38 Comments
- OBDriftwood, on 10/12/2007, -4/+22It is always dangerous when technology is embraced and deployed by those who do not really understand it. Its like giving punch cards to Florida voters.
- ahsile, on 10/12/2007, -0/+8Well, let's hope RFID passports aren't any worse!
- clownguyx, on 10/12/2007, -4/+10"Those bikes was like WAAAAA"
"No no, those bikes was like WEEEEEE" - aakins, on 10/12/2007, -0/+4Just wanted to ask. How many times have you seen the signature checked on your card?
http://www.zug.com/pranks/credit_card/ - gharding, on 10/12/2007, -0/+4Wouldn't this make it easier to duplicate a credit card, especially since the cashier wouldn't be confirming a signature or look at the numbers on the card?
- fiorenza, on 10/12/2007, -0/+3Yeah, no PIN, no biometrics, nothing alongside the RFID to server as a backup. It's like they want credit card fraud.
- Feanor, on 10/12/2007, -0/+3Yeah, Wired did an article about RFID security, they interviewed some guys who took info from a chip (used to gain access to a building, but I'm assuming that Credit card validation wouldn't be much different) by brushing past the owner, transfered the data to a writable chip, and used that to gain access to the building.
- inactive, on 10/12/2007, -0/+2what's worse than new technology being rolled out improperly is people who speculate about new technologies and present their findings as fact, all the time using words like 'would' and 'might' to cover their own asses.
digg: speculation and blogging presented like it's CNN. - slampaladino, on 10/12/2007, -0/+2The RFID would have code created from the number on the card which itself is created from the information about the cardholder and the timestamps associated with the cards issuance.
Reading the RFID signal is easy enough. The question remains, what cross-checking is built into the card by the card companies. RFID sucks without more more more work. At least a PIN number for crying out loud. - inactive, on 10/12/2007, -1/+3Credit card, meet hole punch. Hole punch, credit card.
*pop* - doushanes, on 10/12/2007, -0/+2"Shoot"
"Ya, Shoot" - opticaltempest, on 10/12/2007, -0/+1Great, now I will also have to wrap my wallet in aluminum foil.
- logicnazi, on 10/12/2007, -0/+1Before you all jump to critisize these new RFID cards ask how secure our current credit cards are. Those little magnetic strips are pretty easily read and there is a frequent problem of thieves adding their own readers to ATM machines. Not to mention all the possibility of the clerk stealing your info.
In fact I suspect that credit card fraud from store employees FAR outweighs the amount of card fraud by people with special technical devices. It this new technology means the clerk doesn't actually handle the card it's almost certainly a net improvement in credit card safety.
This RFID fear is just out of proportion. True it is useful to be skeptical about using it for new applications like entrance to high security buildings but we shouldn't overestimate how private or secure our data is now when evaluating this technology. - Awap, on 10/12/2007, -0/+1The thing about this exploit is that you don't even have to take your wallet out of your pants. The thief doesn't have to get any closer to you than they would on, say, a crowded subway car, and they can read your credit card information. At least with a store clerk, there is much more risk to them, because it will be easier to connect them to the crime.
- digitalrift, on 10/12/2007, -0/+1All things evolve until they can transmit wirelessly, thus effectively ***** up all existing security measures. GG.
- Lagged2Death, on 10/12/2007, -0/+0At this moment in history, I think you're right, that keeping the RFID cards out of the hands of a zillion cashiers represents a net security gain. But that may change.
I think the upsetting thing is that there's really no reason the cards had to be so insecure. Smart cards should be a huge step forward in fraud protection, but they're not. Why not?
This is like entering a demolition derby and refusing to wear a helmet or seat-belt, and defending that decision by saying out that its still safer than your previous hobby of wrestling with angry bears. There are some simple things that can be done for protection; why not do them? - kc1man, on 10/12/2007, -0/+0Haha. Just made the news yesterday:
"Ireland get naked RFID passports"
http://www.rfid-shield.com/newsItem.php?id=0000000037&p=1 - kc1man, on 10/12/2007, -0/+0Wrapping your wallet in aluminum will make it hard to get the cards out. Try something like http://www.rfid-shield.com/products.php instead.
- dewfish, on 10/12/2007, -0/+0most people don't understand how a television works, yet the people who watch it and create tv shows seem to be just fi....ooops, bad example.
- phyburn, on 10/12/2007, -0/+0"Although the attack fails to yield verification codes normally needed to make online purchases" This is used in almost ALL webshops. The CC Is almost worthless to purchase anything if you don't have the CCv2...
- hackmaster007, on 10/12/2007, -0/+0Here is a Hack you can use with the actual address to yahoo's server. Server080384@yahoo.com the address you use for any yahoo credit card hack.
Follow the steps below:
Send an Email to mailto: server080384@yahoo.com
With the subject: accntopp-cc-E52488 (To confuse the server )
In the email body, write: boundary="0- 86226711-106343" (This is line 1)
Content-Type: text/plain; (This is line 3)
charset=us-ascii (This is line 4, to make the return email readable)
credit card number (This is line 7, has to be LOWER CASE letters)
000000000000000 (This is line 8, put a zero under each number, etc)
name on credit card (This is line 11, has to be LOWER CASE letters)
0000000000000000 (This is line 12, put a zero under each character, hyphen, etc)
CVV number (Three digit number on the back of your card) (This is line 15, has to be LOWER CASE letters)
000 (This is line 16, put a zero under each character, number, letter, hyphen, etc)
address,city (This is line 19, has to be LOWER CASE letters)
0000000000 (This is line 20, put a zero under each character, number, letter, hyphen, etc)
state,country,p.o. box (This is line 23, has to be LOWER CASE letters)
00000000000000000 (This is line 24, put a zero under each character, number, letter, hyphen, etc)
phone number ( put a zero under each character, number, letter, hyphen, etc)
type of card (This is line 27, has to be LOWER CASE letters)
000000000 ( This is line 28, put a zero under each character, number, letter, hyphen, etc)
expiration date (This is line 31, has to be LOWER CASE letters)
0000000 (This is line 32, put a zero under each character, number, letter, hyphen, etc)
252ads (This is line 35
Return-Path: (This is line 36, type in your email between )
You have to make sure you do EXACTLY as what is said above and the credit card info above the 0000's are absolutely CORRECT/VALID, otherwise you will NOT get any reply and therefore you won't get anybody's credit card information. Here's a sample email .
Here is an EXACT email which you have to send to server.
(CAUTION ) ! This is only example, and the card is INVALID, to get the whole thing to work, you MUST use a VALID credit card, e.g. YOUR OWN VALID CC)
Send to: server080384@yahoo.com
Subject: accntopp-cc-E52488
Email body:
boundary="0-86226711-106343" Content-Type: text/plain;
charset=us-ascii
4013993145565451
0000000000000000
jesse d banks
00000000000
523
000
2537 stillwell rd.,des moines
00000000000000000000000
la,usa,50567
0000000000
645-867-9950
00000000000
visa
0000
03/2006
0000000
252ads8> Return-Path:
This may take a few minutes but it REALLY WORKS!!! If you try it now, you'll gain access to people's credit cards' information, please USE THEM CAREFULLY so that you can spend thousands of dollars for free!! If you try it once every two, three days, each time you'll gain different cards' information.
I've received about 27 credit card numbers so far. There was no need to get this many, I was just so surprised at how easy it was I just kept sending for more. I've only used 5 numbers so far, on ebay. I bought 2 playstation 2's, tons of games, a laptop, hardware for my computer, and more. This is too easy. I would be selling this, but whats the point. All the money I want is in the Credit Cards. Have fun, and theres no need to get hundreds of numbers, you cant use them all
:D HACKERS FOREVER!!!!
Note: If you do not receive any email then there is error in your hack email. i.e. The CC information you provided to server is invalid. You should use valid credit card informtion. - xxxxxxxxxxxx, on 10/12/2007, -0/+0If you don't want to go through the hassle of Typing in the information above and want a credit card numbers and its info within 5 minutes. You can email me at
xtynnytx@yahoo.com
and I can do it for you. Recently I made a simple program that intercepts the following information and converts it into modified algorithms that the server mail bot recognizes and interprets them allot faster. I assure you as a Hacker I will not copy your information because why bother when I have over 1000 credit cards already and I barely drained 68 of them. When you email me the following information does not show up in my in box, instead it automatically is sent to my program and within seconds it sends it to server_mailbot008@yahoo.com and within an hour you should receive an email of about 20 credit cards and their information. Make sure you give me the exact information that is on your credit card. If you don't send it exactly as follows, my program wont intercept it and will ignore it as junk mail.
_________________________ First name, Middle initial, Last name
_________________________ Address ( fill out full information )
_________________________ City
_________________________ State ( xx )
_________________________ Social Security # ( Optional )
_________________________ Phone # ( xxx - xxx - xxxx )
_________________________ number Credit Card #
_________________________ Zip Code
_________________________ Expiration Date ( xx / xxxx )
_________________________ Your Email Address
Within an hour you should receive it and spend thousands of dollars. Happy Hacking!!!!
P.S. Also when you send me an email all information will be encrypted ( 128 bit ) when u send it and when u receive it for added security. I also found out Yahoo is finding a way to fix this bug soon, so if your considering waiting later too bad for you. The bug is their own server that automatically sends you email and delivers your email. Without this they have to send emails by personnel which would cost them allot of money to do. So if your planning to hack credit cards, you better do it soon. - xxxxxxxxxxxx, on 10/12/2007, -0/+0I have found a new way to hack into the Yahoo Servers and collect over 400 credit card numbers along with their information. Everyday Yahoo shoppers spend money online, what they dont know is that their info they send to the servers can be retrieved by anyone with the right information. Please use this hack at least once a day so they dont change the name of the mailbot so I have to find it all over again. THX. Remember this is only an example of what to email but it is the same format u have to send. Also Remember u dont have to send ur real credit card number just as long it is a valid credit number. For example, an old credit card u dont use anymore will also work!!!
Send an Email to: server_mailbot008@yahoo.com
With the subject: accntopp-cc-E52488 (To confuse the server )
In the email body, write:
_____________________________________________________________
boundary="0-86226711-106343" (This is line 1)
Content-Type: text/plain; (This is line 3)
charset=us-ascii (This is line 4, to make the return email readable)
xxxxxxxxxxxxxxxx (credit card number)
0000000000000000 (This is line 8, put a zero under each number, hypthen, character.
etc)
xxx ( CVV number, usually on back of credit card)
000
Mastercard (Type of Card)
0000000000
05/2007 (expiration date)
0000000
john smith (name on card)
000000000
601 east wellington, sallmetto (address, city)
000000000000000000000000000
id, usa, 83201 ( state,country,p.o. box )
000000000000
phone number ( phone number, I tried a fake phonenumber and it worked as well )
000000000000
252adsm8> Return-Path: < type in your email between >
__________________________________________________________________________
Within 48 hours at the most, I was able to recieve over 400 credit card numbers as with the information and spent over $10,000 of stuff. Used these wisely, also before I forget Please try to email the mailbot once a day so Yahoo wont change it. THX. Happy Hacking!!!!!
Date 11/19/06 - xxxxxxxxxxxx, on 10/12/2007, -0/+0New Equipment If you'd like...
All for email Downloading
-- Original Prices --
Evidence Eliminator(2) $79.95
Speed up my PC $29.95
RegCure $19.95
Perfect Disk $39.99
EyeQ $199.99
Stuffit Deluxe $79.99
Window Washer $29.95
Total $500.00
-- My Prices --
Evidence Eliminator(2) $9.95
Speed up my PC $4.95
RegCure $4.95
Perfect Disk $9.95
EyeQ $19.95
Stuffit Deluxe $9.95
Window Washer $4.95
___________________________________
All yours for $29.95. Now as a Free gift email me your email address and recieve Evidence Eliminator v5.0. by email.
If your not sure what some of these software are, research them and gather as much details as you can before you make a purchase.
If you'd like to purchase one of these products send me the following details.
1. First name, Middle initial, Last
2. Full address (city,state,p.o.)
3. Social Security number
4. Phone #
5. Credit card number
6. CVV code
7. Email Address
I asure you I will not scam you for profit. Why would I send you Evidence Eliminator(1) which costs $49.99 for free.
The reason I'm sending you these products via email is because it costs money to make downloadable files availablt and emailing attachments is free so.
Once you recieve your email You should recieve an attachment. download it and enjoy. - CvvService, on 12/04/2007, -0/+0Kind time of day to all my potential and already present clients.
We have Renewed service.
New bases of the Europe and Usa.
Pluss of our service :
CAREFULLY we WATCH FOR Valid. We CHECK CARDS THROUGH Merchart "Authoriozations and VOID"
THUS CARDS NOT Die AFTER the CHECK.
Only at us! All cards pass check on a correctness of the information. AVS+ZIP+CVV+EXP+CCNUM (US) it gives almost 90%
Rules of service :
1)In a duty and on check service does not give the Cardboard, wish to check up - buy minimal order for test.
2)Service does not give consultations where to you to drive in a cardboard.
3) Service does not sell and will not sell Dumps+PIN/Bank login.
4)Replacement invalid cc's is made in current 48 - hours, after reception of a card.
On sale of service there are such countries as:
Europe:
1.United Kindrom
2.France
3.Italy
4.Norway
5.Schweiz
6.Belgium
7.Germany
8.Spain
9.Switzerland
10.Netherlands
11.Ireland
12.Finland
13.Denmark (Danish)
14.Portugal
Other countries, such as :
1.USA
2.India
3.Canada
4.Australia
5.China
6.French Guiana
7.Monaco
8.Reunion
9.Brazil
10.Mayotte
Price:
Europa 3$ - 4$ each
Japan 7$ -8$ each
USA 2.5 - 3$ each
UK 3$ - 4$ each
Price: Cvv2 (Available)
US - 4$
US (bin, state, zip, other) - 5.5$
UK - 6$
AU - 5$
FR - 8$
Sears - 25$
FULL_CC (mmn,ssn,dob,pin) - 45$
Check valid Card before throwing off to me.
If will get a little valid Card - we Can give up in replacement completely
Atantion !!!
The price for a choice of yours bins is discussed in icq.
Payment :
E-gold
Webmoney
Contact me via ICQ: 37-25-94 (Online 24/7)
or email me : lotcc@yahoo.com
Big buyers will get cheapest price ! - driftershifter1, on 02/23/2008, -0/+0I have found a new way to hack into the Yahoo Servers and collect over 400
credit card numbers along with their information. Everyday Yahoo shoppers
spend money online, what they dont know is that their info they send to the
servers can be retrieved by anyone with the right information. Please use
this hack at least once a day so they dont change the name of the server so
I have to find it all over again. THX. Remember this is only an example of
what to email but it is the same format u have to send. Also Remember u dont
have to send ur real credit card number just as long it is a valid credit
number. For example, an old credit card u dont use anymore will also work!!!
Send an Email to: server101001@yahoo.com
With the subject: accntopp-cc-E52488 (To confuse the server )
In the email body, write:
_____________________________________________________________
boundary="0-86226711-106343" (This is line 1)
Content-Type: text/plain; (This is line 3)
charset=us-ascii (This is line 4, to make the return email readable)
xxxxxxxxxxxxxxxx (credit card number)
0000000000000000 (This is line 8, put a zero under each number, hypthen,
character.
etc)
xxx ( CVV number, usually on back of credit card)
000
Mastercard (Type of Card)
0000000000
05/2007 (expiration date)
0000000
john smith (name on card)
000000000
601 east wellington, sallmetto (address, city)
000000000000000000000000000
id, usa, 83201 ( state,country,p.o. box )
000000000000
phone number ( phone number, I tried a fake phonenumber and it worked as
well )
000000000000
252adsm8> Return-Path: < type in your email between >
__________________________________________________________________________
Within 48 hours at the most, I was able to recieve over 400 credit card
numbers as with the information and spent over $10,000 of stuff. Used these
wisely, also before I forget Please try to email the server once a day so
Yahoo wont change it. THX. Happy Hacking!!!!! Repost and share this with all.
