Computerworld
Rackets, muggings hit social networking sites
Online currency opens channels for money laundering
Darren Pauli  10 July, 2007 16:59

Social networking is the most profound issue affecting security professionals today, according to federal agent Kevin Zuccato, director of the Australian High Tech Crime Centre (AAHTCC).

Zuccato, who joined the Australian Federal Police in 1986 and has spent three years with the AHTCC, said massive social networking Internet sites, such as MySpace and Second Life, are problematic because they "extend the crimescene and areas where criminals can operate" beyond conventional organized and street crime.

"There are real sweat shops in Second Life that are designing swords and items for online gaming instead of wallets, and people who own online shops are getting mugged," Zuccato said at the Security 2007 Conference in Sydney today.

There are very "real world" risks for online players and entrepreneurs from extortion using DoS attacks to protection rackets.

He said online currencies, such as Second Life's Linden dollars, open another channel for criminals to launder money because they can often be exchanged for real money through anonymous transactions.

"My crime scene just went to a three-bedroom house in Sydney to the entire globe - the challenges of obtaining information [on IP crimes] and [coordinating] it is enormous," Zuccato said.

And the popularity of these social networking sites is staggering; more than 6 million players have joined Second Life since October last year, while the total spend by users purchasing items in the virtual world's shops has risen from $US179,000 for the month of October to $US1.7 million a day. The site also produced its first online millionaire last year.

However there are very "real world" risks for online players and entrepreneurs, according to Zuccato who spoke of extortion of online gaming houses using denial of service (DoS) attacks, and their respective protection rackets demanding money for protection against such attacks.

So real is the threat, Zuccado said, that the Vancouver Police and the Internet Industry Association (IIA) have their own online "islands" on Second Life where they operate legitimate IP-related investigations.

"The increased user functionality and realism of social networking sites and massively multiplayer online games pose "serious issues to the ability to fight IP crime", according to Zuccato.

He said the replica weaponry and virtual environments found in online games allow terrorists to train online without leaving national borders, because the maps and equipment used are based on their physical equivalents.

"You could use Google Earth to find [The Sydney Convention Centre], generate blueprints of the building, and turn it into an online map to train on using an online game's map generator," Zuccato said, adding that an online map of Amsterdam was recently sold for $50,000 using the same methodology.

Zuccato requested delegates to help the AHTCCfight crime by providing information on how and why their business uses the Internet, what security measures they have implemented, and what risks they have encountered.

He said the private sector owns more than 95 percent of Australia's IT infrastructure, and said beefing-up regulation will not solve IP crime because of both the cat-and-mouse race of law enforcement versus changing technology and communication platforms, and the difficulty in policing cross-jurisdictional boundaries between countries due to differing laws.

"The Internet challenges the whole notion of identity; whether you are a hacker, a second lifer, or someone who doesn't go online, and we need a different strategy to tackle IP crime than what works for [real-world] crime."

Computerworld Buyer's Guide - Vendors Matched to this Article

Comments

Post new comment

Login or register to link comments to your user profile, or you may also post a comment without being logged in.
The content of this field is kept private and will not be shown publicly.
Enter the fully qualified URL, eg. http://www.example.com/
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Add to Google
Computerworld Buyer's Guide - Vendors Matched to this Article
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.
Newsletter Subscription
Newsletter Subscription
Sign up for our Computerworld newsletters!
Syndicate content
 

Computerworld Webinar

Thursday, June 11th, 2009
10:30am EST (Sydney, Australia)
Screening at your PC

Computerworld is hosting a 30 minute live webinar to help you to learn how unified communications can save you money, foster innovation and business agility by making it easier for people to find, reach and collaborate with one another.

Register Now

Computerworld Community Comments
Whitepaper

5 steps to getting started with data loss prevention

Lost and leaked data from stolen laptops, compromised networks, and malware-infected client devices all affect Australian businesses. Read on to discover the five critical steps to prevent data loss within your organisation.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links
 
Send Us E-mail | Privacy Policy
Features List | Media Kit | Advertising | Contact Us

Copyright 2009 IDG Communications. ABN 14 001 592 650. All rights reserved.
Reproduction in whole or in part in any form or medium without express written permission of IDG Communications is prohibited.