www.lesswrong.com/posts/gutiw8MBrYDiD2u5z/models-finding-software-vulnerabilitie...
1 correction found
It used to be that the worst thing these people could do was launch DDoS attacks against a particular target, or send spam email, or scrape for crypto and credit cards.
Historically, botnets have been used for much more than DDoS, spam, cryptomining, or credit-card scraping. Official DOJ records show botnets were already enabling ransomware, bank fraud, child exploitation, bomb threats, and other serious crimes years before this post.
Full reasoning
This sentence understates what botnet operators were already doing before the AI-driven future the post is discussing.
Official U.S. Department of Justice sources document that botnets have long been used for crimes far beyond DDoS, spam, cryptomining, or scraping payment data:
- In June 2014, DOJ said the Gameover Zeus botnet was used to steal banking credentials and was a common distribution mechanism for CryptoLocker ransomware. DOJ said the FBI estimated more than $100 million in losses from Gameover Zeus, and described CryptoLocker as ransomware that encrypted victims' files and demanded payment.
- In August 2023, DOJ said Qakbot was leveraged to commit ransomware, financial fraud, and other cyber-enabled criminal activity, and that it was used by major ransomware groups including Conti, REvil, and Black Basta.
- In May 2024, DOJ said the 911 S5 botnet facilitated large-scale fraud, child exploitation, harassment, bomb threats, and export violations, including billions of dollars in fraud.
So the historical record does not support the idea that the worst botnet operators "used to" do was DDoS, spam, or scrape for crypto and credit cards. By at least the early 2010s, botnets were already being used for ransomware distribution, large-scale bank fraud, and other far more serious criminal activity.
3 sources
- U.S. Leads Multi-National Action Against “Gameover Zeus” Botnet and “Cryptolocker” Ransomware, Charges Botnet Administrator | United States Department of Justice
The Justice Department said Gameover Zeus was used to steal millions from businesses and consumers, and that the Gameover Zeus network was a common distribution mechanism for CryptoLocker ransomware, which encrypted victims' files until they paid a ransom.
- Qakbot Malware Disrupted in International Cyber Takedown | United States Department of Justice
DOJ said Qakbot 'facilitated ransomware deployments' and that the action disrupted a botnet infrastructure 'leveraged by cybercriminals to commit ransomware, financial fraud, and other cyber-enabled criminal activity.'
- 911 S5 Botnet Dismantled and Its Administrator Arrested in Coordinated International Operation | United States Department of Justice
DOJ said 911 S5 was 'used to commit cyber attacks, large-scale fraud, child exploitation, harassment, bomb threats, and export violations,' and that it enabled billions of dollars in fraud.