- Security researchers spotted a leaked database of Debit & credit cards.
- The BidenCash leaked the Debit & credit cards database.
- As per the security firm, the leaked database was pretty extensive.
Security researchers at Cyble spotted a leaked database of about 2,165,700 (Debit & credit cards) by BidenCash, celebrating its first anniversary. For those who don’t know, BidenCash is a carding marketplace.
Now usually, whenever this kinda leak happens, it is kept under wraps, but not this leak as the threat actors apparently advertised the massive leak to an underground cybercrime forum for more large-scale reach and also to get as much as attention possible.
As per the security firm, the database that was leaked is pretty large, with at least details of about 740858 credit cards, 811676 debit cards, and 293 charge cards. As per Andreas Draghetti of D3 Lab, thousands are duplicates; there are still 214564 unique ones.
The leaked database contains personal credentials like the name, email address, phone numbers, and payment details such as CVV, and card expiration date that goes as far as 2052.
According to Draghetti, the leaked information also contains approximately 497,000 unique email addresses, totaling more than 28,000 unique email domains.
BidenCash, in its announcement, said, “We are thrilled to have reached our first anniversary as an online store, and we couldn’t have done it without your support. Thank you for choosing our store and for trusting us to provide you with quality products and excellent service.“
“We are proud to have you as a customer, and we look forward to continuing to serve in the coming years. Your loyalty and trust are what motivate us to keep improving and growing our business.” – they added.
With that being said, Security researchers could not tell how much of the database leaked online was free by BidenCash accurate despite this, the possibility of this database getting utilized by scammers, and threat actors, cannot be measured.
Cyble mentions that The existence of the email address & full information (which the threat actors refer to as Fullz) will make the victims of this vulnerable to other attacks like phishing, scam, and identity theft even after the expiration of their card details.
A ranking created by Flashpoint, the carding shop jumped to 5th place in total capacity, and the shop is active since February 28th.
For the record, this is not even the first time that BidenCash has utilized the free credit cards for its promotion, so this kind of marketing isn’t surprising as it has always been a part of the carding world
In October, The carding marketplace BidenCard released free credit cards, distributed through various forums and clearnet domains.