27 March 2023

NCA creates fake DDoS-for-hire sites to collect data on cybercriminals


NCA creates fake DDoS-for-hire sites to collect data on cybercriminals

UK National Crime Agency (NCA) said it was running a number of websites purporting to offer DDoS-for-hire services to infiltrate the cybercriminal underground.

The DDoS-for-hire (“booter” or “stresser”) service allows the attackers to have a number of remotely connected bots devices to direct huge traffic to a website or the online platforms.

The move is part of a sustained program of activity to disrupt and undermine DDoS as a criminal service, the NCA said in a press release.

According to the agency, all of the bogus sites, which have so far been accessed by around several thousand people, have been created to look like they offer the tools and services that enable cyber criminals to execute DDoS attacks. However, users who registered for the sites were not given access to cybercrime tools but instead had their data collated by investigators.

“Users based in the UK will be contacted by the National Crime Agency or police and warned about engaging in cyber crime. Information relating to those based overseas is being passed to international law enforcement,” the agency said.

In December 2022, the US authorities seized 48 internet domains that offered services that allowed cybercriminals to launch distributed denial-of-service (DDoS) attacks for a fee, and charged six individuals involved in running these services.


Back to the list

Latest Posts

Cyber Security Week in Review: July 26, 2024

Cyber Security Week in Review: July 26, 2024

In brief: A North Korean hacker indicted for ransomware attacks, French police dismantle the PlugX botnet, and more.
26 July 2024
Stargazer Goblin launch malware distribution-as-a-service via GitHub

Stargazer Goblin launch malware distribution-as-a-service via GitHub

The operation is using over 3,000 fake GitHub accounts.
25 July 2024
North Korean APT45 expanding into financially-motivated operations

North Korean APT45 expanding into financially-motivated operations

The threat actor has been observed targeting critical infrastructure more frequently than other North Korean hackers.
25 July 2024