Some Hackers Earn $2m A Year

The escalation in cyber-crime has significantly increased. Compared to other criminal activities cyber-crime has relatively low risks and criminals have realised that they can make more money, with less risk of getting caught, and receive smaller penalties if they do get caught, by manipulating cyber technology for their own advantage.

Recent research finds that a number of cyber criminals are earning around $2m annually and others between $40k to $1m and so criminal activity has increased significantly. Now, organised criminal gangs are using the electronic connected world to cyber-attack and hack globally.
 
Nevertheless, hackers spend as much time designing their attacks as they do finding ways to stay below the radar. A single slip-up can result in the end of their malicious enterprise.

But there is some recent good news that European police have recently arrested more than 800 people after shutting down an encrypted phone system, EncroChat, used by organised crime groups to plot murders and drug deals. More than two tonnes of drugs and £54m in cash, sub-machine guns, an  assault rifle, high value cars and luxury watches were impounded, says the British National Crime Agency (NCA). 

The top-secret phone system had been used by criminals to trade drugs and guns has been successfully penetrated and shut down.

The NCA worked with forces across Europe on the UK's "biggest and most significant" law enforcement operation. However, many other cyber criminals are using malware, DDoS and phishing attacks on companies and individuals that have poorly protected data.

The Dark Web provides the perfect platform for hackers to trade their stolen data. It can only be accessed using specialist software, and any websites hosted on the Dark Web are encrypted and can’t be found using traditional search engines or browsers.

In the UK, cyber-crime and fraud are now the most common offences, with around ten percent of the population getting hacked successfully. More than five and a half million cyber offences are thought to take place each year which accounts for almost 50% of all UK crime. Despite the scale of the problem, more than 80% of all these crimes are not reported to the police. Therefore, cyber criminals are rarely caught and prosecuted because they are virtually invisible. Crime has transformed with the digital age and police forces around the world are now having to rapidly adapt in order to tackle the problem.

The global nature of the problem has called for a global response, and many international law enforcement agencies are now working closely together to take down some of the world’s biggest cyber criminals.

Due to the sophisticated tactics that hackers use to cover their tracks, it’s extremely difficult to catch them and bring them to justice. Only around 4/5% of cyber criminals are apprehended for their crimes which demonstrates just how challenging it is for law enforcement agencies to arrest and prosecute these offenders.

Hackers will often use secure software such as a proxy server to hide their identity and funnel their communications through lots of different countries in order to evade detection.

Other technologies like Tor and encryption enable them to add multiple layers to mask their identity. The combination of these tools allows them to commit their crimes undetected and in countries where they know they can’t be prosecuted.

Tracking hackers down is laborious and often takes a lot of time, collaboration and investigative research. Specialist cybercrime units need to be assembled in order to retrieve and analyse any potential evidence. Encrypted files will need decrypted, deleted files recovered and passwords cracked.

Catching Hackers

Despite what may seem like an insurmountable task, hackers are human and make mistakes. It’s often these careless errors that will trip the criminals up and leave a trail of evidence that the police can follow. The majority of cyber-crimes are financially motivated, however for a large number of hackers it’s the thrill of the hack and the excitement of bringing down a company’s computer system that motivates them.

Following an attack, many will turn to hacker’s forums to brag about their exploits and this often provides police with the vital clues they need to start identifying the person responsible. Some cyber police operations have found effective way to lure cyber criminals in and find out more about how they operate and who they are. Essentially, they’re a decoy computer system set up to mimic a likely target for an attack.

The systems will contain data and applications that will trick hackers into thinking they are attacking a legitimate target.  The information gathered from these dummy attacks can provide valuable information on who is responsible and if there are any similarities that links the individual to other attacks.

A hacker can gain access to your organisation easily when your staff are not following your internal policies and procedures and it is very important that your management and employees receive cyber training that they engage with and use.

PaCCS Research:      Metacomplinace:       Metacompliance:     Web Professionals:        TechTarget:     

Cyber Security Intelligence recommends GoCyber cyber training for all employees and management:

Click HERE to register for a  free GoCyber demo

You Might Also Read: 

Young Hacker Makes $1m. Legally:

 

« Iran Threatens Retaliation For Cyber Attack At Nuclear Site
The Key Cyber Security Challenges »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Montash

Montash

Montash is an award winning, global technology recruitment business, specialising in the acquisitions of high-performing talent across a number of core disciplines including Information Security.

IONU Security

IONU Security

IONU offer a security platform focused specifically on providing Data-centric Security.

Lynx Software Technologies

Lynx Software Technologies

Lynx provide secure software and operating systems for use in mission critical applications such as aerospace, medical, transportation and IoT.

Idemia

Idemia

Idemia is a global leader in security and identity solutions.

Celare

Celare

Celare delivers DPI based network perimeter monitoring solutions with integrated Big Data security analytics and threat detection.

IdenTrust

IdenTrust

IdenTrust enables organizations to effectively manage the risks associated with identity authentication.

OSIRIS Lab - NYU Tandon

OSIRIS Lab - NYU Tandon

The Offensive Security, Incident Response & Internet Security Lab (OSIRIS) is a security research environment where students analyze and understand how attackers take advantage of real systems.

TechArch

TechArch

TechArch helps customers to optimize their investments in cybersecurity by providing them independent and vendor-neutral consultation and guidance.

Maximus Consulting (MX)

Maximus Consulting (MX)

Maximus designs and delivers corporate-wide information security management system with our full-time IRCA Accredited consulting team.

Cofrac

Cofrac

Cofrac is the national accreditation body for France. The directory of members provides details of organisations offering certification services for ISO 27001.

EUROCONTROL

EUROCONTROL

EUROCONTROL is a pan-European, civil-military organisation dedicated to supporting European aviation. We help our stakeholders protect themselves against cyber threats.

The Legal 500

The Legal 500

The Legal 500 Hall of Fame highlights, to clients, the law firm partners who are at the pinnacle of the profession. Practice areas covered include Data Protection, Privacy and Cybersecurity.

Montreal International

Montreal International

You’re an entrepreneur planning to launch a company in an innovative sector such as AI, cybersecurity, 'deeptech' or fintech? You’ve found the right place!

Pires Investments

Pires Investments

Pires is building an investment portfolio of high-tech businesses across areas such as Artificial Intelligence, Internet of Things, Cyber Security and Augmented/Virtual Reality.

U2opia Technology

U2opia Technology

U2opia is a consortium with a proven track record of delivering groundbreaking technology, cybersecurity, and innovative business solutions.

Superna

Superna

Superna is the global leader in data security and cyberstorage solutions for unstructured data, both on-prem and in the hybrid multi-cloud.