Feeds

Queen of WorldPay cash-machine scam sent down for 2.5 years

Hi-tech Fagin herded money mules

SANS - Survey on application security programs

A Nigerian woman has been jailed for two-and-a-half years in the US after she was found responsible for playing a key role in the infamous $9m WorldPay payment card scam back in 2008.

Sonya Martin, 45, was convicted of managing a team of Chicago money mules who withdrew money from cash cards that had been loaded with looted funds. Cybercrooks had topped-up the payroll debit cards by breaking the encryption used to protect their sensitive financial data. Such cards are used by some firms to pay workers.

Hackers used compromised access to WorldPay's systems to raise the account balance and withdrawal limits on targeted accounts before forging 44 payment cards associated with these compromised accounts. Funds were then withdrawn from these accounts in an overnight cash-out operation involving 2,100 ATMs in at least 280 cities in the US, Russia, Estonia, Italy, Hong Kong, Japan, and Canada in a coordinated operation on 8 November 2008, the FBI said.

The gang monitored the progress of the cash-out operation in real-time using WorldPay's own computer systems before attempting (unsuccessfully) to erase their tracks. Infamous hacker Albert Gonzalez masterminded the whole scam as well as other credit card megabucks against TJ Maxx, Heartland Payments Systems and others. Gonzalez was jailed for 20 years in the spring of 2010.

The FBI said Martin managed a cash-out crew in Chicago that used counterfeit debit cards to fraudulently withdraw approximately $80,000 from various Chicago ATMs. She was arrested in March last year when she attempted to board a flight from New York to London. Martin will have to serve five years on probation after her release, as well as paying back $89,000 in restitution for her crimes.

An FBI statement on Martin's sentencing can be found here. ®

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Putin tells Snowden: Russia conducts no US-style mass surveillance
Gov't is too broke for that, Russian prez says
Snowden-inspired crypto-email service Lavaboom launches
German service pays tribute to Lavabit
Mounties always get their man: Heartbleed 'hacker', 19, CUFFED
Canadian teen accused of raiding tax computers using OpenSSL bug
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Arts and crafts store Michaels says 3 million credit cards exposed in breach
Meanwhile, Target investigators prepare for long process in nabbing hackers
Canadian taxman says hundreds pierced by Heartbleed SSL skewer
900 social insurance numbers nicked, says revenue watchman
prev story

Whitepapers

SANS - Survey on application security programs
In this whitepaper learn about the state of application security programs and practices of 488 surveyed respondents, and discover how mature and effective these programs are.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.