Online Casinos - Casinomeister Logo Online Casinos - Casinomeister

Go Back   Casinomeister's Online Casino and Poker Forum > The Amazing World of Online Casinos and Poker Rooms > Casinomeister's Poker Room

Notices

Casinomeister's Poker Room Here you can post your experiences with online poker rooms - good or bad.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 11th March 2008, 10:37 AM
jetset's Avatar
Meister Member
 
Join Date: Feb 2001
Posts: 10,371
WTGs: 0
WTGd at 0 Times in 0 Posts
Thanks: 879
Thanked 2,946 Times in 1,362 Posts
Nominated 7 Times in 2 Posts
TOTW/F/M Award(s): 0
Reputation Points: 15704
Rep Power: 161
jetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond reputejetset has a reputation beyond repute
Was this what happened at Absolute?

SECURITY EXPERT URGES CARE IN ONLINE ACTIVITY

Trojans used to steal millions from online poker players, says security specialist

In an article in Tech Radar this week, Mikko Hyppönen the chief research officer at security software company, F-Secure cautions online poker players to take care when using the Internet as security scams are taking place.

In his work as a consultant with European security agencies on cyber crime Hyppönen frequently comes into contact with threats posed by cyber-criminals, and hears many cautionary tales of how people have been prejudiced, sometimes without even realising it.

Hyppönen told the publication that hackers are stealing millions from innocent web users, deploying tactics from mobile phone spying to planting Trojans and hacking into systems.

Online poker players, he claims, are some of the ripest targets. And the expert cautioned that he knows of cases where online poker sites have been used to "launder" money or credit obtained through cyber criminal enterprises, in at least one case by a ring which went on to buy articles subsequently sent to insurgency groups in Iraq.

“Online poker players are a massive target for hackers," said Hyppönen. "People play it with real money obviously, so they’re a big target. We were just investigating a case where a professional online poker player was attacked by someone he would play against regularly online. And we’re talking about professional players, and big money. Hundreds of thousands of euros on the table at a time,” he said.

“All of a sudden he started losing. He would regularly lose even when he had a great hand – pocket aces for example. If he had an unbeatable hand, the other players would simply fold. And when he tried to bluff, he would lose. He lost a lot of money this way, we’re talking hundreds of thousands of euros.

“This went on for weeks. And when we looked into it we realised that one of the other players at the table had sent him a tool. A calculator of sorts to help him optimise his poker playing. And we found that the application included a Trojan.

“When he was playing online poker against these people who were in another country, the guy could press a button and he would receive a screenshot of the target’s screen. So he sees the hole cards. If you’re playing poker and the other players know your cards, it’s pretty hard to win.


“It’s a clever attack because the hacker could have just stolen the account and moved the money away. But he would have been caught. But this way the target was losing his money to someone else and he didn’t realise it was a con. I don’t think many online poker players realise that those kind of attacks are being done.”

Hyppönen highlighted the case of Tariq Al-Daour who was sent to prison after he used online poker sites to launder millions of pounds to fund insurgents in Iraq.

“Tariq Al-Daour was sentenced last summer in London with two of his friends, for using Windows Trojans. They were using keyloggers which save everything you type on the keyboard. And they waited until you did online shopping so they could get your name, address, credit card number etc, and this way they managed to get 36 000 cards. American Express, Visa, Mastercard - the lot. And what they did is they took those cards to online poker sites.

“They set up new accounts with the stolen cards and of course they played against themselves, losing on purpose. This way they were able to launder the money. Again it’s pretty clever because if someone comes asking about all their money, they can prove they won it at poker.

“They laundered close to about two million euros. And the really weird part is what they did with the money. They took the money back to online shops and bought stuff like hiking boots, tents, knives, GPS devices, radios...

“And then they would use couriers to ship those goods to Iraq.”
__________________
jetset
Reply With Quote
The Following 4 Users Say Thank You to jetset For This Useful Post:
heatherad (11th March 2008), Mousey (11th March 2008), RobWin (11th March 2008), swampwitch (13th March 2008)
  #2 (permalink)  
Old 11th March 2008, 11:58 AM
Zoozie's Avatar
Meister Member
 
Join Date: Dec 2005
Location: Denmark
Posts: 1,016
WTGs: 14
WTGd at 16 Times in 2 Posts
Thanks: 639
Thanked 1,143 Times in 367 Posts
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Reputation Points: 6100
Rep Power: 48
Zoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond reputeZoozie has a reputation beyond repute
Quote:
Originally Posted by jetset View Post
Was this what happened at Absolute?
No, it was nothing like this at all. The Absolute cheating scandal was an insider job with no Trojans involved. The cheater could see all hole from all players.

