Hacker News new | ask | show | jobs
by Mandatum 4373 days ago
Yes, in the past when they were more centralized with only a few IRC/C&C's this was an easy solution.

However now, a botmaster is able to generate thousands of C&C centers's from hacked boxes, via hidden TOR or I2P nodes, or shared hosting, as well as hundreds of thousands of varying infected malware almost instantly. The only thing that requires effort from the botmaster now is spreading and constantly updating their slaves so they can keep them in control longer.

The actual implementation is the easy part of it.

1 comments

I see. Still, the attacker has multiple surfaces to try and trace them through. Unless they are very careful, you would expect that they tend to slip every now and then, making it possible to find them? I would imagine that a dedicated security team within law enforcement would be able to get a pretty good success rate, but that doesn't appear to be the case?