• On The Insider: Sexiest Magazine Covers of All Time
April 1, 2008 12:11 PM PDT

Teenage bot herder pleads guilty in New Zealand

Owen Thor Walker, an 18-year-old bot herder from Whitianga, New Zealand, plead guilty on Monday to six charges resulting from a botched botnet upgrade that led to a 2007 denial-of-service attack on the University of Pennsylvania.

Walker plead guilty to two charges of accessing a computer for dishonest purposes; two charges of accessing computer systems without authorization; one of damaging or interfering with computer systems; and one of possessing software for committing a crime. He could face five years in jail. However, according to reports from The New Zealand Herald, Judge Arthur Tompkins is considering Walker's age and cooperation with authorities and could recommend home detention or community service instead. Sentencing will take place May 28.

Walker, who uses the online name "AKill," was arrested last November as part of the FBI's Operation Botroast II, along with Ryan Brett Goldstein, 21, of Ambler, Penn. Walker and Goldstein allegedly caused a distributed denial-of service attack on the University of Pennsylvania this past summer that cost the school nearly $13,000 to mitigate. Apparently the DoS attack was unintentional.

According to various reports, Walker said he was attempting to upgrade his botnet code when a glitch took down his network. A botnet consists of thousands of infected computers worldwide that can spew spam, assist in a denial-of-service attack on a target, or spread new versions of the originating worm. From a central point, called a command and control center, a bot herder can send new code to those infected computers.

After the FBI identified AKill as Walker, it worked with New Zealand authorities who uncovered a series of deposits in the Netherlands. Working with Dutch authorities, investigators pieced together that Walker's botnet had earned an estimated $32,000 from adware vendors. Walker used the money to invest in his parent's taxi cab company, and computer equipment.

Home-schooled, Walker, who is also known online as "Snow Whyte" and "Snow Walker," taught himself computer programming and encryption, and met up with other malware writers online. He may have first contacted Goldstein in an online chat room.

Recent posts from Defense in Depth
High-tech bank robbers phone it in
How 'carders' trade your stolen personal info
Anatomy of a botnet
Column: Raising Cain at Black Hat
Black Hat 2008: Notes from the field
Add a Comment (Log in or register) 5 comments
They need to follow the money.
by stopher2475 April 1, 2008 1:52 PM PDT
If there weren't companies paying this guy, he wouldn't be doing it. The need to follow the money back to the advertising purchasers and prosecute them.
Reply to this comment View reply
take away their money
by firefly5555 April 2, 2008 4:45 PM PDT
ok first of all house arrest? seriously? how about take away ALL of the money he made doing this kind of thing ( hijacking other peoples computers for his own use) rather than a slap on the wrist how about manditory jail time ! mabey equal to the amount of time it takes for a amature to remove the bots from each system times the total amount of computers he infected !! this might slow them down .
as a example my mothers pc was infected today with a bot/hijacker that would not allow her to surf except for their sites plus popups and other scams. she was running the latest norton and a good firewall and never opens attachments over all she is carefull but she got it anyway.
i am good enough that i have created & run my own websites and even a game server that i designed. i build my own pc's but it still took me 3 hrs to fully uninfect her pc .
the reason they do it is if they own a website or 8 they cause your pc to go to their site either thru a bot , hijacker or spam and their website hits go up then they get paid more $ per ad they have on that site.. as to a comment i saw about you cant follow the money .. yes you can thease advertisers are very well known like google ads anyway they do not care who you are only that you get hits on your page thus their ads get seen.
if they were punished even a little they could be forced to report odd traffic patterns like say a website gets 300 hits a week then it goes to 100k a week something happened.
overall the people who do this stuff dont do it for fun (i knew some who did hack for fun) but that was in the 80's when you did things to see what you could do but there was very little money making from it.. what they are doing now is much closer to stealing your pc and using it to make money only they let you keep it at your house :)
Reply to this comment
More appropriate punishment
by Dr_Zinj April 3, 2008 6:36 AM PDT
Forbid him from being home schooled.
Force him to be educated in an american public school system, preferrably in a southern U.S. city.
Forbid him the use of electronics of any kind.
Reply to this comment View reply
Powered by Jive Software
advertisement
Resource center from News.com sponsors
You Need The Speed of Norton 2009
Introducing Norton Internet Security™2009

Click Here!
With one-click, one-minute install, under 8MB of memory usage and fewer, shorter scans, it's the fastest security suite anywhere. Norton. Smart Security, Engineered for Speed. Get a FREE trial today!

Click Here!
The Fastest Security Suite Anywhere

Experience the revolutionary Norton Internet Security™ 2009. With Norton™ Insight, a new feature, you get precision security that targets only at risk files for fewer, faster, shorter scans

Win a Trip to Space!*

Enter the Blast Off with Norton Sweepstakes for your shot at a trip to space. You could experience being fast and weightless, just like the new Norton 2009. *No purchase necessary; click for full details.

FREE Trial!

Act now to get your FREE trial of Norton Internet Security 2009. Try it for the protection. Love it for the speed

Norton Safe Web NEW!

A community-based system that rates web site safety

Norton Labs NEW!

Users can download new security technologies and share input directly with developers. Help us shape our future products!

About Defense in Depth

Covering computer viruses and computer crime, Robert Vamosi goes beyond the hype to provide you with expert interviews of the top security researchers, as well as offering the hands-on, nontechnical advice you'll need to stay safe online.

Add this feed to your online news reader

Defense in Depth topics

Featured blogs

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right