The only plausible explanations are still:
1) Superuser account
2) Hacking into the server accessing run-time data/logfile. And this was only successfull because Absolute poker also made the gigantic blunder of logging/means of access to the run-time data before a hand was over.
Reply With Quote
The Following User Says Thank You to Zoozie For This Useful Post:
heatherad (11th March 2008)
  #3 (permalink)  
Old 11th March 2008, 12:05 PM
maxd's Avatar
Complaints Section Moderator and PAB Manager
 
Join Date: Jan 2004
Location: EU
Posts: 1,775
WTGs: 0
WTGd at 2 Times in 2 Posts
Thanks: 235
Thanked 914 Times in 390 Posts
Blog Entries: 4
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Reputation Points: 4833
Rep Power: 15
maxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond repute
Very interesting article though, thanks for posting it Jetset.

AFWIW, "superuser" accounts are standard practice in almost every field of software development on the planet -- telecommunications, operating systems, games, enterprise management systems,etc etc, you name it -- so the question at AP is much more realistic if you ask "do he have superuser access?" rather than "was there a superuser account that he could have used?" Assume that superuser access does exist and you'll putting pretty close to par.
__________________
Useful links: Accredited Casinos & Poker ~ Casino Reps ~ Warnings ~ Rogue Pit ~ Pitch-A-Bitch Stuff: new FAQ, Submit a PAB, PAB Archives ~ Forum Rules
Q: Want 2 minutes of great advice for your next PAB?     A: Read the PAB DO's and DON'Ts
Reply With Quote
  #4 (permalink)  
Old 11th March 2008, 05:57 PM
Mousey's Avatar
Resident Rodent
 
Join Date: Sep 2004
Location: Up$hitCreek
Posts: 2,016
WTGs: 0
WTGd at 2 Times in 1 Post
Thanks: 1,522
Thanked 1,562 Times in 869 Posts
Nominated 7 Times in 1 Post
TOTW/F/M Award(s): 0
Reputation Points: 8174
Rep Power: 68
Mousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond reputeMousey has a reputation beyond repute
I don't for a minute think that's what happened at Absolute. However, it could very well be something similar that happens at any given poker room on any given day.

It also could be something similar (trojan/keylogger/bot drone) that enable(d) persons unknown to empty players accounts. (About which we have still heard little or no explanation.)

So, while playing against a poker bot is not in itself a losing situation, playing against a bot who is in contact w/a 'sister' bot on your computer, however, is. (And believe me, I know from experience, firewalls and anti-virus apps out the ying-yang are not always enough to prevent infection.)
__________________
Alice: But I don't want to go among mad people.
The Cat: Oh, you can't help that. We're all mad here. I'm mad. You're mad.
Reply With Quote
  #5 (permalink)  
Old 12th March 2008, 08:50 PM
maxd's Avatar
Complaints Section Moderator and PAB Manager
 
Join Date: Jan 2004
Location: EU
Posts: 1,775
WTGs: 0
WTGd at 2 Times in 2 Posts
Thanks: 235
Thanked 914 Times in 390 Posts
Blog Entries: 4
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Reputation Points: 4833
Rep Power: 15
maxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond reputemaxd has a reputation beyond repute
Ok, totally OT but ... love the avatar Mousey! "Mission Im-Mouseable".
__________________
Useful links: Accredited Casinos & Poker ~ Casino Reps ~ Warnings ~ Rogue Pit ~ Pitch-A-Bitch Stuff: new FAQ, Submit a PAB, PAB Archives ~ Forum Rules
Q: Want 2 minutes of great advice for your next PAB?     A: Read the PAB DO's and DON'Ts
Reply With Quote
The Following User Says Thank You to maxd For This Useful Post:
Mousey (12th March 2008)
  #6 (permalink)  
Old 12th March 2008, 10:05 PM
thisisvegas's Avatar
I-Gaming Industry Representative
 
Join Date: Oct 2007
Location: Canada
Posts: 136
WTGs: 0
WTGd at 0 Times in 0 Posts
Thanks: 112
Thanked 349 Times in 92 Posts
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Reputation Points: 1755
Rep Power: 13
thisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant futurethisisvegas has a brilliant future
I think this guy's company is trying to ride some free media exposure on the Absolute scandal. He is right in that there are programs out there to try to watch player activity. I think in the near future most poker software will be able to detect odd behaviour and you can thank professional poker players for being able to uncover these cheats.

What happened at Absolute Poker was a super user account and an inside job. The super user was able to knock off pros and I find it highly unlikely that a professional online poker player would have any sort of virus or trojan on their computer. They care more about their security than anybody else especially with the amounts they have in their accounts. On top of that it is easy to see something funny happen when the player is involved in nearly 100% of the hands.

Also the comments about these poker companies allowing money to be laundered or used for terrorist activities is another joke. He is either playing off of fears or just trying to ride the bandwagon. Send this to twoplustwo forums and see him get eaten alive.

