Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Tracking & Law Enforcement

DDoS-for-Hire Service Admin Pleads Guilty

An Illinois man pleaded guilty earlier this week for owning, administrating, and supporting an illegal booting service that launched millions of distributed denial of service attacks, the U.S. Department of Justice announced. 

An Illinois man pleaded guilty earlier this week for owning, administrating, and supporting an illegal booting service that launched millions of distributed denial of service attacks, the U.S. Department of Justice announced. 

The man, Sergiy P. Usatyuk, 20, of Orland Park, Illinois, worked with a co-conspirator to develop and operate multiple booter services and booter-related services between August 2015 and November 2017. 

The illegal services included ExoStress.in (“ExoStresser”), QuezStresser.com, Betabooter.com (“Betabooter”), Databooter.com, Instabooter.com, Polystress.com, and Zstress.net. ExoStresser was being advertised in September 2017 as having launched 1,367,610 DDoS attacks and causing 109,186.4 hours of network downtime.

Booters or stressers are web-based services that allow cybercriminals to launch DDoS attacks that flood targeted systems with unrequested traffic, causing them to drop from the Internet. DDoS attacks also impact computer systems that are not targeted directly. 

According to criminal information, Betabooter was used in November 2016 to launch attacks against a school district in the Pittsburgh, Pennsylvania area, which also disrupted the computer systems of 17 organizations that shared the computer infrastructure, including other school districts, the county government, the county’s career and technology centers, and a Catholic Diocese in the area.

Usatyuk and a co-conspirator reportedly made over $550,000 from charging subscriber fees to paying customers of their booter services, as well as from selling advertising space to other booter operators.

The number of DDoS attacks is said to have decreased last year, although these assaults are more powerful than before, courtesy of newly discovered amplification techniques. Authorities have increased their take-down efforts against booters, and are also targeting the users of such services. 

Related: You Can DDoS an Organization for Just $10 per Hour: Cybercrime Report

Advertisement. Scroll to continue reading.

Related: Hacktivist Gets 10-Year Prison Sentence for DDoS Attack on Hospitals

Related: Authorities Take Down Largest DDoS Services Marketplace

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Cybercrime

Daniel Kelley was just 18 years old when he was arrested and charged on thirty counts – most infamously for the 2015 hack of...

Cybercrime

No one combatting cybercrime knows everything, but everyone in the battle has some intelligence to contribute to the larger knowledge base.

Cybercrime

The FBI dismantled the network of the prolific Hive ransomware gang and seized infrastructure in Los Angeles that was used for the operation.

Ransomware

The Hive ransomware website has been seized as part of an operation that involved law enforcement in 10 countries.

Privacy

Employees of Chinese tech giant ByteDance improperly accessed data from social media platform TikTok to track journalists in a bid to identify the source...

CISO Strategy

The SEC filed charges against SolarWinds and its CISO over misleading investors about its cybersecurity practices and known risks.

Cybercrime

A global cyber espionage campaign has resulted in the networks of many organizations around the world becoming compromised after the attackers managed to breach...

Cybercrime

A look into recent cryptocurrency tracing and recovery operations by the FBI and UK’s Metropolitan Police