pcappdate. Muhammad Sohail Qasmani, 47, from Pakistan, pleaded guilty to charges of conspiracy to commit wire fraud, as part of an international crime gang that hacked telephone servers and defrauded companies of well over $19.6 million / €17.4 million.
PBX (Private Branch Exchange) systems are private telephone networks used within a company, that connect to external telephony providers. Just like routers manage IP addresses inside a LAN, PBX systems manage telephone numbers inside a closed enterprise phone network.
Hackers hijacked unused telephone numbers
Starting with 2008, a criminal group operating from Pakistan has hacked PBX systems belonging to various companies across the globe. Hackers were illegally accessing the devices and scanning for unused numbers.
They would then hijack these unused telephone extensions and initiate calls to premium numbers for services such as adult entertainment, private chat lines, and psychic hotlines.
All of these premium numbers were registered and under the control of Noor Aziz, 53, of Karachi, Pakistan, who would benefit from the revenue provided by these hijacked phone calls. The companies that had their phone numbers hijacked, would eventually have to foot the bill for all the illegal calls.
Aziz worked with Qasmani, who set up a company in Bangkok through which Aziz laundered money and paid the people that hacked the PBX systems, and the ones that constantly dialed each number (called dialers) to call the fake premium services.
Criminal group had more than 650 members
FBI agents investigating the case discovered that between 2008 and 2012, Aziz transferred over $19.6 million / €17.4 million to Qasmani's company. In turn, Qasmani rerouted these funds to 650 different people in ten countries such as the Philippines, India, Pakistan, Malaysia, China, the United Arab Emirates, Saudi Arabia, Indonesia, Thailand, and Italy.
US authorities arrested Aziz in June 2012, indicted him, and later set him free on bail. Shortly after, Aziz fled and still remains a fugitive to this day. The FBI suspects Aziz may be hiding in Saudi Arabia.
More recently, US authorities arrested Qasmani on December 22, 2014, at the Los Angeles airport after he arrived via a flight from Bangkok, Thailand. After admitting his role in this scheme, Qasmani now faces up to 20 years in jail and a $250,000 fine. A judge will decide on his sentence on May 17, 2016.
Sunday, February 14, 2016
Related Posts:
Yahoo Fixes Ridiculously Simple Email Address Spoofing Bug Yahoo! has patched an email spoofing issue that allowed attackers to send malicious emails in the name of any person they wished. Yahoo! Mail received a more polished, "modern" update a few years back, after Marissa Mayer … Read More
Adware Infects Firmware of 40 Low-End Android SmartphonesAn Android trojan specialized in showing unwanted ads has managed to infect the firmware of 40 low-end Android smartphones, and even a few popular applications, some of them created by cyber-security vendors. The trojan, nam… Read More
New Carbanak Attacks Detected in Early Stages of InfectionCarbanak, the cybercriminal group that robbed more than $1 billion from 100 banks across 30 countries in 2013 and 2014, has been seen once again, and this time, security researchers say they've caught the group in their early… Read More
There Have Been Over 16,000 Software Bugs Detected in 2015In 2015, security researchers from Secunia detected 16,081 vulnerabilities in 2,484 software applications from 263 different vendors. This represents a 2% increase compared to 2014, and a 39% rise compared to 2010. The numbe… Read More
Google, Microsoft, Yahoo Join Forces to Create New Email Encryption ProtocolA group of independent security researchers and major Silicon Valley tech giants have submitted last Friday, March 18, 2016, a proposal for a new email protocol called SMTP STS (Strict Transport Security). STMP has never bee… Read More