South Korean ISP KT Caught Infecting Torrent Users With Malware

from the very-dumb-ideas dept

You might recall that “way back” in 2007 Comcast here in the U.S. was caught throttling BitTorrent uploads and subsequently lying about it. Since BitTorrent was popular, hoovering up network resources, and posed a threat to traditional cable TV, Comcast execs thought their best approach would be to make an entire file transfer system less efficient. And then lie repeatedly about it.

17 years later and things are notably different. BitTorrent piracy isn’t as popular thanks to the rise of affordable streaming options. Networks are significantly more robust, and network congestion management is far more intelligent and way less intrusive. The network neutrality debate (and inconsistent rules) have also required ISPs be a bit more transparent about network management.

Which is why it’s all the more weird to see South Korean ISP KT engaging in some historically ignorant behavior. The ISP was recently caught infecting more than half a million of its subscribers with a malware specifically designed to interfere with Torrent traffic and spy on users:

“The Gyeonggi Southern Police Agency, which carried out the raid and investigation, believes this was an organized hacking attempt. A dedicated KT team allegedly planted malware to eavesdrop on subscribers and interfere with their private file transfers…police have already identified more than a dozen persons of interest, who have been referred to the prosecutor.”

The attack took place in May of 2020, and while the investigation is ongoing, it’s presumed that KT was trying to cut down on costs. The source reporting suggests that KT executives viewed BitTorrent (which again can be used for things other than piracy) as malware itself and decided, foolishly, to respond in kind.

While the network usage by piracy is still very manageable on any well-run network, there has been a steady uptick in piracy lately as streaming companies charge more and more money for worse service (humans, if you hadn’t noticed, aren’t great at learning from history or experience). Still, modern network management gear should more than handle the congestion, making the use of malware extreme.

Keep in mind that KT operates in an environment of regulatory capture in South Korea. A few years ago, Korean telecoms convinced gullible regulators to pass a new “sender pays” regulatory framework wherein edge providers and content companies like Google and Netflix are forced to pay telecoms additional fees just to have their traffic successfully reach its destination (consumers).

It’s driven up costs for everyone, and driven some such services, like Twitch, completely out of Korea. It also resulted in KT suing Netflix back in 2021, claiming that the streaming company owed it money simply because the “Squid Game” TV show was so popular. The Internet Society has explained in detail why this approach is terrible for markets and consumers, but that hasn’t stopped ever-greedy telecoms from pushing corrupt lawmakers to implement the same approach in both the U.S. and EU.

When you’re already operating in an environment of limited regulatory accountability, I’d wager you’re not as likely to think that infecting your own subscribers with malware will result in any meaningful repercussions. South Korean law enforcement, apparently, had other ideas.

Filed Under: , , , ,
Companies: kt

Rate this comment as insightful
Rate this comment as funny
You have rated this comment as insightful
You have rated this comment as funny
Flag this comment as abusive/trolling/spam
You have flagged this comment
The first word has already been claimed
The last word has already been claimed
Insightful Lightbulb icon Funny Laughing icon Abusive/trolling/spam Flag icon Insightful badge Lightbulb icon Funny badge Laughing icon Comments icon

Comments on “South Korean ISP KT Caught Infecting Torrent Users With Malware”

Subscribe: RSS Leave a comment
4 Comments
Anonymous Coward says:

A few years ago, Korean telecoms convinced gullible regulators to pass a new “sender pays” regulatory framework wherein edge providers and content companies like Google and Netflix are forced to pay telecoms additional fees just to have their traffic successfully reach its destination (consumers).

This is actually … a huge misrepresentation. It’s not Google and Netflix traffic so much as… their responses to customer requests. AKA they aren’t initiating the data send, they are giving people data the people asked for.

So it is much more appropriate to call it Google and Netflix customer’s traffic that they are paying for (doubly or more so, since they ALREADY pay for internet uplinks, and the customers also pay for internet connection).

Add Your Comment

Your email address will not be published. Required fields are marked *

Have a Techdirt Account? Sign in now. Want one? Register here

Comment Options:

Make this the or (get credits or sign in to see balance) what's this?

What's this?

Techdirt community members with Techdirt Credits can spotlight a comment as either the "First Word" or "Last Word" on a particular comment thread. Credits can be purchased at the Techdirt Insider Shop »

Follow Techdirt

Techdirt Daily Newsletter

Ctrl-Alt-Speech

A weekly news podcast from
Mike Masnick & Ben Whitelaw

Subscribe now to Ctrl-Alt-Speech »
Techdirt Deals
Techdirt Insider Discord
The latest chatter on the Techdirt Insider Discord channel...
Loading...