John
__________________
thisisvegas - the heart of gaming
Reply With Quote
The Following 2 Users Say Thank You to thisisvegas For This Useful Post:
swampwitch (13th March 2008), The Ronin (12th March 2008)
  #7 (permalink)  
Old 12th March 2008, 11:46 PM
swampwitch's Avatar
Lizard Queen
 
Join Date: Nov 2002
Location: Iowa, dammit.
Posts: 287
WTGs: 0
WTGd at 0 Times in 0 Posts
Thanks: 421
Thanked 383 Times in 131 Posts
Nominated 8 Times in 1 Post
Nominated TOTW/F/M Award(s): 1
Reputation Points: 2314
Rep Power: 37
swampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond reputeswampwitch has a reputation beyond repute
Quote:
In an article in Tech Radar this week, Mikko Hyppönen the chief research officer at security software company, F-Secure cautions online poker players to take care when using the Internet as security scams are taking place.
I'd be more apt to give this serious consideration if this had been brought to light by anyone other than someone who makes their living from computer vulnerabilities.

Quote:
We were just investigating a case where a professional online poker player was attacked by someone he would play against regularly online. And we’re talking about professional players, and big money. Hundreds of thousands of euros on the table at a time,” he said.

“All of a sudden he started losing. He would regularly lose even when he had a great hand – pocket aces for example. If he had an unbeatable hand, the other players would simply fold. And when he tried to bluff, he would lose. He lost a lot of money this way, we’re talking hundreds of thousands of euros.

“This went on for weeks. And when we looked into it we realised that one of the other players at the table had sent him a tool. A calculator of sorts to help him optimise his poker playing. And we found that the application included a Trojan.
Why would a professional big money player use a tool, especially one sent to him by a rival player? Why doesn't the article name the player?
Notice F-Secure didn't have a problem giving the name of Tariq Al-Daour..but leaves out the pertinent fact that the stolen credit card numbers he used when opening up casino and poker accounts were not obtained through vulnerabilities of the poker sites themselves.
Reply With Quote
The Following User Says Thank You to swampwitch For This Useful Post:
The Ronin (12th March 2008)
  #8 (permalink)  
Old 12th March 2008, 11:54 PM
The Ronin's Avatar
Fully Registered
 
Join Date: Jun 2007
Location: Back East
Posts: 29
WTGs: 0
WTGd at 0 Times in 0 Posts
Thanks: 33
Thanked 23 Times in 9 Posts
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Reputation Points: 125
Rep Power: 7
The Ronin has been spending a lot of time in the forumThe Ronin has been spending a lot of time in the forum
I agree with thisisvegas: Seems like a bit of a stretch to go from:

Quote:
"Like many other credit card thieves, Al-Daour ordered merchandise with the stolen credit cards, had them shopped to a series of “drop” sites, and used a network of thieves to turn the stolen goods into cash. He also stole identities of Internet gambling site members and wracked up winnings to help raise funds."
MSNBC Report:

To this:

Quote:
“They set up new accounts with the stolen cards and of course they played against themselves, losing on purpose. This way they were able to launder the money. Again it’s pretty clever because if someone comes asking about all their money, they can prove they won it at poker."
Now granted their might have been some other article that I haven't seen that validates the poker player angle in the news story. If not, it does seem alarmist in nature, and stretching the truth to sensationalize a more simplistic view of what really happened.

What looks like really happened, horrible as it was, is he sole the funds from gambling and possibly poker player accounts. Plain and simple.

Also adding the:

Quote:
“They laundered close to about two million euros. And the really weird part is what they did with the money. They took the money back to online shops and bought stuff like hiking boots, tents, knives, GPS devices, radios...

“And then they would use couriers to ship those goods to Iraq.”
Wrong. And their guilty pleas and or verdicts do not support that statement. They did the same thing every other cyber crook does when they get hot numbers. Shop till you drop, or max out. Fence the goods, usually on ebay, and use the cash for whatever you want.

These knuckleheads used the money to set up websites inciting terror. Unless it was reported, and the convictions mirror the claim or report, one must again assume it is false.

These guys are thieves, nothing more. Their political and religious views aside, they are simply thieves. And I thought according to their religion they are supposed to lose a hand for stealing

Linking teror, poker and al-qaida etc (intentional mis-spellings) makes for a snazzy flash news article. The truth is much less flashy.
__________________
Position Position POSITION
Reply With Quote
The Following 2 Users Say Thank You to The Ronin For This Useful Post:
fatshaft (14th March 2008), swampwitch (13th March 2008)
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
King Solomons - what happened? Fleur-De-Lis Online Casinos 23 4th March 2008 09:58 AM
Absolute Poker Could Become Safest Poker Room - Not Rollo Casino Industry Discussion 18 21st November 2007 12:30 AM
DOJ visit to Absolute Poker offices - questions remain. Ian_go Casino Industry Discussion 26 29th December 2006 11:13 PM
Absolute Poker Retroactively Changes Bonus Terms pokeraddict Casinomeister's Poker Room 4 27th December 2006 08:30 AM


All times are GMT +2. The time now is 06:59 AM.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0
© All Rights Reserved, 1998-2008
Inactive Reminders By Mished.co.uk