Newsletter
REAL HACKER NEWS
  • Home
  • REVIEWS
  • SECURITY
  • GAMING
  • SMARTPHONES
  • CAMERA
  • COMPUTERS
    • LAPTOP
  • APPLICATIONS
  • AUDIO
No Result
View All Result
  • Home
  • REVIEWS
  • SECURITY
  • GAMING
  • SMARTPHONES
  • CAMERA
  • COMPUTERS
    • LAPTOP
  • APPLICATIONS
  • AUDIO
No Result
View All Result
REAL HACKER NEWS
No Result
View All Result
Home REVIEWS

A network of knockoff apparel stores exposed 330,000 customer credit cards • TechCrunch

Real Hacker Staff by Real Hacker Staff
January 25, 2023
in REVIEWS
0
A network of knockoff apparel stores exposed 330,000 customer credit cards • TechCrunch
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


When you just lately made a purchase order from an abroad on-line retailer promoting knockoff garments and items, there’s an opportunity your bank card quantity and private info have been uncovered.

Since January 6, a database containing a whole lot of hundreds of unencrypted bank card numbers and corresponding cardholders’ info was spilling onto the open net. On the time it was pulled offline on Tuesday, the database had about 330,000 bank card numbers, cardholder names, and full billing addresses — and rising in real-time as prospects positioned new orders. The info contained all the data {that a} prison would want to make fraudulent transactions and purchases utilizing a cardholder’s info.

The bank card numbers belong to prospects who made purchases via a community of near-identical on-line shops claiming to promote designer items and attire. However the shops had the identical safety downside in frequent: any time a buyer made a purchase order, their bank card information and billing info was saved in a database, which was left uncovered to the web and not using a password. Anybody who knew the IP deal with of the database might entry reams of unencrypted monetary information.

Anurag Sen, a good-faith safety researcher, discovered the uncovered bank card information and requested TechCrunch for assist in reporting it to its proprietor. Sen has a good monitor file of scanning the web on the lookout for uncovered servers and inadvertently printed information, and reporting it to corporations to get their methods secured.

However on this case, Sen wasn’t the primary particular person to find the spilling information. In line with a ransom be aware left behind on the uncovered database, another person had discovered the spilling information and, as a substitute of attempting to establish the proprietor and responsibly reporting the spill, the unnamed particular person as a substitute claimed to have taken a duplicate of all the database’s contents of bank card information and would return it in change for a small sum of cryptocurrency.

A evaluation of the info by TechCrunch exhibits a lot of the bank card numbers are owned by cardholders in america. A number of folks we contacted confirmed that their uncovered bank card information was correct.

TechCrunch has recognized a number of on-line shops whose prospects’ info was uncovered by the leaky database. Most of the shops declare to function out of Hong Kong. A number of the shops are designed to sound much like big-name manufacturers, like Sprayground, however whose web sites haven’t any discernible contact info, typos and spelling errors, and a conspicuous lack of buyer evaluations. Web information additionally present the web sites have been arrange prior to now few weeks.

A few of these web sites embrace:

  • spraygroundusa.com
  • ihuahebuy.com
  • igoodlinks.com
  • ibuysbuy.com
  • lichengshop.com
  • hzoushop.com
  • goldlyshop.com
  • haohangshop.com
  • twinklebubble.retailer
  • spendidbuy.com

When you purchased one thing from a kind of websites prior to now few weeks, you may need to think about your banking card compromised and get in touch with your financial institution or card supplier.

It’s not clear who’s accountable for this community of knockoff shops. TechCrunch contacted an individual through WhatsApp whose Singapore-registered cellphone quantity was listed as the purpose of contact on a number of of the net shops. It’s not clear if the contact quantity listed is even concerned with the shops, given one of many web sites listed its location as a Chick-fil-A restaurant in Houston, Texas.

Web information confirmed that the database was operated by a buyer of Tencent, whose cloud companies have been used to host the database. TechCrunch contacted Tencent about its buyer’s database leaking bank card info, and the corporate responded rapidly. The client’s database went offline a short while later.

“After we realized of the incident, we instantly contacted the client who operates the database and it was shut down instantly. Information privateness and safety are high priorities at Tencent. We’ll proceed to work with our prospects to make sure they keep their databases in a secure and safe method,” mentioned Carrie Fan, international communications director at Tencent.

