How Hackers Jack Your Credit Card When You Shop Online🎙Darknet Diaries Ep. 52: Magecart

How Hackers Jack Your Credit Card When You Shop Online🎙Darknet Diaries Ep. 52: Magecart

Source: YouTube · Jack Rhysider · published Dec 1, 2022 · 48:12

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

In October 2015, a Florida man named Carlos manufactured and deployed sophisticated credit card skimming devices on gas pumps to steal financial data 0:01.

Key Takeaways:
• Skimmers are malicious devices attached to gas pumps that secretly save the credit card numbers of unsuspecting victims 0:08.
• Gas pumps are highly vulnerable targets because they are unattended by staff, making it easy to sneak a skimmer onto them compared to store registers 0:23.
• Carlos's skimmers were advanced, featuring a small, battery-powered design capable of storing up to a gigabyte of stolen data 0:34.
• His method involved installing the device and returning days later to harvest the collected data via a USB cable 0:42.

This case illustrates the persistent physical security vulnerabilities of unattended payment terminals and the technical sophistication of financial thieves.

Sources:

  • 0:01 Introduction of Carlos and his skimming operation
  • 0:08 Explanation of how gas pump skimmers work
  • 0:23 Why gas pumps are easier targets than store terminals
  • 0:34 Technical specifications of Carlos's skimmers
  • 0:42 Carlos's method for retrieving stolen data

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

JACK: In October 2015, Carlos, a Florida man,
was manufacturing credit card skimming devices. These are little devices you can stick on
a gas pump and anyone who comes and swipes their credit card at the gas pump will get
their number saved to this little device. It’s a popular attack because not everyone
is watching the gas pumps so you can easily sneak your skimmer onto it. It’s hard to sneak a skimmer onto a point
of sale terminal in a store because the clerk is standing right there but gas pumps are
usually standing right there in the open for anyone to just go use. [MUSIC] Carlos’s skimmers were slick; they
were small, battery-powered, and can store up to a gigabyte of data on them. He stuck one on a gas pump and came back a
few days later, plugged a USB cable into it, and downloaded …