Jump to content

Ukraine crime folk testing valid card numbers on CC store


SimChris

Recommended Posts

Hi folks

we've had this happen couple of times over past few years with CC, which appears to be a little bit of a target for this activity since there is no option built in to block account signup/carts based on IP lookup (CC is not the only cart so 'afflicted' but many other cart systems have a way to block this behavior; even my WordPress installs have a way to block this with plugin).

Today we had a Ukraine outfit running over 100 stolen MasterCard numbers to help determine which ones were "usable" ... and they did find one.

Luckily we sell services, not downloads or anything else, so I double check all orders personally out of paranoia. Nothing they can do on our system once they "make it through" with valid card pass.

We had to manually block their IP range via the server side firewall, for this entire range in the Ukraine:

77.52.0.0/18

This kind of thing typically seems to happen around holidays (happened 2 years ago at this time), and all the stolen cards are MasterCard numbers.

Thought I'd share this with anybody else who generally runs in "paranoia" mode this time of the year.

Happy Holidays!

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...