Michael Calce | |
---|---|
Born | 1984 |
Known for | DDoS Attacks |
Michael Calce (born 1984, also known as MafiaBoy) is a security expert and former computer hacker from Île Bizard, Quebec, who launched a series of highly publicized denial-of-service attacks in February 2000 against large commercial websites, including Yahoo!, Fifa.com, Amazon.com, Dell, Inc., E*TRADE, eBay, and CNN.[1] He also launched a series of failed simultaneous attacks against nine of the thirteen root name servers.[2]
Early life
Calce was born in the West Island area of Montreal, Quebec. When he was five, his parents separated and he lived with his mother after she had won a lengthy battle for primary custody.[2] Every second weekend he would stay at his father's condo in Montreal proper. He felt isolated from his friends back home and troubled by the separation of his parents, so his father purchased him his own computer at the age of six. It instantly had a hold on him: "I can remember sitting and listening to it beep, gurgle and churn as it processed commands. I remember how the screen lit up in front of my face. There was something intoxicating about the idea of dictating everything the computer did, down to the smallest of functions. The computer gave me, a six-year-old, a sense of control and command. Nothing else in my world operated that way."[2]
Project Rivolta
On February 7, 2000, Calce targeted Yahoo! with a project he named Rivolta, meaning "rebellion" in Italian.[2] Rivolta was a DDoS (distributed-denial-of-service) attack in which servers become overloaded with different types of communications to the point where they become unresponsive to commands.[3] At the time, Yahoo! was a multibillion-dollar web company and the top search engine.[4] Mafiaboy's Rivolta managed to shut down Yahoo! for almost an hour. Calce's goal was, according to him, to establish dominance for himself and TNT, his cybergroup, in the cyberworld.[2] Buy.com was targeted in a similar attack afterwards that has been attributed to Calce. Calce claims he was not responsible and that a different hacker performed the DDOS as a challenge to coax him into targeting other websites.[2] Calce responded to this in turn by bringing down eBay, CNN, Amazon, and Dell via DDoS over the next week.[5]
In a 2011 interview,[6] Calce claimed that the attacks had been launched unwittingly, after inputting known addresses in a security tool he had downloaded from a repository on the now defunct file-sharing platform Hotline, developed by Hotline Communications. Calce left for school, forgetting the application which continued the attacks during most of the day. Upon coming home Calce says that he found his computer crashed, and restarted it unaware of what had gone on during the day.[7] Calce claimed that when he overheard the news and recognized the companies mentioned being those he had inputted earlier in the day, he "started to understand what might have happened".[6]
Aftermath
The U.S. Federal Bureau of Investigation and the Royal Canadian Mounted Police first noticed Calce when he started claiming in IRC chatrooms that he was responsible for the attacks. He became the chief suspect when he claimed to have brought down Dell's website, an attack that had not been publicized at that time. Information on the source of the attacks was initially discovered and reported to the press by Michael Lyle, chief technology officer of Recourse Technologies.[8] Australian News Anchor Sandra Sully reported that it was apparently an Australian coder that initiated the sting performed in the IRC channel. unreported using the nickname Ocker.
Calce initially denied responsibility but later pleaded guilty to over 50 charges brought against him.[9][10] His lawyer insisted the child had only run unsupervised tests to help design an improved firewall, whereas trial records indicated the youth showed no remorse and had expressed a desire to move to Italy for its lax computer crime laws.[11] The Montreal Youth Court sentenced him on September 12, 2001 to eight months of "open custody," one year of probation, restricted use of the Internet, and a small fine.[1][12]
Matthew Kovar, a senior analyst at the market research firm Yankee Group, generated some publicity when he told reporters the attacks caused US$1.2 billion in global economic damages.[13] Media outlets would later attribute a then-1.45:1 conversion value of 1.7 billion CAD to the Royal Canadian Mounted Police. Computer security experts now often cite the larger figure[14] (sometimes incorrectly declaring it in U.S. dollars),[15][16] but a published report says the trial prosecutor gave the court a figure of roughly $7.5 million.[11]
Significance
While testifying at a hearing before members of the United States Congress, computer expert Winn Schwartau said that "Government and commercial computer systems are so poorly protected today they can essentially be considered defenseless - an Electronic Pearl Harbor waiting to happen."[17] The fact that the largest website in the world could be rendered inaccessible by a 15-year-old created widespread concern. By this time, the internet had already become an integral part of the North American economy. Consumers lost confidence in online business and the American economy suffered a minor blow as a result.[4] Former CIA agent Craig Guent credits Mafiaboy for the significant increase in online security that took place over the decade.[3]
Later years
During the latter half of 2005, he wrote a column on computer security topics for Le Journal de Montréal.[18]
In late 2008, with journalist Craig Silverman, Calce announced he was writing a book, Mafiaboy: How I Cracked the Internet and Why It's Still Broken.[19][20]
On October 26, 2008, he appeared on the television program Tout le monde en parle to discuss his book.[21][22][23] The book received generally positive reviews.[24]
Calce appeared on a TV show, Last Call with Carson Daly, talking about his days as a hacker, how President Clinton became involved, and how it ultimately landed him in jail all at age 15.[25]
In 2014, Calce appeared on the twelfth episode of the Criminal podcast.[26]
References
- 1 2 FBI Facts and Figure 2003, archived from the original on 2007-03-26, retrieved 2007-03-27
- 1 2 3 4 5 6 Calce, Michael. Mafiaboy: How I Cracked the Internet and Why It's Still Broken. Toronto: Penguin Group, 2008.
