Illuminating Mysteries of the Dark Web for SMB


by Chris Bianco, TeamLogic IT – Myrtle Beach

Today’s headlines blare news of major data breaches of large organizations seemingly every day. In fact, a recent report by the international digital security firm Gemalto shows during the first six months of 2018 more than $4.5 billion records were compromised, an increase of 133 percent over the same period last year. And per the latest study by IBM Security and the Ponemon Institute, the cost to businesses for every breach of 1 million to 50 million records lost ranges from $40 million to $350 million per incidence, with batches of information from the health care and financial services industries fetching the highest prices per record.

Who’s losing all these records? While more than three quarters of compromised data came from breaches of social media giants including Facebook and Twitter, small- to midsized-businesses (SMBs) should not rest easy. Our own research review indicates more than half (55 percent) of SMBs surveyed reported experiencing some sort of cyberattack and/or data breach during the last 12 months.

Where is all this stolen data going? Mostly to the dark web, which functions like a virtual black market for illegitimately captured information. Various nefarious parties go there to buy or sell records for typically malicious purposes. Google’s definition of the dark web is: A collection of websites that exist on an encrypted network and cannot be found by using traditional search engines or visited by using traditional browsers.

To cast some light on this mysterious realm for our readers, we turned to a recent post by Wanda Archy, a threat intelligence specialist with the independent, nonprofit, cybersecurity association ISACA. Here’s a dark web primer we skimmed from Archy’s work:

  • Why do cybercrooks use the dark web? Because it’s a “internet that is inaccessible by conventional search engines and requires special anonymizing software to access.”

  • What kind of sites reside on the dark web? The difference between the dark web and the internet most of us frequent isn’t so much the type of sites – e.g., you’ll find “… marketplaces, forums, search engines, paste sites, social media sites, and chat rooms ...” featured there – as their illicit missions.

  • What sort of data is most popular on the dark web? Archy gave four core classes of information:

  1. Personal: Everything from names, addresses, Social Security Numbers (SSN), dates of birth, and even an associated Starbucks account.

  2. Financial: Credit and debit cards are sold across many forums and marketplaces; tax forms also are popular.

  3. Health: Health records, which typically combine personal and financial data, are a growing concern and vulnerability.

  4. Miscellaneous: “Drugs are everywhere on the dark web – you can purchase virtually any prohibited item imaginable,” Archy writes. Also, damaging information – e.g., “stolen information from the extramarital dating website Ashley Madison” – is available. Plus, one can purchase an exploit or the services of a hacker to carry out cyberattacks.

  • How do dark players use the dark web? Archy identified five main “threat actors” in her column:

  1. Nation-states pursuing reconnaissance and espionage purposes.

  2. Cybercriminals using marketplaces for monetary benefit.

  3. Hacktivists campaigning for social or political causes.

  4. Terrorists seeking to spread propaganda and recruitment messages.

  5. Insiders motivated by a variety of factors, oftentimes leaking sensitive data as reprisal against an employer or for financial gain.

TeamLogicIT of Myrtle Beach offers dark web monitoring and other threat assessment services. Contact us today.



About TeamLogic IT – Myrtle Beach 
From user end-points such as laptops, desktops and smartphones to servers, virtualization, cloud computing and IT optimization - TeamLogic IT covers your entire network both onsite and off premise so your data is there for you, when you need it. Their managed IT services are provided by an engineering team that is not only highly skilled, but constantly upgrading their own certifications in the dynamic and ever-changing technology field to better serve you. To learn how TeamLogic IT can help your business, visit or call 803-232-9200.