Aleksandr Andreevich Panin was jailed for nine-and-a-half years in the United States in 2016 for infecting banks by spyware that led to losses of about $1 billion. Courtesy: Interpol
Aleksandr Andreevich Panin was jailed for nine-and-a-half years in the United States in 2016 for infecting banks by spyware that led to losses of about $1 billion. Courtesy: Interpol
Aleksandr Andreevich Panin was jailed for nine-and-a-half years in the United States in 2016 for infecting banks by spyware that led to losses of about $1 billion. Courtesy: Interpol
Aleksandr Andreevich Panin was jailed for nine-and-a-half years in the United States in 2016 for infecting banks by spyware that led to losses of about $1 billion. Courtesy: Interpol

The private hackers taking on cyber criminals


Paul Peachey
  • English
  • Arabic

By day, he earns a living making parts for French power plants. By night, he is a lone fighter armed with a laptop taking on Russian organised cyber crime gangs.

For a decade, the 27-year-old – under his nom de guerre Xylitol - has pitted his wits against increasingly sophisticated Eastern European groups who have plundered billions from banks and held businesses to ransom after cracking into their systems.

The former hacker says his home-based efforts – for which he is not paid - have led to “multiple arrests” in concert with private cyber security firms and international law enforcement. In response, the amateur cyber-sleuth has been threatened and targeted by criminals in what he calls “information warfare” to muddy his reputation.

So high are the stakes and the ferocity of the battle, that Xylitol takes care with his personal security and gives only vague details of where he lives in France, close to the Swiss border. "To live happy, live hidden," he said in an email to The National.

But the challenge he, and the rest of the cyber security industry, faces is huge and growing from so-called banking Trojans, named after the deception used by Greek soldiers hidden inside the belly of a wooden horse, according to police.

The malicious software or 'malware' relies on users being tricked into loading the virus on their computers, which then allows the gangs to spy and steal their private banking information.

Russian-speaking gangs seeking to plunder bank details represent the biggest cyber crime threat to the UK, with top tier criminals using techniques that match the sophistication of elite national agencies, according to British police in its latest annual threat assessment.

The use of similar software by different crime groups has suggested that they are “working more closely together than previously assessed” rather than in direct opposition, said Britain’s National Crime Agency.

“The threat from cyber crime to the UK continues to evolve in terms of its complexity,” it said. “Russian language OCGs [organised crime groups] behind financial Trojans present the biggest cyber crime threat to the UK.

“They are just one of a broader range of forms of malicious software (malware) designed to disrupt, damage or gain unauthorised access to a victim’s device.”

Ranged against them is a public-private coalition of law enforcement agencies, private security firms and individuals such as Xylitol.

The authorities have had success against a small number of the perpetrators, who have been foolish enough to travel outside of their protected zone in Russia on holiday to jurisdictions where they faced arrest and extradition.

Hamza Bendelladj, nicknamed the 'smiling hacker', hacked banks and financial companies worldwide, amassing huge amounts in illicit earnings. AFP
Hamza Bendelladj, nicknamed the 'smiling hacker', hacked banks and financial companies worldwide, amassing huge amounts in illicit earnings. AFP

They included Russian Aleksandr Andreevich Panin, who was jailed for nine-and-a-half years in the United States in 2016, after being arrested in Atlanta, Georgia, while passing through on an international flight.

He and partner-in-crime Algerian Hamza Bendelladj used a virus package known as SpyEye that is believed to have infected more than 50 million computers worldwide and cost global banks some $1 billion, according to the US department of justice.

The pair used the malware themselves but also sold it for up to $10,000 a time to other criminals. While private sector companies and law enforcement were trying to identify the two men behind the scam, Xylitol targeted their sales operation, posting copied versions of the malware on to hacker sites, rendering them worthless. As the criminals revamped their code, so did Xylitol, in a relentless game of cat-and-mouse.

The two men were arrested and jailed. Bendelladj, who was picked up in Thailand, was jailed for 15 years.

There are one or two of these chaps who have made a mistake of going on holiday where there are places with extradition treaties. The vast majority have not and will not

The man accused of providing them with an older version of the malware, Evgeniy Mikhailovich Bogachev, is believed to be in Russia and has eluded the efforts of US police since 2012 to capture him. He is suspected of being responsible for a similar banking trojan known as GameOver ZeuS that netted more than $100m.

