Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

FBI used spyware to catch cable-cutting extortionist

CIPAV spyware helped nab unemployed engineer angry over outsourcing
By Gregg Keizer , Computerworld , 04/20/2009
  • Share/Email
  • Tweet This
  • Comment
  • Print

The FBI used spyware to catch a Massachusetts man who tried to extort Verizon and Comcast by cutting 18 data- and voice-carrying cables in 2005, documents obtained under the Freedom of Information Act by Wired.com revealed yesterday.

Although the man's name was redacted in the documents provided to the Web site, their description of the case matches that of Danny M. Kelly, an unemployed engineer who at the time lived in Chelmsford, Mass. According to federal court records, Kelly was accused of cutting a total of 18 above-ground communications cables between November 2004 and February 2005 as part of a plot to extort money from Verizon and Comcast.

"Kelly sent a series of anonymous letters to Comcast and Verizon, in which he took responsibility for the cable cuts and threatened to continue and increase this activity if the companies did not establish multiple bank accounts for him and make monthly deposits into these accounts," the original complaint read.

According to the complaint, Kelly demanded $10,000 monthly from each company, and told the firms to post the bank account information on a private Web page he demanded they create.

"Both Comcast and Verizon did create the requested private Web pages, in an effort to communicate with the extortionist and to gather information that might identify him," the complaint said. "When Kelly accessed the Web pages, he did so via an anonymizing Web site through which he sought to hide the Internet protocol address of the computer he was using and therefore hide his identity."

The documents obtained by Wired.com said that the FBI obtained a warrant to use a program called Computer & Internet Protocol Address Verifier (CIPAV) to identify Kelly's computer as the one that accessed the extortion Web sites. Details about CIPAV first surfaced in July 2007 in court records related to a case involving a rash of bomb threats e-mailed to a Lacey, Wash. high school. In a filing to the court, an FBI Special Agent said that after getting a warrant, the agency planted CIPAV on a 15-year-old's computer via a link posted to his MySpace page.

CIPAV, said the agent in the affidavit, would "cause any computer -- wherever located -- to send network-level messages containing the activating computer's IP address and/or MAC address, other environmental variables and certain registry-type information to a computer controlled by the FBI."

However, the warrant application did not spell out whether the CIPAV captured keystrokes or injected other code into the compromised system, as do commonplace Trojan downloaders. "The exact nature of [the CIPAV's] commands, processes, capabilities and their configuration is classified as a law enforcement sensitive investigative technique," said the 2007 document.

In Kelly's case, said Wired.com, the FBI was granted a warrant to use CIPAV on Feb. 10, 2005. Later that year, Kelly pleaded guilty to extortion, and was sentenced to five years probation and ordered to pay Verizon $378,000 for the damage he did.

  • Share/Email
  • Tweet This
  • Comment
  • Print

Comments (4)
Login
Forgot your account info?

What are you thinking?By Anonymous on April 20, 2009, 1:40 pmWhat in the world makes you think that exposing tactics used by law enforcement agencies is a good idea? It doesn't really matter whether information about the...

Reply | Read entire comment

Exposing TacticsBy David W on April 20, 2009, 2:24 pmHmmm.... If we allow the government through various agencies to act without supervision by the people, how will we be any different from the societies where the...

Reply | Read entire comment

Government OversightBy Robert on April 20, 2009, 3:04 pmI'd have to agree with David. If we choose not to keep an eye on what the government does, we are not only opening the door to abuse, we're all but actively asking...

Reply | Read entire comment

permission grantedBy Anonymous on April 20, 2009, 3:47 pmThe story says "the FBI was granted a warrant." That means they got permission from a judge.

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed