Silver Tail Blog

Fighting against business logic abuse.

Scamming iTunes and Amazon for $300k through Business Logic Abuse

STJune5This article talks about how arrests were made of bad guys who stole $300k from iTunes and Amazon through business logic abuse.  The simplicity of this scam is impressive.

…the group created several songs, had the songs uploaded to iTunes and Amazon, then used thousands of stolen credit cards to repeatedly purchase the songs from these services.

One might think it is difficult to steal money from a place that only sells digital goods that can only be used by the purchaser, but here’s an example of a relatively straightforward case of using exactly the functionality of the sites – selling and buying digital goods – to launder money out of stolen credit cards.

Fascinating!

June 17, 2009 Posted by Laura Mather | Online Fraud, business logic abuse | , | No Comments Yet