EILMELDUNGEN LIVE
🕵️ SicherheitslückenUSN-8688-1: PAM vulnerability(27.08.2026 um 21:43 Uhr)
🕵️ SicherheitslückenUSN-8643-5: Linux kernel vulnerabilities(27.08.2026 um 23:29 Uhr)
🕵️ SicherheitslückenUSN-8658-4: Linux kernel (Azure CVM) vulnerabilities(27.08.2026 um 23:32 Uhr)
🕵️ SicherheitslückenUSN-8661-3: Linux kernel vulnerabilities(27.08.2026 um 23:36 Uhr)
🕵️ SicherheitslückenUSN-8644-3: Linux kernel (Azure) vulnerabilities(27.08.2026 um 23:39 Uhr)
🕵️ SicherheitslückenUSN-8666-3: Linux kernel (GCP FIPS) vulnerabilities(27.08.2026 um 23:41 Uhr)
🕵️ SicherheitslückenDSA-6459-1 libnet-dns-perl - security update(22.08.2026 um 02:00 Uhr)
🐧 Linux TippsDSA-6461-1 thunderbird - security update(23.08.2026 um 02:00 Uhr)
🐧 Linux TippsDSA-6460-1 openjdk-25 - security update(23.08.2026 um 02:00 Uhr)
🕵️ SicherheitslückenDSA-6463-1 webkit2gtk - security update(24.08.2026 um 02:00 Uhr)
🕵️ SicherheitslückenUSN-8688-1: PAM vulnerability(27.08.2026 um 21:43 Uhr)
🕵️ SicherheitslückenUSN-8643-5: Linux kernel vulnerabilities(27.08.2026 um 23:29 Uhr)
🕵️ SicherheitslückenUSN-8658-4: Linux kernel (Azure CVM) vulnerabilities(27.08.2026 um 23:32 Uhr)
🕵️ SicherheitslückenUSN-8661-3: Linux kernel vulnerabilities(27.08.2026 um 23:36 Uhr)
🕵️ SicherheitslückenUSN-8644-3: Linux kernel (Azure) vulnerabilities(27.08.2026 um 23:39 Uhr)
🕵️ SicherheitslückenUSN-8666-3: Linux kernel (GCP FIPS) vulnerabilities(27.08.2026 um 23:41 Uhr)
🕵️ SicherheitslückenDSA-6459-1 libnet-dns-perl - security update(22.08.2026 um 02:00 Uhr)
🐧 Linux TippsDSA-6461-1 thunderbird - security update(23.08.2026 um 02:00 Uhr)
🐧 Linux TippsDSA-6460-1 openjdk-25 - security update(23.08.2026 um 02:00 Uhr)
🕵️ SicherheitslückenDSA-6463-1 webkit2gtk - security update(24.08.2026 um 02:00 Uhr)
24 Personen lesen diesen Beitrag gerade 1 Tag Serie
AI Executive Briefing • Auf den Punkt gebracht Quick Intel
  • Kernaussage: Die neuesten Sicherheitsanalysen und Intelligence-Erkenntnisse im direkten Branchen-Kontext.
  • Bedeutung für die Praxis: Strategische Einordnung für SecOps, DevOps, Administratoren und Entscheider.
  • Empfohlene Mitigation: Sofortige Überprüfung der betroffenen Endpunkte und Einspielen empfohlener Patches.
12 🕛 kürzlich 4 Min Lesezeit 16 Leser online ️ CVE-RADAR
0

New research: The underground market fueling for-profit abuse

↗ Quelle (feedproxy.google.com)
🗣️ Stimme:
Posted by Kurt Thomas and Elie Bursztein, Google Anti-Fraud and Abuse Research

Recently, we teamed up with top researchers exploring innovative anti-abuse strategies to build a holistic understanding of for-profit abuse. The full report, which you can read  2015.

Over the last decade, Internet crime has matured into an underground economy where a large number of globally distributed criminals trade in data, knowledge, and services specifically geared towards defrauding users and businesses. Within this black market, criminals buy and sell compromised machines, scam hosting, exploit kits, and wholesale access to pilfered user records including usernames and passwords, credit card numbers, and other sensitive personal data. The availability of such specialized resources has transformed for-profit abuse into a cooperative effort among criminals each satisfying a cog in a supply chain.

Profiting from abuse: a bird’s eye view

Here’s an example of the underground value chain required to make money from spamming knock-off luxury products:


In aggregate, the problem may appear intractable to stop. However, if we view this scenario in an economic light, then increasing the cost of fake accounts, phone numbers, or compromised websites cuts into the profitability of abuse. In the end, abuse propped up by cost-ineffective resources will crumble.


Collaborating to better understand the underground

Given the complex underbelly of abuse, we pulled together experts from industry and academia to build a systematic understanding of how criminals operate. Our previous example represents just one configuration of a value chain. In our example, revenue originates solely from victims buying counterfeit products. Criminals could adapt this strategy to scam users into paying for fake anti-virus, defraud advertisers via clickbots, or liquidate a victim’s banking assets. Regardless of the composition, we argue there is always a profit center through which victims transfer new capital into the underground. These schemes form a spectrum between selling products to unwitting victims to outright theft. A medley of alternatives such as dating scams, call-center scams, premium SMS fraud, DDoS extortion, or even stealing and re-selling gaming assets all fall within this spectrum and ultimately derive a payout from victims outside the underground.

These profit centers are in turn propped up by an ecosystem of support infrastructure that can be configured arbitrarily by criminals per their requirements. This infrastructure includes compromised hosts, human labor, networking and hosting, and accounts and engagement—all available for a fee. For example, 1,000 Google accounts cost on the order of $170, compared to CAPTCHAs which cost $1 per thousand. These costs reflect socio-economic factors as well as the impact of technical, legal, and law enforcement interventions on the availability of resources.

Redefining the abuse arms race

Client and server-side security has dominated industry’s response to digital abuse over the last decade. The spectrum of solutions—automated software updates, personal anti-virus, network packet scanners, firewalls, spam filters, password managers, and two-factor authentication to name a few—all attempt to reduce the attack surface that criminals can penetrate.

While these safeguards have significantly improved user security, they create an arms race: criminals adapt or find the subset of systems that remain vulnerable and resume operation.

To overcome this reactive defense cycle, we are improving our approach to abuse fighting to also strike at the support infrastructure, financial centers, and actors that incentivize abuse. By exploring the value chain required to bulk register accounts, we were able to make Google accounts for illegal pharmacies and counterfeit software outlets advertised by spam, infrastructure of botnets.


Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf feedproxy.google.com.
↗ Original-Artikel auf feedproxy.google.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
135 Fachleser & IT-Security Experten haben diesen Report heute geteilt
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 55%
🟡 In Evaluierung 24%
🟢 Keine Auswirkung 16%
Spannende Innovation 5%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
OpenAI Files New Petition To Dismiss Apple Trade Secret Lawsuit
1 Quelle
Major Tech Firms Unite To Defend Against Rogue AI Cyber Threats
1 Quelle
[remote] CVE-2026-42167 - ProFTPD mod_sql post-authentication SQLi - RCE
Ähnliche Beiträge
🔍 Verwandte News

Ähnliche Beiträge zu New research: The underground market fueling for-profit abuse

Thematisch verwandte Begriffe: research, underground, market, fueling

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...