. Capable of generating hydrogen at up to 1 NL/min and 100 bar (1450 psi), the system can help expand chemists’ limited hydrogenation chemistry capability by providing high purity hydrogen gas, on demand from water, to batch and flow reactors. Neal Langerman, Principal Scientist at Advanced Chemical Safety, comments: “The presence of cylinders of hydrogen raises the risk level of a lab. While the explosion or fire hazard can be mitigated with a gas cylinder cabinet, this takes precious floor space and does not eliminate the 1300 liters of flammable gas from
PayByPhone Supports Additional Languages16.8.2018 19:47 | Pressemelding
Drivers can now use the app in Spanish and Chinese VANCOUVER, British Columbia, Aug. 16, 2018 (GLOBE NEWSWIRE) -- Drivers who pay for their parking with the PayByPhone app can now use the app in Spanish, Traditional Chinese, and Simplified Chinese. Later this year, the leading mobile parking payment service will also be available in Punjabi. The support of multiple languages increases PayByPhone’s usability for its diverse consumer base, who are located across North America, Europe, and Australia. To gain access to the newly supported languages within PayByPhone, drivers can simply download the latest version of the app and set their iOS or Android device to their preferred language. “We’re excited to have expanded our language offerings beyond English and French,” said Barrie Arnold, Chief Commercial Officer, PayByPhone North America. “PayByPhone is available in many multicultural cities worldwide, and this update improves the app’s accessibility. PayByPhone has gained a global presen
Global Dairy Platform Announces Dairy Farmers of America CEO Rick Smith as New Board Chair16.8.2018 17:52 | Pressemelding
ROSEMONT, Ill., Aug. 16, 2018 (GLOBE NEWSWIRE) -- Global Dairy Platform (GDP), a pre-competitive collaboration of dairy sector organizations focused on encouraging the appropriate intake of nutrient-rich dairy foods and demonstrating the sector’s role in sustainable agriculture, today announced the appointment of Rick Smith, President and Chief Executive Officer of Dairy Farmers of America as Chair of the Board of Directors. “It is truly an honor to serve as Chair of GDP’s Board of Directors,” noted Mr. Smith. “We are facing global food and health challenges that need short and long-term solutions. The work of GDP creates an avenue for collaborative action that demonstrates dairy’s valuable contribution to global food systems, healthy diets and sustainable livelihoods.” Mr. Smith will serve on the board along with Fonterra Co-operative Group Chief Executive Officer Mr. Miles Hurrell; China Mengniu Dairy Company Executive Director and Chief Executive Officer Mr. Minfang (Jeffery) Lu; Ro
GridGain Systems Named to Inc. 500 List of America’s Fastest-Growing Private Companies for Second Consecutive Year16.8.2018 09:00 | Pressemelding
GridGain Ranks 17th among Software Companies, 13th in San Francisco Metro Area FOSTER CITY, Calif., Aug. 16, 2018 (GLOBE NEWSWIRE) -- GridGain Systems, provider of enterprise-grade in-memory computing solutions based on Apache® Ignite™, today announced it has been named to the 37th annual Inc. 500 list, a highly regarded ranking of the nation’s fastest-growing private companies. This is the second year in a row GridGain has been named to the list. GridGain’s rank of 158 on this year’s Inc. 500 list is up from number 187 last year. The company is ranked 17th among software companies, 13th in the San Francisco metro area, and 37th in the state of California. The Inc. 500 represents a unique look at the most successful companies within the American economy’s most dynamic segment – its independent small and midsized businesses. GridGain provides an in-memory computing platform that delivers speed, scale and high availability to data-intensive applications. Built on a memory-centric archite
Perceptyx Named One of America’s Fastest Growing Companies for the 4th Consecutive Year16.8.2018 05:37 | Pressemelding
INC 5000 award recognizes Perceptyx’s continued innovation and partnership with many of the world’s best companies SAN DIEGO, Aug. 15, 2018 (GLOBE NEWSWIRE) -- For the 4th consecutive year, Perceptyx has made the prestigious INC 5000 list of America’s fastest growing private companies. A recognized leader in people analytics, Perceptyx specializes in facilitating organizational change through the strategic use of employee surveys and management consulting. Longtime partners with many of the world's largest organizations, Perceptyx is uniquely capable of delivering insights across heavily distributed organizations with complex hierarchies in a way that’s as unique as an organization’s culture and brand. “We’re proud to be recognized among America’s fastest growing companies again,” says John Borland, Co-founder and CEO of Perceptyx. “We believe that our clients are the real heroes of their organizations. It has been our honor to help so many of the world’s best companies realize their g
I vårt presserom finner du alle våre siste saker, kontaktpersoner, bilder, dokumenter og annen relevant informasjon om oss.Besøk vårt presserom