Categories: Uncategorized

Payment Terminal Botnet Collected over 1.2 million Card Details Since April

Credit card fraud is still on the rise, despite countermeasures by card issuers and banks. As it turns out, there is a growing point-of-sale botnet in the United States, linking hacked payment terminals together. This allows hackers to monitor credit card information in real-time and abuse any information passing through these terminals.

Malware-infected Payment Terminals In The US

According to KrebsOnSecurity, the point-of-sale botnet comprises of over 100 infected systems, most of which seem to be running a malicious Windows process. To make matters even worse, the control panel of this botnet lists full credit card information, including card number, address, and verification code.

It appears as if a lot of these card details are coming from CiCi’s Pizza locations across the US. Several customers have complained about fraudulent transactions with their cards after enjoying a meal at one of the local restaurants. However, this does not mean the attack is coordinated to target that particular brand alone. In fact, it is impossible to tell how many systems are infected in total, as the botnet only shows Internet-connected systems.

Moreover, KrebsOnSecurity mentioned how there were over 1.2 million unique credit and debit card numbers stored in the botnet database right now. That being said, it is possible the total number is much higher, as the botnet logs only go back to April 2016. Over 1 million payment cards at risk of being used for fraud in just ten weeks is astonishing.

Related Post

Punkey seems to be powering this whole payment terminal botnet, as it is a POS malware first discovered at the end of 2015. This particular type of malware can record keystrokes on infected devices. By the look of things, the hackers resorted to social engineering to install malware on these terminals. Datapoint POS employees have been approached, and it is likely other providers are affected as well.

Infecting a payment terminal with malware is a convenient way for Internet criminals to obtain payment card information. It is impossible to tell whether or not a payment terminal can be traced by looking at it, and the malware will not interfere with its day-to-day operations either. These obtained credit card dumps, as they are called, can be quite valuable to the right buyer on underground marketplaces.

Source; KrebsOnSecurity

Images credit 1,2

If you liked this article follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin and altcoin price analysis and the latest cryptocurrency news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Step Finance Hit By Major Treasury Breach

Shockwaves moved through the Solana ecosystem after DeFi dashboard and portfolio platform Step Finance confirmed…

12 hours ago

Tether Caps A Record Year With Explosive Profit Growth

Tether has released its Q4 2025 quarterly attestation, and the numbers confirm what much of…

12 hours ago

Lighter EVM Marks A Major Shift From Trading Engine To Full-Stack DeFi Platform

Lighter is officially stepping beyond its roots as a high-performance perpetual DEX with the launch…

12 hours ago

Vitalik Buterin Deploys 16,384 ETH Toward Privacy And Open Infrastructure

Ethereum co-founder Vitalik Buterin is once again channeling personal capital into the long-term foundations of…

1 day ago

Lido V3 Launches on Ethereum Mainnet With Game-Changing stVaults

Lido Finance has officially activated Lido V3 on the Ethereum mainnet, introducing a powerful new…

1 day ago

Bitcoin Slips To $83,500 As Liquidations Rock The Market

Bitcoin tumbled to around $83,500, marking its lowest level in over a month and triggering…

2 days ago