Sep26 |
9:34 am (UTC-7) | by
Maxim Goncharov (Senior Threat Researcher) |
We recently found an interesting post in a Russian underground forum in the course of our research. People exchange information about their illegal activities in these kinds of forum. We found a user in the forum with the handle “sourcec0de” and ICQ number 291149 who currently offers root access to some of the cluster servers of MySQL.com and its subdomains.
![]() |
The screenshot above shows that the seller appears to have a shell console window with root access to these servers. The price for each access starts at US$3,000 with the exchange of money/access being provided by the well-known garant/escrow system for which a trusted third party verifies both sides of a transaction.
In our previous underground research, we also saw sourcec0de sell stolen PayPal account credentials and discussing the management of botnet command-and-control (C&C) servers.
We contacted MySQL.com about this issue last week. We are making this public to stress the fact that hackers do not only profit from selling stolen data or by inserting bad links into spam or phishing email, websites, and other possible infection vectors.
This case, regardless of whether sourcec0de’s claim is true or not, shows just how brazen cybercriminals are, selling administrative access to specific systems, which can be negatively impacted by their break-ins.
Share this article |
|






Pingback: Pioneering Solutions - MySQL.com hacked, redirects users to malware-laden sites
Pingback: Underground Radar: Possible Compromise of MySQL.com and Its Subdomains | Simply Security
Pingback: Radar en círculos clandestinos: posible compromiso de MySQL.com y sus subdominios » blog.trendmicro.es
Pingback: » MySQL.com هک شد تا برای بدافزارها خدمت کند
Pingback: MySQL.com هک شد تا برای بدافزارها خدمت کند » دگرگون
Pingback: Взломан сайт MySQL.com : Лисья нора. Логово админа.
Pingback: MySQL.com هک شد تا برای بدافزارها خدمت کند | GilAsus
Pingback: MySQL.com هک شد تا برای بدافزارها خدمت کند | پایگاه خبری آی تی نیوز
Pingback: MySQL.com هک شد تا برای بدافزارها خدمت کند | جامع ،کامل ، رایگان///پی سی سنتر
Pingback: MySQL.com hacked | Tech Pediatrics | mithil.me
Pingback: De Repente – Site MySQL.com é invadido e usado para distribuir malware
Pingback: Новости компьютерного мира - На сайте MySQL.com обнаружен вредоносный JavaScript-код, распространяющий троянское ПО
Pingback: Mysql.com sofre ataque e espalha malware | Web Content - O melhor conteúdo para desenvolvimento web
Pingback: На сайте MySQL.com обнаружен вредоносный JavaScript-код, распространяющий троянское ПО | AllUNIX.ru – Всероссийский портал о UNIX-системах
Pingback: Mysql.com Serves Malware for the Second Time This Year
Pingback: Hackean MySQL.com para difundir malware | eWEEK Europe España
Pingback: .:[ d4 n3wS ]:. » Pour 3000$ t’as MySQL.com
Pingback: Hi-Tech Crime Solutions » Blog Archive » MySQL.com Hacked
Pingback: MySQL.com hacked to serve malware | National Cyber Security
Pingback: TECHNOLOGY GADGETS - MySQL.com hacked to serve malware
Pingback: MYSQL.COM HACKED TO SERVE MALWARE » MYSQLCOM, NEWS, GONCHAROV, ROBERT, MONDAY, HUANG » GADGETTECHNEWS.CO.CC