Episode

94: Mariposa
Description
Chris Davis has been stopping IT security threats for decades. He’s currently running the company Hyas that he started. In this episode he tells a few tales of some threats that he helped stop. Sponsors Support for this show comes from Exabeam. Exabeam lets security teams see what traditional tools can’t, with automated threat detection and triage, complete visibility across the entire IT environment and advanced behavioral analytics that distinguishes real threats from perceived ones, so security teams stay ahead and businesses keep moving — without fear of the unknown. Learn more by visiting exabeam.com/dd. Support for this show comes from Blinkist. They offer thousands of condensed non-fiction books, so you can get through books in about 15 minutes. Check out Blinkist.com/DARKNET to start your 7 day free trial and get 25% off when you sign up. View all active sponsors. Sources https://www.zdnet.com/article/hacker-curador-pleads-guilty-to-credit-card-theft/ https://www.pbs.org/wgbh/pages/frontline/shows/hackers/ https://archive.org/details/frontline_202009/Frontline-+Hackers/VIDEO_TS/VTS_01_1.VOB https://defintel.com/docs/Mariposa_Analysis.pdf https://krebsonsecurity.com/2020/03/french-firms-rocked-by-kasbah-hacker/ Learn more about your ad choices. Visit podcastchoices.com/adchoices
Chapters
An online scammer from 2016, who was arrested, could retrieve his stolen Bitcoin worth almost $1 million if he can find the notebook containing his private key.
00:00 - 02:02 (02:02)
Summary
An online scammer from 2016, who was arrested, could retrieve his stolen Bitcoin worth almost $1 million if he can find the notebook containing his private key.
Episode94: Mariposa
PodcastDarknet Diaries
The speaker shares how his early experience in odd jobs of working on people's computers and networking small offices eventually turned into a successful career path in cybersecurity, leading to him securing contracts with major government departments in Canada.
02:02 - 08:55 (06:53)
Summary
The speaker shares how his early experience in odd jobs of working on people's computers and networking small offices eventually turned into a successful career path in cybersecurity, leading to him securing contracts with major government departments in Canada.
Episode94: Mariposa
PodcastDarknet Diaries
The transcript discusses how a group of cybersecurity experts helped to uncover the identity of a cybercriminal who was publishing people's personal credit card information online.
08:55 - 13:25 (04:29)
Summary
The transcript discusses how a group of cybersecurity experts helped to uncover the identity of a cybercriminal who was publishing people's personal credit card information online. They identified a suspicious IP address from Wales, which led them to the perpetrator who was bragging about their crimes.
Episode94: Mariposa
PodcastDarknet Diaries
The interviewee suggests that cyber crime is often a product of a lack of career options and socioeconomic issues in some parts of the world, as seen in the case of a charming but nerdy teenager who engaged in cyber crime.
13:25 - 18:50 (05:25)
Summary
The interviewee suggests that cyber crime is often a product of a lack of career options and socioeconomic issues in some parts of the world, as seen in the case of a charming but nerdy teenager who engaged in cyber crime.
Episode94: Mariposa
PodcastDarknet Diaries
The Mariposa Botnet gets its name from the butterfly in Spanish.
18:50 - 26:52 (08:01)
Summary
The Mariposa Botnet gets its name from the butterfly in Spanish. It was discovered by Chris when he noticed a spike where hundreds of thousands of computers were all calling a certain website but only for a second and then stopping.
Episode94: Mariposa
PodcastDarknet Diaries
Sinkholing was used to take away all the Mariposa botnet domain names, providing law enforcement with information to arrest the culprits behind the attack.
26:52 - 32:40 (05:47)
Summary
Sinkholing was used to take away all the Mariposa botnet domain names, providing law enforcement with information to arrest the culprits behind the attack.
Episode94: Mariposa
PodcastDarknet Diaries
Hias focuses on cyber threat intelligence to identify infrastructure utilized by adversaries for attacks.
32:40 - 39:21 (06:41)
Summary
Hias focuses on cyber threat intelligence to identify infrastructure utilized by adversaries for attacks. By analyzing domains and identifying the relationships between attackers and infrastructure providers, they aim to prevent cyberattacks before they occur.
Episode94: Mariposa
PodcastDarknet Diaries
Chris speaks about his experience investigating a French bank breach, including collaborating with the FBI and contacting a dynamic DNS provider for more information.
39:21 - 46:02 (06:40)
Summary
Chris speaks about his experience investigating a French bank breach, including collaborating with the FBI and contacting a dynamic DNS provider for more information.
Episode94: Mariposa
PodcastDarknet Diaries
In this episode, Chris Davis shares the story of how his team discovered a highly advanced hacking group working out of Russia that had been stealing shipping manifests and intellectual property from major companies.
46:02 - 47:17 (01:14)
Summary
In this episode, Chris Davis shares the story of how his team discovered a highly advanced hacking group working out of Russia that had been stealing shipping manifests and intellectual property from major companies. He discusses the challenges they faced in tracking down the hackers and the measures they took to prevent future attacks.