Occurred: July 2016
Report incident 🔥 | Improve page 💁 | Access database 🔢
Discovered in 2016 by Gartner analyst Avivah Litan, Delilah is the first known 'insider' threat bot.
Spread through downloads on multiple adult and gaming sites, 'Delilah', the bot likely uses a combination of social engineering and automated ransomware to enable its operators to capture footage of victims through their webcams, which can then be used to blackmail or extort the victim or convince them to carry out actions that would harm their employer.
According to Litan, 'Once installed the hidden bot gathers enough personal information from the victim so that the individual can later be manipulated or extorted. This includes information on the victim's family and workplace.'
Delilah
Operator:
Developer:
Country: Global
Sector: Banking/financial services
Purpose: Defraud
Technology: Reinforcement learning
Issue: Accountability; Ethics/values; Security; Transparency
Gartner (2016). Meet Delilah – the first Insider Threat Trojan
https://www.securityweek.com/new-trojan-helps-attackers-recruit-insiders/
https://www.scmagazine.com/brief/delilah-trojan-seeks-company-weaknesses-through-insiders
https://www.theregister.com/2016/07/18/first_insider_theft_extortion_trojan_found/
https://www.zdnet.com/article/this-webcam-malware-could-blackmail-you-into-leaking-company-secrets/
Page info
Type: System
Published: August 2023