#SecChat $1 million guarantee 12 Scams of Christmas access to live fraud resolution agents Acquisition Alex Thurber Android antivirus Apple botnet Channel Partners cloud security Compliance Consumer counter identity theft credit card fraud and protection credit fraud alerts credit monitoring credit monitoring and resolution critical infrastructure Cyber Security Mom cyberbullying Cybercrime cybermom data breach data center data center security Data Protection Dave DeWalt DLP Email & Web Security embedded encryption Endpoint Protection enterprise facebook fake anti-virus software Family Safety Friday Security Highlights global threat intelligence google government Hacktivism how to talk to kids how to talk to teens identity fraud identity fraud scams identity protection identity protection $1 million guarantee identity protection fraud identity protection surveillance identity surveillance identity theft identity theft expert identity theft fraud identity theft protection identity theft protection product Identity thieves and cybercriminals intel iphone kids online behavior lost wallet protection malware McAfee McAfee Channel McAfee Family Protection McAfee Identity Protection McAfee Initiative to Fight Cybercrime McAfee Labs McAfee security products Mid-Market Mobile mobile malware mobile security monitor credit and personal information Network Security online personal data protection online safety Operation Aurora PCI personal identity theft fraud personal information loss personal information protection phishing privacy proactive identity protection proactive identity surveillance Public Sector restore credit and personal identity Risk and Compliance scam scams scareware security smartphones social media social networking social networks spam Stuxnet twitter vulnerability Web 2.0 work with victim restore identity
|
|
Carder.cc is a German online forum dedicated to helping criminals in trading stolen credit card and login details obtained via their carding or phishing activities. Because such forums are a source of income for their administrators (who are also involved in this black market), the best-known forums are forever engaged in underground infighting to stay atop the heap. If a competitor can demonstrate that another forum is insecure, the former can win market share.
This is the likely cause that some individuals hacked the carder.cc forum and posted on a public file-sharing network the results–including information about thousands of forum members and, in many cases, their passwords.

Perhaps the most interesting exposed file is a RAR that contains a dump of the forum and a tool allowing the curious to reconstitute site for browsing with administrator rights.
First of all, we find data about the four administrators, their emails, and when they joined the group:

Following the link, we see the IP for each member (a real or fake IP, depending on the use of an anonymizer) and the function title (KRON0S is the “God of Carders”; Zagerus is “Techadmin”).
Besides the four administrators, by browsing the member list we find:
Age, nationality, and other personal data are sometimes mentioned. Websites, ICQ, AOL Messenger, Yahoo Messenger, and MSN contacts are also noted. No doubt these data will interest law enforcement agencies in their inquiries.

Most of the offers available in the various forum areas are linked to standard carding and botnet businesses. However, some of them were less common: I noted a Secondlife account with 65000 Lidendollars (about US$60), some $50 iTunes gift cards ($20 each), and a forged papers factory (about $1,000 for each falsified document).

Visiting this forum shows the identity theft market is plenty healthy. The number of free payment accounts that include the full identity of each victim–offered here to attract customer interest–gives us the proof. I made a search for French victims. The next screenshot gives only a brief outline.
|
|
Submit your own comments / message for this post