- 1 2 Majid, Yar. Cybercrime and Society. Thousand Oaks: Sage Publications, 2006.
- 1 2 Davis, Wall. Crime and the Internet. New York: Routledge, 2001.
- ↑ "'Mafiaboy' will be sentenced in April | IT World Canada News". www.itworldcanada.com. 2001-01-23. Retrieved 2022-04-01.
- 1 2
- ↑
- ↑ Hot On the Trail of Mafiaboy, Wired, 2000-02-15
- ↑ "Mafiaboy given eight months", The Register, 2001-09-13, retrieved 2007-03-27
- ↑ Shapiro, Scott (2023). Fancy Bear Goes Phishing: The dark history of the information age, in five extraordinary hacks (1st ed.). New York: Farrar, Straus and Giroux. p. 252. ISBN 978-0-374-60117-1.
- 1 2 "Prison Urged for Mafiaboy", Wired magazine, 2001-06-20, retrieved 2007-03-27
- ↑ "Mafiaboy given eight months", The Register, 2001-09-13, retrieved 2007-03-27
- ↑ Niccolai, James (2000-02-10), Analyst puts hacker damage at $1.2 billion and rising, InfoWorld, archived from the original on 2007-11-12, retrieved 2007-04-22
- ↑ Harris, James K. (2006), "Ethical Perspectives in Information Security Education" (PDF), Issues in Information Systems, VII (1): 181, archived from the original (PDF) on 2007-09-29
- ↑ Robert, J.M.; Cosquer, F. (2002), "Protecting Data Network Availability" (PDF), Alcatel Telecommunications Review, 2002 (Q3): 2, archived from the original (PDF) on 2007-09-27, retrieved 2007-03-28
- ↑ Dept. of Computing Science, Computer Crime (lecture slides) (PDF), University of Alberta.
- ↑ Winn. "Winn Schwartau – Biography". winnschwartau.com. Archived from the original on 14 May 2017. Retrieved 16 May 2017.
- ↑ "Mafiaboy's columns", Le Journal de Montréal, 2005, archived from the original on 2005-12-03, retrieved 2007-03-27
- ↑ Mafiaboy: How I Cracked the Internet and Why It's Still Broken, 2008, archived from the original on 2008-10-02, retrieved 2008-10-06
- ↑ "Canadian teen hacker reveals secrets in tell-all book". Archived from the original on October 10, 2008. Retrieved 2008-10-09.
- ↑ "Mafiaboy to appear on Tout le monde en parle". Retrieved 2008-10-26.
- ↑ Radio-Canada.ca, Télévision -. "Émission du 26 octobre 2008 - Tout le monde en parle - Radio-Canada.ca". Tout le monde en parle - Radio-Canada.ca. Retrieved 16 May 2017.
- ↑ "CBC News - the Hour with George Stroumboulopoulos". Archived from the original on 2008-12-12. Retrieved 2008-11-24.
- ↑ "Review of Mafiaboy: How I Cracked the Internet and Why It's Still Broken book. YYZtech.ca". Archived from the original on 2009-06-01. Retrieved 2009-06-10.
- ↑ "Last call with carson daly - Michael "Mafia Boy" Calce". www.demonstech.com. Archived from the original on 12 June 2017. Retrieved 16 May 2017.
- ↑ "EPISODE TWELVE: BREAK THE INTERNET (11.25.2014) - Criminal". thisiscriminal.com. Retrieved 16 May 2017.