Botnet Steals eBay Accounts

Published September 4th, 2007


Online auction site eBay has been targeted by identity thieves, who are wielding a botnet that uses brute force to uncover valid account log-in information, a Tel Aviv-based security company said Monday.

The attacks against eBay Inc. may have started as long ago as early August, said Ofer Elzam. He said that he and other researchers at Aladdin Knowledge Systems Ltd. have not been successful in notifying eBay of their weekend findings.

According to Elzam, the product manager of Aladdin’s eSafe threat-protection line, the brute-force attacks are launched by a large botnet that the identity thieves have built using a sophisticated, multistage campaign that begins with compromised legitimate Web sites.

“My best estimate is that there are at least 300 compromised sites,” said Elzam, who noted that they are spread worldwide and in several languages. Two sites are based in Israel, he said, including a price-comparison Web site and another operated by one of the country’s largest unions. Other sites identified in a search run with information provided by Elzam included scores of real estate Web sites in Florida and Massachusetts, and a Microsoft security message forum in Italian.





Related Articles
UK eBay users targeted in Trojan botnet attack
Aladdin Security Team Announces New Developments Surrounding eBay Botnet Attack
Russian Web site offered eBay account info for $5 - shut down
1200 eBay Accounts Hacked
Russian eBay fraud website closed down