Feeds

Hacker behind P2P botnet gets no jail time

Turns to good after spawning Nugache

Internet Security Threat Report 2014

A hacker who confessed he created one of the world's first botnets to use peer-to-peer technology won't spend any time in prison because of the assistance he's provided to prosecutors.

Jason Michael Milmont, 20, of Cheyenne, Wyoming, was sentenced on Tuesday to five years of supervised probation and a year of home confinement. US District Judge William Downes of Casper, Wyoming also ordered him to pay almost $37,000 in restitution. The relatively lenient sentence - he faced a maximum five years in federal prison and a $250,000 fine - came in exchange for help he's provided prosecutors since pleading guilty.

"This young man has quite a bit of talent and we asked that he turn that talent toward good," said John Powell, a spokesman for the US Attorney's office in Cheyenne. "He's helped us somewhat toward that."

Last year, Milmont admitted to creating the so-called Nugache Worm, which spawned one of the first botnets to use a decentralized system to send instructions to drones, according to security researcher Dave Dittrich. The peer-to-peer mechanism was considered a break-through because it eliminated the need for a single master control channel. That made it much harder to shut down the botnet.

Milmont used AOL instant messenger and modified Limewire installation programs to spread Nugache. Once clicked on, the malware made unwitting users part of a botnet, which Milmont used to steal user names, passwords. and account numbers of those who were infected.

According to a plea agreement penned by Milmont, he also used the botnet to mount distributed denial-of-service attacks against an unnamed online business located in the Los Angeles area. The agreement went on to document the way he used credit card and other information to order merchandise that he had shipped to vacant homes in Cheyenne. ®

Secure remote control for conventional and virtual desktops

More from The Register

next story
Knock Knock tool makes a joke of Mac AV
Yes, we know Macs 'don't get viruses', but when they do this code'll spot 'em
Feds seek potential 'second Snowden' gov doc leaker – report
Hang on, Ed wasn't here when we compiled THIS document
Why weasel words might not work for Whisper
CEO suspends editor but privacy questions remain
DEATH by PowerPoint: Microsoft warns of 0-day attack hidden in slides
Might put out patch in update, might chuck it out sooner
BlackEnergy crimeware coursing through US control systems
US CERT says three flavours of control kit are under attack
prev story

Whitepapers

Why cloud backup?
Combining the latest advancements in disk-based backup with secure, integrated, cloud technologies offer organizations fast and assured recovery of their critical enterprise data.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
New hybrid storage solutions
Tackling data challenges through emerging hybrid storage solutions that enable optimum database performance whilst managing costs and increasingly large data stores.
Getting ahead of the compliance curve
Learn about new services that make it easy to discover and manage certificates across the enterprise and how to get ahead of the compliance curve.