Access member only content, take part in discussions with comments on blogs, news and reviews and receive all the latest security industry news directly to your inbox. Join now for free.
Processing registration... Please wait.
This process can take up to a minute to complete.
A confirmation email has been sent to your email address - SUPPLIED EMAIL HERE. Please click on the link in the email to verify your email address. You need to verify your email before you can start posting.
If you do not receive your confirmation email within the next few minutes, it may be because the email has been captured by a junk mail filter. Please ensure you add the domain @scmagazine.com.au to your white-listed senders.
NSW Police has appropriated material from criminal credit card trading forums as training manuals in its fight against credit card fraud.
Detective inspector Bruce van der Graaf described a thriving, organised marketplace for stolen identity and credit card details at SC Magazine’s ‘Security on the Move’ event in Sydney today.
Although international law enforcement has eyed credit card fraud, or ‘carding’, for the past decade, thieves continue to operate on private networks and overt online forums.
Van der Graff played a recruitment video by Russian hacker ‘PlayBoy’ that spruiked the ease, lifestyle and financial rewards of credit card fraud.
He highlighted alleged TJX hacker Albert Gonzalez’s $75,000 birthday party and Ukrainian carder Maksim Yastremskiy, whose criminal activities reportedly yielded more than $11 million.
“The money that this type of person can make – and [Gonzalez] wasn’t a particularly good coder himself, he got other people to do his technical work for him – is ridiculous,” van der Graaf said.
“What he was is a man with a hacking mentality who looked for exploits.”
Locally, NSW Police strike forces Keaver, Baywood and Cranbrook have uncovered carders who were linked to illegal drugs, outlaw motorcycle gangs and Eastern European carding cartels.
One Lithuanian hacker, arrested in March last year, had gained access to a medical records database that housed records for several healthcare providers in Sydney.
That database gave him access to Government-issued Medicare numbers, dates of birth, full names and addresses of patients.
“There are plenty of young Aussies out there – we’ve arrested a couple this year and have got a few on the boiler – who are involved in carding,” he said.
Law enforcement were challenged by decentralised, organised, international carding syndicates with Australian or American teams that went shopping with stolen card details within ten minutes of their theft.
Forums like carder.org, CarderPlanet and the International Association for the Advancement of Criminal Activity (IAACA) also offered “very good” manuals for identity theft
Van der Graaf said they made “very good Police training manuals”, noting that NSW Police’s cybercrime fighters had a few of those hacker documents in their offices.
“It’s that easy for a young person to find these [carding] sites with a little bit of guidance and get involved in it and try and avoid law enforcement attention,” he said.
“There is a market, and people involved in the hacking are not cashing out.”
To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.