vCTO Secure Blog

vCTO Secure has been serving the Seattle area since 2011, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Would You Pay $10 Grand To Keep Your Website Away From XXX Content?

Would You Pay $10 Grand To Keep Your Website Away From XXX Content?

Have you ever thought about what would happen if your IT administrator were to go rogue and create redirects on your website that take your visitors to inappropriate content? Well, it happened to one unfortunate company in Arizona, and it ended poorly for both parties involved. What started as a ransom ended up as four years of probation and a huge sum of cash paid in restitution.

The technician in question--a man by the name of Tavis Tso, from Arizona--attempted to extort $10,000 dollars from a client in Phoenix. Tso had reportedly told the client that he didn’t have the login information for their domain registrar GoDaddy account, but that was a lie. He certainly did have the information, and to keep them from finding out about it, he changed the contact information in GoDaddy. He had planned to defraud the company--a plan which backfired in a spectacular way. He even went so far as to create a separate Microsoft account so that he could take over the company’s domain.

Tso made it so that the company employees couldn’t access their email accounts, and worse yet, he set up a redirect for the company’s home page that showed up as a blank page. He then demanded that the company hand over $10,000 to make the problem disappear. The victim company made the right call and didn’t give into Tso’s cyber torment. When it became clear that they had no intention of footing the bill for Tso’s treachery, he made the issue much, much worse by redirecting all of the website traffic to an unsavory porn site.

The redirect existed for several days before it was resolved, and Tso was sentenced to four years of probation in addition to $9,145 in restitution on an account of wire fraud. However, the damage done by this rogue IT administrator will be difficult to recover from, regardless of the amount of punishment he receives.

How can your business prepare itself for a disaster scenario like this? You should start by considering how you handle the permissions of any user on your network at any given time. If anyone is terminated or leaves the company for any reason, you should take prompt action to remove any permissions that they have on your network. Ideally, you want to make these precautionary changes before they leave. Do you have any other concerns about your network security? If so, reach out to vCTO Secure at (206) 895-5595.

What Does a SMiShing Attempt Look Like?
Tip of the Week: 4 Ways to Speed Up Your Chrome Br...
 

Comments

No comments made yet. Be the first to submit a comment
Guest
Already Registered? Login Here
Guest
Saturday, 18 May 2024

Captcha Image

Mobile? Grab this Article

QR Code
Dark Web Monitoring

When you visit the Internet, you are more than likely sticking to the pages that can be accessed by typing an address into your browser, or by clicking on a link in a search result.

Find Out More
Contact Us

Learn more about what vCTO Secure can do for your business.

Seattle, Washington

Call us: (206) 895-5595

Protect Your Reputation

With human error causing over 92% of data breaches, we understand the importance of focusing on the weakest link by empowering employees through self-improvement, personal protection, and engaging training that is relate-able, not demeaning.

Find Out More