Jon Crowcroft, a Cambridge professor and the lead CRN researcher on the problem, noted that if botnet "herders," the term given to attackers who control large numbers of bot-infected PCs, turn to VoIP applications for command and control, security experts might find it impossible to trace back an attack to the perpetrator. Current practice by most botnet herders is to issue commands to their armies of "zombie" machines over IRC (Internet Relay Chat) channels, or less frequently, via instant messaging (IM).
The link for this article located at Information Weeky is no longer available.