Skip to navigation
   
Asavin Wattanajantra's Blog

Dark Market and the downfall of an online fraudster

By Asavin Wattanajantra in Editorial

Posted in online fraudster, criminals, card skimmers, fraud, financial on April 24, 2009 at 3:20 pm

Permalink | Author Profile

RSA has pointed me out to this blog post that offers some previously undisclosed information about one of the members of Dark Market, a forum which involved criminals buying and selling credit card data and was shut down by law enforcement.

It shows that although it might be easy to make money as an online fraudster, the law was maybe beginning to catch up on the problem thanks to intelligent detective work.

Chao, real name Cagatay Evyapan, was behind a group called the ‘Crime Enforcers’ - an assembly line of ATM and Point of Sale card skimmers. RSA’s Uri Rivner said that he climbed the ladder of the criminal underground, and that point became a name that all cyber criminals recognised.

Rivner says that Chao stood out as an ‘exceptional’ online fraudster -  he even created instructional videos explaining how to install ATM skimming devices he built and sold.

Instruction video on using ATM skimming devices.

How Chao was caught

Chao was caught through the Dark Market operation as a moderator. Using undercover tactics, FBI agent Keith Mularski pretended he was a fraudster using the handle ‘Master Splynter’.

He was found in Turkey thanks to the Turkish National Police cooperating with several law enforcement agencies around the world, including the FBI. The police found him due to one weak link in the chain - he needed to ship thousands of ATM skimmers around the world.

Thanks to discussions with international shipping companies, it led to the pinpointing of Chao’s whereabouts. They located Chao on the outskirts of Istanbul, put him under surveillance and found his apartment being used as a huge assembly line for card skimming devices.

Seven ‘Crime Enforcers’ were arrested, including people helping him with the manufacturing and his cashier.

The result of the raid

The Turkish police found 1,000 ATM skimming devices, 2000 fake PIN pads, and a large amount of fake Point of Sale devices - the ones you use in restaurants.

Rivner said that a single ATM skimmer could record one hundred withdrawals a day - using a ‘conservative’ estimate of $1,000 per compromised card that is potential damage of 100 million dollars a day.

If it takes ten days for the device to be discovered that’s a potential one billion dollars of potential fraud.

So the rewards are great - but as Chao’s arrest shows, maybe there is light at the end of tunnel thanks to worldwide law enforcement cooperation.

But as Uri says, as soon as Chao was caught, other have taken his place.

12345
Not yet rated
Loading ... Loading ...

 

Teenage hackers becoming a real threat

By Asavin Wattanajantra in Editorial

Posted in cybercrime, financial, hacking, internet on October 28, 2008 at 9:40 am

Permalink | Author Profile

According to security experts, teenage hacking is becoming a real threat when it comes to cyber crime.

Professionals have indicated that forums such as that of Dark Market which was taken down recently, are starting to be populated by teenagers who are looking to swap credit card data as well as the hacking and phishing kits which is used to collect it.

As these teenagers are not as well trained as professionals who may well do this for a living, they are more likely to get caught as well as pick up a criminal record, which will really hurt them if further down the line, they want to have a career in IT.

The first steps are simply to look for cracks and exploits for computer games, for example to run computer games which they haven’t paid for. Although many kids do this, it is nevertheless illegal.

Then it is likely they’ll graduate to more serious crime, such as swapping programs and malicious data, and further on targeting social networking sites with exploits and virus code.

IT PRO talked to Billy Hoffman at RSA Europe, who works in

12345
Rated: 20% (1 votes)
Loading ... Loading ...

 

   
Tag cloud

Microsoft research instant messaging traffic ENISA growth pride filters World of Warcraft malware Mafia Wars spam hackers morph sony playstation Nintendo Sega Sinclair Spectrum gaming Mario Sonic sightings death hatred Google Maps military nokia Clampi virtual worlds Mario journalism phone Hitwise brain IM mobile IT PRO trend micro robots staff hack fun social media credit card data tech funny status James Bond science RPG tool Amazon Kindle old school Fraud Christmas broadband Nintendo brainwaves kill top ten tips paranoia Scrabble uSwitch music alibi Mozilla pirate hype fire internet alcohol SQL injection Facebook Apple Google Street View satnav Twitpocalypse poking cyber crime Republicans ASA future Friendfeed control streaming FBI Lewis hamilton Second Life video opinion multimedia Star Trek remote working flexible working lapto Sega hacking Kaminsky website Terminator data breaches BERTI Digg Farmville flashmob bendy browser Flurry app Daily Mail phishing Sonic David Blunkett password legal feed vote worm pod casting university of portsmouth video games medials Google Reader downloading DNS Steve Jobs government YouTube Firefox ducks NHS rickrolling Klingon Twitter Bill Gates crime map Google eBooks software surveillance flaw teenagers Sophos RSS Pirate Bay Transformers cybercrime Wherecloud privacy Spotify Black Hat Beijing illegal ID cards unlimited crime Google MMORPG Cisco Digital Britain swear words news DNSSEC replies Olympics offline update BlackBerry smartphone iPhone Dark Market human clones PR murder
Advertisement
Advertisement