Learn extra:





Source link

Related articles

India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

February 5, 2023
Elon Musk says Twitter will provide a free write-only API to bots providing ‘good’ content • TechCrunch

Elon Musk says Twitter will provide a free write-only API to bots providing ‘good’ content • TechCrunch

February 5, 2023
Tags: apparelCardsCreditcustomerExposedknockoffNetworkstoresTechCrunch
Share76Tweet47

Related Posts

India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

by Real Hacker Staff
February 5, 2023
0

India is transferring to dam 232 apps, some with hyperlinks to China, that supply betting and mortgage providers within the...

Elon Musk says Twitter will provide a free write-only API to bots providing ‘good’ content • TechCrunch

Elon Musk says Twitter will provide a free write-only API to bots providing ‘good’ content • TechCrunch

by Real Hacker Staff
February 5, 2023
0

Final week, Twitter stated it's shutting down free entry to its APIs beginning February 9. Now, days earlier than the...

US military shoots down Chinese balloon over coastal waters

US military shoots down Chinese balloon over coastal waters

by Real Hacker Staff
February 5, 2023
0

On Saturday afternoon, US jets intercepted the Chinese language surveillance balloon because it was leaving the continental US. Reside footage...

The physics of James Joyce’s Ulysses

The physics of James Joyce’s Ulysses

by Real Hacker Staff
February 5, 2023
0

Enlarge / An early version of one in all Dublin's most well-known literary masterpieces: Ulysses by James Joyce, revealed in...

Instagram’s founders’ new app, another Twitter rival, Biden admin criticizes app stores • TechCrunch

Instagram’s founders’ new app, another Twitter rival, Biden admin criticizes app stores • TechCrunch

by Real Hacker Staff
February 4, 2023
0

Welcome again to This Week in Apps, the weekly TechCrunch collection that recaps the most recent in cell OS information,...

Load More
  • Trending
  • Comments
  • Latest
Chinese Hackers Using Russo-Ukrainian War Decoys to Target APAC and European Entities

Chinese Hackers Using Russo-Ukrainian War Decoys to Target APAC and European Entities

December 7, 2022
Sennheiser Starts Shipping EW-DX Digital Wireless Microphone Series

Sennheiser Starts Shipping EW-DX Digital Wireless Microphone Series

November 22, 2022
Spitfire Audio unveils Aperture: Cassette Symphony

Spitfire Audio unveils Aperture: Cassette Symphony

November 25, 2022
AntennaWare Addresses Body Blocking Issues In The UWB Market

AntennaWare Addresses Body Blocking Issues In The UWB Market

November 17, 2022

Hello world!

0
US Commodities Regulator Beefs Up Bitcoin Futures Review

US Commodities Regulator Beefs Up Bitcoin Futures Review

0
Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

0
India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

0
Weekly poll: Samsung Galaxy S23 series – pre-order or pass?

Weekly poll: Samsung Galaxy S23 series – pre-order or pass?

February 5, 2023
India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

February 5, 2023
Smartphones with insane battery life: meet the Apocalypse phones

Smartphones with insane battery life: meet the Apocalypse phones

February 5, 2023
Cost of living: An Indian family’s struggle to escape their slum | Inflation

Cost of living: An Indian family’s struggle to escape their slum | Inflation

February 5, 2023

Recent News

Weekly poll: Samsung Galaxy S23 series – pre-order or pass?

Weekly poll: Samsung Galaxy S23 series – pre-order or pass?

February 5, 2023
India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

India is blocking over 230 betting and loan apps, many with ties to China • TechCrunch

February 5, 2023

Categories

  • APPLICATIONS
  • AUDIO
  • CAMERA
  • COMPUTERS
  • GAMING
  • LAPTOP
  • REVIEWS
  • SECURITY
  • SMARTPHONES
  • Uncategorized
REAL HACKER NEWS

We bring you the best news on Internet new gadgets hacking and technology from around the world

  • Contact
  • Cookie Privacy Policy
  • Terms and Conditions
  • Privacy Policy
  • Disclaimer
  • DMCA

© 2003 Real Hacker News

No Result
View All Result
  • Home
  • REVIEWS
  • SECURITY
  • GAMING
  • SMARTPHONES
  • CAMERA
  • COMPUTERS
    • LAPTOP
  • APPLICATIONS
  • AUDIO

© 2003 Real Hacker News

Go to mobile version