US gov't busts alleged botmaster who attacked antiscam site

California man allegedly launched DDoS attacks from McDonald's, Best Buy

A 21-year-old California man has been arrested and charged with launching a distributed denial-of-service (DDoS) attack against CastleCops, an online forum and Web site that specializes in rooting out Internet scams.

Gregory King, of California, was arrested last Thursday and arraigned Monday on four federal counts of attacking servers that hosted CastleCops and KillaNet, a Canadian Web and graphics design community. If convicted, King faces up to 10 years in prison and a US$250,000 fine.

Last February, CastleCops, which is run by volunteers, was knocked offline by a DDoS attack King instigated, prosecutors said in the indictment filed in a federal court. King used a botnet -- a collection of previously compromised computers -- to attack CastleCops and launch numerous other sustained assaults against KillaNet beginning in July 2004.

King, who went by the online nicknames "Silenz," "sZ" and "Gregk707," reportedly amassed a botnet of about 7,000 infected machines. He used a variety of Gmail and Yahoo e-mail addresses, and even posted a photo of himself to his Yahoo profile. Also on the profile, King listed his latest news as "I learned a little bit of Visual Basic .Net in school, but I still suck at it."

"All too often, victims of DDoS attacks are left feeling let down and with a sense that the system fails," said Robin Laudanski in a message posted to CastleCops' front page. "Today, the system didn't fail." Laudanski and her husband Paul run CastleCops.

When FBI agents went to arrest King at his home last week, he fled out the back door with his laptop, which he tossed in bushes in the backyard. Agents recovered the laptop. According to arraignment papers, King launched the DDoS attacks from locations that included his parents' home, the local public library, a McDonald's restaurant and even a Best Buy store.

King was released Monday after his mother posted a US$25,000 bond. A trial date has not been set.

CastleCops has been an ongoing target for cybercriminals. Last month, for example, attackers used hacked PayPal accounts to send bogus donations to the site, making it appear that CastleCops was behind the thefts. CastleCops is working with both PayPal and the FBI to put a stop to the donations, according to Brian Krebs, the technology reporter for The Washington Post.

Starting in late August, CastleCops weathered another weeks-long DDoS attack.

Join the PC World newsletter!

Error: Please check your email address.

Struggling for Christmas presents this year? Check out our Christmas Gift Guide for some top tech suggestions and more.

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Gregg Keizer

Computerworld

Most Popular Reviews

Follow Us

Best Deals on GoodGearGuide

Shopping.com

Latest News Articles

Resources

GGG Evaluation Team

Kathy Cassidy

STYLISTIC Q702

First impression on unpacking the Q702 test unit was the solid feel and clean, minimalist styling.

Anthony Grifoni

STYLISTIC Q572

For work use, Microsoft Word and Excel programs pre-installed on the device are adequate for preparing short documents.

Steph Mundell

LIFEBOOK UH574

The Fujitsu LifeBook UH574 allowed for great mobility without being obnoxiously heavy or clunky. Its twelve hours of battery life did not disappoint.

Andrew Mitsi

STYLISTIC Q702

The screen was particularly good. It is bright and visible from most angles, however heat is an issue, particularly around the Windows button on the front, and on the back where the battery housing is located.

Simon Harriott

STYLISTIC Q702

My first impression after unboxing the Q702 is that it is a nice looking unit. Styling is somewhat minimalist but very effective. The tablet part, once detached, has a nice weight, and no buttons or switches are located in awkward or intrusive positions.

Latest Jobs

Shopping.com

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?