Go Back   Carder.life > [en] International Forum > Carding News



Reply
 
Thread Tools Display Modes
  #1  
Old 04-23-2025, 01:14 AM

Artifact Artifact is offline
Administrator
Join Date: Jan 2024
Posts: 0
Default



In what security researchers have dubbed one of the biggest card dumps in recent years, more than 1.3 million payment card details have been put up for sale on Joker's Stash, the internet's largest carding shop, ZDNet has learned.
The new upload contains data primarily from Indian cardholders, security researchers at Group-IB told ZDNet today, after spotting the new upload just hours before.
Group-IB said the cards are being sold at a top-tier price of $100/card, putting the hackers on a trajectory of making more than $130 million from their latest haul.
SOURCE OF THE CARDS UNKNOWN
Because the advert for the latest cards was published only hours ago, Group-IB said they hadn't had the time to analyze and look into the source of a possible breach.
Early data analysis suggests the card details may have been obtained via skimming devices, installed either on ATMs or PoS systems.
This is because the card dump includes https://en.wikipedia.org/wiki/Magnet...inancial_cards, usually found on a payment card's magnetic stripe. The presence of this kind of data automatically rules out skimmers installed on websites (Magecart attacks), where Track 1 and Track 2 is never used.
Furthermore, the cards varied wildly in terms of issuing bank, coming from multiple banks, and not just one -- ruling out a compromise of one single bank's ATM system.
"For the moment, Group-IB's Threat Intelligence team has analyzed more than 550K card dumps from the database," Group-IB wrote https://www.group-ib.com/media/bigge...database-ever/ shared exclusively with ZDNet, and which the company plans to publish tomorrow.
"More than 98% belong to Indian banks, 1% - to Colombian, and more than 18% of the 550K cards that have been analyzed so far belong to a single Indian bank," the company added.
In an email, Group-IB told ZDNet that what stood out about today's card dump was its sheer size, with most similar card dumps being much smaller, and usually including card details from all over the world, and not just one. For example, the image below is an ad for a typical Joker's Stash card dump, comprised of data from multiple countries, rather than just one.

Joker's Stash is what security researchers call a "card shop," a term used to describe an online marketplace where criminal groups sell and buy payment card details -- advertised as "card dumps."
Joker's Stash is one of the oldest card shops around, is available on the dark web, and is also known to be the place where major cyber-crime groups like FIN6 and FIN7 both sell card dumps.
Criminals who buy card dumps from Joker's Stash typically use the data to clone legitimate cards and withdraw money from ATMs in so-called "cash outs."
Today's Indian card dump is the third major card dump this year, in terms of size.
In February, card details for 2.15 million Americans were similarly put up for sale on Joker's Stash as part of a card dump nicknamed the "DaVinci Breach."
In August, nearly 5.3 million card details obtained from Hy-Vee customers were also dumped on Joker's Stash.
Two smaller card dumps, of 890,000 and 230,000, were also reported in July and June, both belonging to South Korean users.
However, all the card dumps listed above were released in small batches, over time. This one was published in one go, suggesting the threat actors may want to monetize as many as possible before banks intervene to deploy countermeasures or invalidate cards.
  #2  
Old 04-23-2025, 01:34 AM

Kool15 Kool15 is offline
Join Date: Aug 2023
Posts: 0
Default


Do they sell tracks with PIN or just tracks?
  #3  
Old 04-23-2025, 01:54 AM

elit3 elit3 is offline
Banned
Join Date: Aug 2023
Posts: 0
Default


Quote:
Originally Posted by Biker5663
Do they sell tracks with PIN or just tracks?
Just Tracks
  #4  
Old 04-23-2025, 02:04 AM

am-bog am-bog is offline
Join Date: Mar 2021
Posts: 0
Default


The Base and the million cards are gone. Where could it have gone now?
  #5  
Old 04-23-2025, 02:08 AM

nikkk33 nikkk33 is offline
Join Date: Mar 2022
Posts: 0
Default


100 usd good luck selling all of those 120mill
  #6  
Old 04-23-2025, 02:12 AM

Listwa Listwa is offline
Join Date: Dec 2021
Posts: 0
Default


There is no update or maybe sold somewhere else...
  #7  
Old 04-23-2025, 02:18 AM

dog-pitdulis dog-pitdulis is offline
Join Date: Aug 2023
Posts: 4
Default


....¨suggesting the threat actors may want to monetize as many as possible before banks intervene to deploy countermeasures or invalidate cards¨.....
so it is a matter of time before banks intervene and convert a good dump into useless data.
another form of Russian roulette where you get lucky or not , it would be naive of us to think that banks do nothing about it , remember there is no dark side without its opposite force .



Reply

Tags
NULL


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump




All times are GMT. The time now is 11:39 AM.