Conficker and Waledac botnet owners were partners
The owners of the Waledac and Conficker botnets collaborated to make money in a joint venture, says a new report.
Criminal enterprises and botnet authors are mimicking the IT sector by working together and creating new business models such as botnets as a service'.
The Cisco Midyear Security Report said that it was a spin on the SaaS (Software as a Service) trend, which was gaining more popularity in the technology sector.
The criminals' increasing business acumen was highlighted with the way the creators of the Conficker and Waledac botnets collaborated.
In April, the Conficker botnet started to make money by delivering the Waledac malware as well as scareware, which meant that Conficker was serving as a large-scale distributor.
Cisco highlighted the networked nature of the threat, as the two illegal enterprises collaborated to launch from the same hosts over a long period of time, causing greater damage.
Tom Gillis, vice president and general manager of Cisco Security Products, said in the report that criminals were copying the practices of the most successful legitimate businesses to make money and grow.
He said: "It seems the best practices espoused by Fortune magazine and Harvard Business School have found their way into the online underworld."
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
The report also said that Cisco security experts expected cybercriminals to join up in similar partnerships in the coming months. Indeed, they'd already seen ads online where other criminals could access existing botnets for a fee.
"With criminals being so quick to identify weaknesses both in online networks and in consumers' psyches, businesses need to adopt ever more advanced ways to fight cybercrime and remain vigilant across all attack vectors," said Cisco chief security researcher Patrick Peterson in a statement.
Cisco said that there was cause for optimism in the future. Aggressive good guy' collaborations - such as the Conficker Working Group, which now has over 100 member organisations - were helping to battle the new threats.
-
Trump's AI executive order could leave US in a 'regulatory vacuum'News Citing a "patchwork of 50 different regulatory regimes" and "ideological bias", President Trump wants rules to be set at a federal level
-
TPUs: Google's home advantageITPro Podcast How does TPU v7 stack up against Nvidia's latest chips – and can Google scale AI using only its own supply?
-
Researchers claim Salt Typhoon masterminds learned their trade at Cisco Network AcademyNews The Salt Typhoon hacker group has targeted telecoms operators and US National Guard networks in recent years
-
Europol hails triple takedown with Rhadamanthys, VenomRAT, and Elysium sting operationsNews The Rhadamanthys infostealer operation is one of the latest victims of Europol's Operation Endgame, with more than a thousand servers taken down
-
Cisco ASA customers urged to take immediate action as NCSC, CISA issue critical vulnerability warningsNews Cisco customers are urged to upgrade and secure systems immediately
-
Cisco eyes network security gains for agentic AINews New network security updates aim to secure AI agents across enterprises
-
Cisco patches critical flaw affecting Identity Services EngineThe networking giant has urged enterprises to update immediately
-
96% of businesses have low cyber-readiness, claims CiscoThe 2025 Cisco Cybersecurity Readiness Index shows a concerning number of businesses globally are unprepared for rising AI-related threats.
-
Cisco takes aim at AI security at RSAC with ServiceNow partnershipNews The companies claim Cisco AI Defense and ServiceNow SecOps will help address new challenges raised by AI
-
Seized database helps Europol snare botnet customers in ‘Operation Endgame’ follow-up stingNews Europol has detained several people believed to be involved in a botnet operation as part of a follow-up to a major takedown last year.