• Skip to main content
  • Skip to primary sidebar
  • Skip to footer

Deep Web

The Dark World

  • Deep Web
  • Deep Web Links
  • Best VPN
  • Tor
  • Hidden Wiki
  • News
You are here: Home / News / Hacker / Hackers attack Dark Web Services causing anonymity issues

deepwebadmin / June 5, 2017

Hackers attack Dark Web Services causing anonymity issues

Share110
Pin

Nothing is safe in Dark Web. Even any Service or operation happening in dark web isn’t safe anymore because of the underground cybercriminals who launch massive attacks on competitor sites which are specially made to disrupt their functioning which was found in the Trend Micro research.

Researchers from Trend Micro and French Communications school Eurecom set up a HoneyPot and monitored it for seven months from 2016 February to September.

The Honeypots designed by them which typically looks like the underground dark markets that included invitation-only drug markets including a forum setup with custom registration and referral program to join.

Marco Balduzzi a senior threat researcher pointed us some security flaws that were pretty exposed that mainly attract hackers to take control of the website.

CMS #1 (OsCommerce) CMS #2 (Shells & WordPress) CMS #3 (Custom Vuln.)
Tor2web 115 (8 days) 1,930 (23 days) 0
TOR 0 2,146 (79 days) 689 (5 days)

Above you can see the type of honeypot templates they had a setup based on different web applications and, more importantly, with different types of vulnerabilities.

Attackers used different methods to perform the attacks which include Scattered attacks which used the web shells, Phishing Kit & Mailers, Defacements. These doesn’t limit to automated attacks through TOR that might come under automated scans which main focus is to access the service Private Keys.

Even Manual attacks are powerful which involved post-exploitations, FTP and SSH, and attacks against the custom application which let them made traversal and even try brute force on them.

Many of these attacks took place via Tor proxies such as Tor2web, which allow ordinary browsers to access dark web content while still keeping the materials anonymous, but as a byproduct also expose hidden URLs to malicious campaigns.In total, the researchers collected 157 unique variations of web shells, six phishing

The researchers collected 157 unique variations of web shells, six phishing kits, and 22 mailers, and observed 33-page defacements, more than 1,500 path traversal attempts, and over 400 attempts to steal the private key.

To encourage and find attacks for their honeypot they made promotions in other dark web services. Since apps users Tor2web which shares info to both non as well as fake.

“More and more criminals are actively looking for new, unmonitored grounds to communicate and act in a more hidden fashion,” said Balduzzi.

Share110
Pin

Filed Under: Hacker Tagged With: anonymity, Dark Web Services, Hackers

Reader Interactions

Comments

  1. matt-matt says

    December 10, 2017 at 4:38 pm

    how to join darkweb

Primary Sidebar

STAY ANONYMOUS

CyberGhost VPN Deep Web Access

Footer

Follow US

Recent Post

  • 11 Spine-Chilling and Nightmarish Deep Web Stories from Users
  • Deep Web Destinations – A Massive List of Places to Visit on the Deep Web
  • How Dark Web Whistleblowers Work
  • Money on the Dark Web: Bitcoin Fades as Monero Rises?
  • The Story of Deep Web Narcotics

Disclaimer

The information contained in this website is for general information purposes only. The information is provided by Deep Web Sites and while we endeavour to keep the information up to date and correct, we make no representations or warranties of any kind, express or implied, about the completeness, accuracy, reliability, suitability or availability with respect to the website or the information, products, services, or related graphics contained on the website for any purpose. Any reliance you place on such information is therefore strictly at your own risk. Read more>>

© 2023 · Deep Web

  • Terms and Conditions
  • Privacy and Cookie policy
  • Disclaimer
  • Contact us