The FBI has a list of ‘most wanted’ cyber criminals that are dominated by Russians and Iranian hackers. Mr Bogachev has a $3 million reward on his head.

“There are one or two of these chaps who have made a mistake of going on holiday where there are places with extradition treaties,” said a senior British cyber security expert, who declined to be named because of the sensitivity of his work. “The vast majority have not and will not.”

The warnings come as Europol, the European policing agency, has warned that technological advances in artificial intelligence and the roll out of the 5G network will have a “profound impact” on the criminal landscape.

By 2021, customers using mobile phone banking apps will outstrip those turning up in UK branches, according to a consultancy Caci. Yet a report by a US-based consultancy, Arxan, in April found there was a “systemic problem” in banking apps it tested and identified “severe vulnerabilities” that opened them to threat of criminal takeover.

The National first contacted Xylitol five years ago via another French former hacker who was recommended by a senior British cyber security official.

“I still do the same things, just it's not the same threats and same actors as five years ago,” he said this week.

He pointed to messages by sellers of bank hacking kits that indicated they were wary of his abilities to disrupt their operations following the Bendelladj case. “Remember Xylitol is somewhere,” one seller wrote in a message discovered by Xylitol and posted on his Twitter feed.

“Actors of today who write banking trojans learned from previous arrests,” he said. “Now they try to stay under the radar.”

Company%20Profile
%3Cp%3E%3Cstrong%3ECompany%20name%3A%20%3C%2Fstrong%3ENamara%0D%3Cbr%3E%3Cstrong%3EStarted%3A%20%3C%2Fstrong%3EJune%202022%0D%3Cbr%3E%3Cstrong%3EFounder%3A%20%3C%2Fstrong%3EMohammed%20Alnamara%0D%3Cbr%3E%3Cstrong%3EBased%3A%20%3C%2Fstrong%3EDubai%20%0D%3Cbr%3E%3Cstrong%3ESector%3A%20%3C%2Fstrong%3EMicrofinance%0D%3Cbr%3E%3Cstrong%3ECurrent%20number%20of%20staff%3A%20%3C%2Fstrong%3E16%0D%3Cbr%3E%3Cstrong%3EInvestment%20stage%3A%20%3C%2Fstrong%3ESeries%20A%0D%3Cbr%3E%3Cstrong%3EInvestors%3A%20%3C%2Fstrong%3EFamily%20offices%0D%3Cbr%3E%3C%2Fp%3E%0A
New Zealand 15 British & Irish Lions 15

New Zealand 15
Tries: Laumape, J Barrett
Conversions: B Barrett
Penalties: B Barrett

British & Irish Lions 15
Penalties: Farrell (4), Daly

Ain Dubai in numbers

126: The length in metres of the legs supporting the structure

1 football pitch: The length of each permanent spoke is longer than a professional soccer pitch

16 A380 Airbuses: The equivalent weight of the wheel rim.

9,000 tonnes: The amount of steel used to construct the project.

5 tonnes: The weight of each permanent spoke that is holding the wheel rim in place

192: The amount of cable wires used to create the wheel. They measure a distance of 2,4000km in total, the equivalent of the distance between Dubai and Cairo.

COMPANY PROFILE
Name: Akeed

Based: Muscat

Launch year: 2018

Number of employees: 40

Sector: Online food delivery

Funding: Raised $3.2m since inception 

Jawan
%3Cp%3E%3Cstrong%3EDirector%3A%20%3C%2Fstrong%3EAtlee%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStars%3A%3C%2Fstrong%3E%20Shah%20Rukh%20Khan%2C%20Nayanthara%2C%20Vijay%20Sethupathi%26nbsp%3B%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%20%3C%2Fstrong%3E4%2F5%3C%2Fp%3E%0A
TRAP