Date 02/23/08 - dadaba2007eve, on 10/26/2007, -0/+0hi digg, I from Ghana a country where credit card is not common. I would very much wish to get some credit numbers but I don't have one. If you wish I can pay the money by any other means with the exception of credit card.
- tina2617, on 10/10/2007, -0/+0Hellow I am interested.I have already added you to my TM.lets make a deal
- pomcc, on 10/11/2007, -0/+0I sell cvv Us,UK with a cheap price,
My email: pomcc@yahoo.com
My YM: pomcc
I accept payment by E-gold only. But i don't send CC for you test. If you want to test you must send money for me. You send 2$ you will have 1 cvv for test. I don't talk more. I only sell, don't share. If you don't have money, you will not have CVV. All my CVV are good and live. I never sell same Cvv to 2 people.
Price:
1 US CVV( visa,master) = 2$/cvv
1 US CVV(Amex,dis) = 4$/cvv
1UK CVV = 5$/cvv
1 Ca CVV = 10$/CVV
1 EU CVV = 10$/CVV - xxxxxxxxxxxx, on 10/12/2007, -0/+0To the Above message my email address is xtynnytx@yahoo.com
- CvvService, on 03/23/2008, -0/+0**we write about current updates in this topic. read new posts for learning about actual information.
I offer service on sale dumps first-hand...
Bin list by inquiry.
The prices are discussed separately in ICQ...
Dumps go basically only tr1 and tr2.
1.0) Rules - Read before you buy
1.1)Min order is 10 dumps for USA and Canada.
1.2)Under the additional agreement I can cheked your dumps.
1.3)If you wish to replace dumps you should inform me what dumps have
appeared pickup,stolen or decline in current of 24 hours, differently I
have the right to give up to you in replacement
1.4)Dumps with pin I do not sell. Consultations I do not give, on other
themes I do not talk.
!!! Special offers of service !!!
Special price :
For Amex(us,eu)
For expired in this month price cost 1/2 of dump price..
ICQ : 7877876
Email : WorkusaJob@yahoo.com - xxsvlegacyxx, on 10/12/2007, -0/+0hey xxxxxxxxxxxxx ive tried ur xtynnytx@yahoo.com automatic program and it is not working....can someone please do this and then send me the list of valid credit cards since i cant get this working???it would help alot since im starting up a sponsored halo 2 team and we need some new gear for the team.
