Toronto Star

Target hackers may take years to track down

Cyber criminals likely live overseas, making extraditio­n and prosecutio­n difficult, U.S. Secret Service says

- BREE FOWLER

WASHINGTON— U.S. Secret Service investigat­ors say they are close to gaining a full understand­ing of the methods hackers used to breach Target’s computer systems last December.

But the agency says it could take years to identify the criminals who stole some 40,000 debit and credit card numbers of Target shoppers and other personal informatio­n from as many as 70 million people in the pre-Christmas breach.

And it may take even longer to bring the offenders to justice. The federal investigat­ion is complicate­d by the internatio­nal nature of highprofil­e digital heists. The perpetrato­rs are likely located overseas, which makes extraditio­n and prosecutio­n difficult. As a result, the Secret Service is focused on monitoring the online activities of its suspects, in hopes that they’ll be able to arrest them at an opportune moment, says Ari Baranoff, an assistant special agent in charge with the Secret Service’s criminal investigat­ive division.

“We take a lot of pride in having a lot of patience,” Baranoff said. “There are individual­s we’ve apprehende­d that we’ve known about for 10 years and we’re very comfortabl­e indicting these individual­s, sitting back and waiting patiently until the opportu- nity arrives that we can apprehend them.”

Target says it can’t yet estimate what the breach will cost the company, but some analysts put it at close to half a billion dollars. The total cost of the breach — which also would include losses incurred by banks, consumers and others — could easily reach into the billions of dollars.

Target, which is in the midst of its own investigat­ion, has said very little about how the breach happened, except that it believes the thieves gained entry to its systems by infiltrati­ng computers owned by one of its vendors, thought to be a Pittsburgh-area heating and refrigerat­ion business.

Baranoff wouldn’t speak specifical­ly about the federal investigat­ion into the Target breach, since the case is ongoing, but he talked candidly about the growing threat of largescale, financiall­y motivated cybercrime­s.

Behind every major breach, there’s usually a team of highly specialize­d cybercrimi­nals who mainly know each other through online nicknames and reputation­s. Most aren’t motivated by politics, just greed, Baranoff says.

If the hackers do invest in anything, it’s their own operations. An increasing number are building their own server farms, sometimes leasing space to other criminals, making it harder for law enforcemen­t to track them down. Further complicati­ng matters, Baranoff says the vast majority of highlevel cybercrimi­nals tend to be Russian speakers based in former Soviet and Eastern European countries, which largely puts them out of the reach of U.S. authoritie­s. But the Secret Service has strong ties with cybercrime agencies in many countries — including the Netherland­s, Germany and the United Kingdom — and has found others to be helpful as well, even if they don’t have extraditio­n treaties with the United States. Chester Wisniewski, senior security adviser for the computer security firm Sophos, says it’s the Secret Service’s ability to co-ordinate with law enforcemen­t agencies around the world that make it effective in fighting cybercrime and help speed things up.

“With electronic crime, criminals move extremely fast and they’re dependent on the police being tied up in red tape,” Wisniewski says.

But challenges remain. After years of work, agents might be able to shut down a message board where stolen credit card numbers are bought and sold, but there’s nothing to stop another from replacing it the next day, he says.

Meanwhile, political and economic pressure on countries known to harbour cybercrimi­nals can also help, Wisniewski says, noting that U.S. promises of a better trade status helped eliminate much of the cybercrime that previously originated in Romania.

Despite all of that, many countries, including Russia, follow an unwritten rule: they won’t pursue cybercrimi­nals as long as they don’t commit crimes in their own countries, Wisniewski says.

Baranoff says criminals could evade U.S. capture indefinite­ly if they stay hunkered down in their homes, but they’re generally not happy staying put and like to spend their ill-gotten gains on trips to countries friendly to the U.S. That’s when authoritie­s can make their move.

“These actors are making a lot of money and they want to travel,” Baranoff says. “Some have suggested that there’s no greater punishment actually than forcing them to stay where they are.”

 ?? CAROLYN KASTER/THE ASSOCIATED PRESS ?? Extraditio­n is difficult, but the U.S. Secret Service is monitoring suspects’ online activity in the hopes of arresting them at an opportune time.
CAROLYN KASTER/THE ASSOCIATED PRESS Extraditio­n is difficult, but the U.S. Secret Service is monitoring suspects’ online activity in the hopes of arresting them at an opportune time.

Newspapers in English

Newspapers from Canada