Starring: Josh Hartnett, Saleka Shyamalan, Ariel Donaghue

Director: M Night Shyamalan

Rating: 3/5

The Sand Castle

Director: Matty Brown

Stars: Nadine Labaki, Ziad Bakri, Zain Al Rafeea, Riman Al Rafeea

Rating: 2.5/5

Heather, the Totality
Matthew Weiner,
Canongate 

Gran Gala del Calcio 2019 winners

Best Player: Cristiano Ronaldo (Juventus)
Best Coach: Gian Piero Gasperini (Atalanta)
Best Referee: Gianluca Rocchi
Best Goal: Fabio Quagliarella (Sampdoria vs Napoli)
Best Team: Atalanta​​​​​​​
Best XI: Samir Handanovic (Inter); Aleksandar Kolarov (Roma), Giorgio Chiellini (Juventus), Kalidou Koulibaly (Napoli), Joao Cancelo (Juventus*); Miralem Pjanic (Juventus), Josip Ilicic (Atalanta), Nicolo Barella (Cagliari*); Fabio Quagliarella (Sampdoria), Cristiano Ronaldo (Juventus), Duvan Zapata (Atalanta)
Serie B Best Young Player: Sandro Tonali (Brescia)
Best Women’s Goal: Thaisa (Milan vs Juventus)
Best Women’s Player: Manuela Giugliano (Milan)
Best Women’s XI: Laura Giuliani (Milan); Alia Guagni (Fiorentina), Sara Gama (Juventus), Cecilia Salvai (Juventus), Elisa Bartoli (Roma); Aurora Galli (Juventus), Manuela Giugliano (Roma), Valentina Cernoia (Juventus); Valentina Giacinti (Milan), Ilaria Mauro (Fiorentina), Barbara Bonansea (Juventus)

Wicked: For Good

Director: Jon M Chu

Starring: Ariana Grande, Cynthia Erivo, Jonathan Bailey, Jeff Goldblum, Michelle Yeoh, Ethan Slater

Rating: 4/5

WHAT IS GRAPHENE?

It was discovered in 2004, when Russian-born Manchester scientists Andrei Geim and Kostya Novoselov were experimenting with sticky tape and graphite, the material used as lead in pencils.

Placing the tape on the graphite and peeling it, they managed to rip off thin flakes of carbon. In the beginning they got flakes consisting of many layers of graphene. But when they repeated the process many times, the flakes got thinner.

By separating the graphite fragments repeatedly, they managed to create flakes that were just one atom thick. Their experiment led to graphene being isolated for the very first time.

In 2010, Geim and Novoselov were awarded the Nobel Prize for Physics. 

Our legal consultant

Name: Hassan Mohsen Elhais

Position: legal consultant with Al Rowaad Advocates and Legal Consultants

Emergency

Director: Kangana Ranaut

Stars: Kangana Ranaut, Anupam Kher, Shreyas Talpade, Milind Soman, Mahima Chaudhry 

Rating: 2/5

Paatal Lok season two

Directors: Avinash Arun, Prosit Roy 

Stars: Jaideep Ahlawat, Ishwak Singh, Lc Sekhose, Merenla Imsong

Rating: 4.5/5

MEYDAN RESULTS

6.30pm Baniyas (PA) Group 2 Dh125,000 (Dirt) 1,400m

Winner ES Ajeeb, Sam Hitchcock (jockey), Ibrahim Aseel (trainer).          

7.05pm Maiden (TB) Dh165,000 (D) 1,200m

Winner  Galaxy Road, Antonio Fresu, Musabah Al Muhairi.

7.40pm Maiden (TB) Dh165,000 (D) 1,400m

Winner  Al Modayar, Fernando Jara, Ali Rashid Al Raihe.

8.15pm Handicap (TB) Dh170,000 (D) 1,900m

Winner  Gundogdu, Xavier Ziani, Salem bin Ghadayer.

8.50pm Rated Conditions (TB) Dh240,000 (D) 1,600m

Winner George Villiers, Tadhg O’Shea, Satish Seemar.

9.25pm Handicap (TB) Dh175,000 (D)1,200m

Winner  Lady Parma, Connor Beasley, Satish Seemar

10pm Handicap (TB) Dh165,000 (D) 1,400m

Winner Zaajer, Fernando Jara, Ali Rashid Al Raihe

MATCH INFO

Day 2 at the Gabba

Australia 312-1 

Warner 151 not out, Burns 97,  Labuschagne 55 not out

Pakistan 240 

Shafiq 76, Starc 4-52

Who's who in Yemen conflict

Houthis: Iran-backed rebels who occupy Sanaa and run unrecognised government

Yemeni government: Exiled government in Aden led by eight-member Presidential Leadership Council

Southern Transitional Council: Faction in Yemeni government that seeks autonomy for the south

Habrish 'rebels': Tribal-backed forces feuding with STC over control of oil in government territory

Janet Yellen's Firsts

  • In 2014, she became the first woman to lead the US Federal Reserve 
  • In 1999, she became the first female chair of the White House Council of Economic Advisers