Article may be outdated

This article is 56 days old. Some details may have changed since publication.

Hacker News·4 min read·medium

International Revenue Share Fraud (IRSF)

D
djkurlander
International Revenue Share Fraud (IRSF)
✦AI Summary

A security researcher details how their VoIP server was used as a honeypot to track a coordinated International Revenue Share Fraud (IRSF) botnet. The botnet compromised various high-profile organizations to dial premium-rate numbers.

Why it matters

It demonstrates the scale and sophistication of modern automated phone fraud and the vulnerability of corporate networks to simple bot infections.

✦Dive DeeperCreate a free account to unlock

A multinational bank, a US state, and a custom teddy-bear workshop all unwittingly joined the same phone-fraud botnet. Here's how to check whether one of your own machines got caught in the same honeypot.

On August 1st, Citigroup, the State of Idaho, and Build-A-Bear launched a coordinated attack on me. They weren't alone. Lockheed Martin joined in, along with the Spanish National Police, the Los Angeles Superior Court, SoftBank, Argentina's state oil company, a Swiss canton, a UK hedge fund, two universities, a hospital, and three additional international banks. A partial list of these organizations is at the bottom of this post.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologybusiness
✦

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in