OTHER

New Strategy Rolled Out After Major SMS Scam Uncovered

If you’ve encountered scam texts regarding unpaid tolls or missing packages, whether in the U.S. or elsewhere, you might be caught in a large-scale fraudulent scheme.

What seems to be a simple scam has proven to be surprisingly effective. Scammers send out spam messages that mimic genuine notifications from reliable sources—like postal services and local government alerts—aimed at luring victims into clicking links that direct them to phishing sites. Consequently, victims may unknowingly share their credit card details, which scammers then misuse for illicit activities.

In the first seven months of 2024, roughly 884,000 credit card numbers were compromised through this scheme, granting criminals access to victims’ accounts. Experts note that many individuals have suffered significant financial losses as a result.

However, major security breaches eventually revealed the identity of the person behind the scam software known as Magic Cat, known as Darcula.

Image of a profile picture of a notable scammer, featuring a fluffy white cat on a couch.
Image Credits:via Mnemonic

Recent reports from Oslo-based security firm Mnemonic and Norwegian media indicate that the charming cat featured in Darcula’s profile actually belongs to a 24-year-old Chinese individual named Yucheng C.

Researchers suggest that Yucheng C. is the mastermind behind Magic Cat, which has been utilized by various clients to carry out their own SMS scam operations against unsuspecting individuals.

After Yucheng C.’s identity was revealed, Darcula disappeared from online platforms, ceasing his fraudulent activities and leaving his clients bewildered. However, a new scam quickly emerged to take its place.

New warnings have surfaced about a fraudulent scheme called Magic Mouse, which appeared following the shutdown of Magic Cat.

Harrison Sand, an offensive security consultant at Mnemonic, informed TechCrunch that Magic Mouse has swiftly gained popularity after the discontinuation of Darcula’s Magic Cat. Sand plans to share more insights at the Def Con security conference in Las Vegas this Friday.

Sand cautioned about Magic Mouse’s escalating ability to illegally collect credit card information on a grand scale.

During their investigation, Mnemonic discovered images shared in a Telegram channel managed by Darcula, displaying rows of credit card payment terminals and videos showing multiple phones used to automate messaging to victims.

The scammers exploit stolen card information across various mobile wallets, engaging in payment fraud and laundering the proceeds through numerous bank accounts. Many devices were found preloaded with mobile wallets containing stolen card data, ready for immediate deployment.

Sand reported that Magic Mouse is currently connected to the theft of at least 650,000 credit card numbers each month.

Although Magic Mouse seems to be a new operation run by different individuals and appears unrelated to Darcula, its rapid growth is linked to operators who used the same phishing kits that led to Magic Cat’s success. These kits feature various phishing sites that imitated legitimate pages of major tech firms and established consumer services, tricking victims into revealing sensitive credit card information.

Despite the substantial risks posed by both Magic Cat and the newly emerged Magic Mouse to consumers’ financial security, Sand remarked to TechCrunch that law enforcement often focuses on individual fraud cases instead of addressing the larger criminal networks behind these schemes.

Sand emphasized that tech companies and financial institutions bear the primary responsibility for combating these scams, making it harder for fraudsters to exploit stolen card information.

For anyone receiving suspicious text messages, the safest course of action is likely to ignore unsolicited communications.