
Highly-targeted messaging campaigns from law enforcement can be surprisingly effective at dissuading young gamers from getting involved in cybercrime, a new study has suggested.
Highly-targeted messaging campaigns from law enforcement can be surprisingly effective at dissuading young gamers from getting involved in cybercrime, a new study has suggested.
A big problem is that there is still relatively little evidence as to what best practice looks like for tackling cybercrime
Ben Collier
探花直播study, by researchers from the 探花直播 of Cambridge and 探花直播 of Strathclyde, looked at four different types of law enforcement interventions, the first evaluation of the their effectiveness for this particular type of cybercrime.
They found that while high-profile arrests and sentencing of cybercriminals only lead to a short drop in the number of attacks taking place, the takedown of infrastructure and targeted messaging campaigns were strongly associated with a sharper and longer-term reduction in attack numbers. 探花直播results will be presented today (21 October) at the ACM Internet Measurement Conference in Amsterdam.
For just a few dollars, almost anyone can become involved in cybercrime through the use of 鈥榖ooter鈥 service websites, where users can purchase targeted denial of service (DoS) attacks. A DoS attack generates large amounts of traffic which overwhelm end users or web services, taking them offline.
DoS attacks have been used in the past as a protest tactic, but because of booter services and the relative ease of using them, they are commonly used by users of gaming sites, as a form of retaliation against other users 鈥 the largest booter provider carries out between 30,000 and 50,000 such attacks every day.
While DoS attacks are usually targeted at a specific end users, they can often cause collateral damage, knocking out other users or systems.
鈥淟aw enforcement are concerned that DoS attacks purchased from a booter site might be like a 鈥榞ateway drug鈥 to more serious cybercrime,鈥 said from Cambridge鈥檚 Department of Computer Science & Technology, the paper鈥檚 first author. 鈥淎 big problem is that there is still relatively little evidence as to what best practice looks like for tackling cybercrime.鈥
鈥淓ven people running booter services think that booting is lame,鈥 said from Strathclyde鈥檚 Department of Computer and Information Sciences. 鈥淭his makes the market particularly vulnerable to disruption.鈥
Collier and his colleagues from the used two datasets with granular data about the attacks from booter sites, and modelled how the data correlated with different intervention tactics from the National Crime Agency (NCA) in the UK, the Federal Bureau of Investigation (FBI) in the US, and other international law enforcement agencies.
While operating a booter service or purchasing a DoS attack is illegal in most jurisdictions, earlier research has found that most booter operators were unconcerned about the possibility of police action against them.
探花直播researchers found that arrests only had a short-term effects on the volume of DoS attacks 鈥 about two weeks 鈥 at which point activity went back to normal. Sentencing had no widespread effect, as attackers in one country weren鈥檛 affected by sentences in another country.
Taking down infrastructure 鈥 as the FBI did at the end of 2018 鈥 had a far more noticeable effect, and suppressed the booter market for months. 鈥淭his FBI action also reshaped the market: before, it was what you鈥檇 expect in a mature ecosystem, where there several large booter services and lots of smaller ones,鈥 said Collier. 鈥淏ut now there鈥檚 really just one large booter service provider, and you鈥檙e starting to see a few smaller ones start to come back.鈥
探花直播most interesting results were around targeted messaging. From late December 2017 to June 2018, the NCA bought targeted Google adverts aimed at young men in the UK. When a user searched for booter services, a targeted advert popped up, explaining that DoS attacks are illegal.
鈥淚t鈥檚 surprising, but it seems to work, like a type of digital guardianship,鈥 said Collier. 鈥淎t the exact moment you get curious about getting involved in cybercrime, you get a little tap on the shoulder.
鈥淚t might not work for people who are already involved in this type of cybercrime, but it appeared to dramatically decrease the numbers of new people getting involved.鈥
While the researchers say this evidence suggests that targeted online messaging has the potential to be a potent tool for preventing crime, it also poses questions about what accountability structures might be required for its wider use as a police tactic.
This has already had direct policy impact, and the FBI and NCA have used this research to inform their strategies for dealing with booter services.
探花直播research was supported by the Engineering and Physical Sciences Research Council.
Reference:
Ben Collier, Daniel Thomas, Richard Clayton and Alice Hutchings. 鈥楤ooting the Booters: Evaluating the Effects of Police Interventions in the Market for Denial-of-Service Attacks.鈥 Paper presented at the . Amsterdam, the Netherlands.
探花直播text in this work is licensed under a . Images, including our videos, are Copyright 漏 探花直播 of Cambridge and licensors/contributors as identified.听 All rights reserved. We make our image and video content available in a number of ways 鈥 as here, on our main website under its Terms and conditions, and on a range of channels including social media that permit your use and sharing of our content under their respective Terms.