The Botnet Revenue Model

Giovanni Bottazzi,Gianluigi Me
DOI: https://doi.org/10.1145/2659651.2659673
2014-01-01
Abstract:Botnets have always been an insidious threat. The development of the "Internet Of Things" and its for-profit exploitation contributed to botnets spread and sophistication, but also to the rise of maturity of both organizations and business models behind them. Cybercrime market had a recent major leap in quality, starting from payload development (malware), sophisticated enough to allow a high degree of customization and polymorphism, subsequently used by organizations more and more structured and specialized to provide real, efficient and profitable criminal cyberservices. The purpose of this paper is to describe the pillars of the supply chain of botnets, in order to highlight that the criminal market behind their spread is mature enough to prefer a revenue model based on service rentals, instead of direct monolithic implementation. We also describe a possible measure of botnets effectiveness in order to identify vulnerabilities. As we will see, an extension of the Pay-Per-Install business model (widely used) throughout the whole supply chain, is the natural evolution of what has already happened in the spread of many botnets, allowing the low-risk growth of other productive borderline sectors. This should be considered, in our opinion, as one of the major concern about the future trends of botnets diffusion and would simply confirm the maturity of this market in its recent meaning of "Cybercrime-As-a-Service".
What problem does this paper attempt to address?