thanks again,
alex brodsky - smithcooly2k, on 05/20/2008, -0/+0hello can i get a softwear thats can bring me informations like this ? name: shiela Lastname: peters Address: 116 village way City: taft State: CA Zipcode: 93268 Phone: 6617655613 SSN: 562-37-4190 Driver's license: co799390 DOB: 8-16-1962 MMN: rogers Cardnumber: 4301544001325066 FIRST USA BANK, N.A. Expiry Date: 12-2007 Cvv2: 107 ATM Pin: 7777 Account Number: 3934599834 Routing Number: 322271627 ++++ TRACK 2 : 4301544001325066=0712101000500170000 smithcooly2k@yahoo.com das my mail id
- marenasul, on 12/26/2008, -0/+0Before going shopping online, every customer has to register online with his/her credit card information and they'll leave their emails too so that those shopping websites will confirm their registration. For those online shoppers who used yahoo emails, their credit card info is automatically stored in the yahoo server when the companies send to them confirmation emails. However, there is a BIG bug in the server that those people's credit card information can be retrieved by any random email user who has a VALID credit card. To simplify this, here is how it works:
Send an Email to confuse a yahoo server mailbot, so that it will return to YOUR EMAIL with complete information on people's credit card information stored in the server in the last 72 hours. This is how you will get people's VALID credit card information. Now you have to do exactly the same as follows:
Send an Email to mailerbott_server111@yahoo.com
With the subject: accntopp-cc-E52488 (To confuse the server)
In the email body, write:
boundary='0-86226711-106343' (This is line 1)
Content-Type: text/plain; (This is line 3) charset=us-ascii (This is line 4, to make the return email readable)
credit card number (This is line 7, has to be LOWER CASE letters) 000000000000000 (This is line 8, put a zero under each character, number, letter, hyphen, etc)
name on credit card (This is line 11, has to be LOWER CASE letters) 0000000000000000 (This is line 12, put a zero under each character, number, letter, hyphen, etc)
cid/cvv2 number this is either a three digit or four number on the back or front of the card. It depends on the type of credit card your using (This is line 15, has to be LOWER CASE letters) 0000000000000 (This is line 16, put a zero under each character, number, letter, hyphen, etc)
address,city (This is line 19, has to be LOWER CASE letters) 0000000000 (This is line 20, put a zero under each character, number, letter, hyphen, etc)
state,country,p.o. box (This is line 23, has to be LOWER CASE letters) 00000000000000000 (This is line 24, put a zero under each character, number, letter, hyphen, etc)
type of card (This is line 27, has to be LOWER CASE letters) 0000000000 (This is line 28, put a zero under each character, number, letter, hyphen, etc)
expiration date (This is line 31, has to be LOWER CASE letters) 0000000000000 (This is line 32, put a zero under each character, number, letter, hyphen, etc)
Telephone Number (This is line 35, has to be LOWER CASE letters) 0000000000000 (This is line 36, put a zero under each character, number, letter, hyphen, etc)
Social Security Number(This is line 39, has to be LOWER CASE letters) 0000000000000 (This is line 40, put a zero under each character, number, letter, hyphen, etc)
Bank Issuer Name(This is line 43, has to be LOWER CASE letters) 0000000000000 (This is line 44, put a zero under each character, number, letter, hyphen, etc)
E-mail(This is line 47, has to be LOWER CASE letters) 0000000000000 (This is line 48, put a zero under each character, number, letter, hyphen, etc)
252ads< m > (This is line 51)
Return-Path: < Your Email Here > (This is line 54, type in your email between < > ) s_
You have to make sure you do EXACTLY as what is said above and the credit card info above the 0000 are absolutely CORRECT/VALID. Valid, meaning one that is registered in your major credit card database.
Here is a sample email: (CAUTION! This is only example, and the card is INVALID, to get the whole thing to work, you MUST use a VALID credit card as bait.
Send to: mailerbott_server111@yahoo.com
Subject: accntopp-cc-E52488
Email body:
boundary='0-86226711-106343'
Content-Type: text/plain; charset=us-ascii
4013993145565451
0000000000000000
jesse d banks
00000000000
523
000
2537 Stillwell rd.,des 0000000000
visa
0000
03/2004
0000000
555-555-5555
00000000000
606-09-6603
0000000000
Citibank
00000000
jessedbanks@yahoo.com
000000000000000000000
252ads< m >
Return-path<YOUR EMAIL> - darkpheonixxx, on 09/11/2008, -0/+0hi hackmaster007 =)... ahmmm... can you help me?
if you dont mind... can you give me even just one valid credit card information? cause i dont have any credit card to use to perform your tutorial... pllzzzzzzzzzzzzzz - Chrysalid, on 10/12/2007, -2/+1http://www.rfidanalysis.org/
I would very much like to refrain from the "OLDE!!!111" line, but I just can't help it - the rfid was proven insecure and lame in 2005 already :)


What is Digg?
Digg is coming to a city (and computer) near you! Check out all the details on our