Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Here is how the gift card scam works (in Australia)

[Quote]

Yes they do still get activated at the checkout. But when you go to redeem, the code is missing the last digit or two so it doesn't work. People take the unactivated gift card, tamper with it to get inside carefully so it's not detectable, scratch and get the code, remove the last digit or two, replace the scratch off layer, put the unactivated gift card back on the shelf. Then after you activate the gift card at the checkout, they redeem it.

[/Quote]

From this discussion

https://www.ozbargain.com.au/node/937339





This is why Target doesn't have the activation code on their gift cards anymore, you have to have it added with a sticker when it is being activated now, and then scratch it off.

How does the scammer know when the card is activated? Do they just leave a script running, trying over and over to redeem the card until it works?

Yes, I think they just keep retrying the cards on a regular basis.

Surely the company could trivially detect that?

They try, but a combination of multiple layers of work arounds used by the attackers, and a strong desire not to false positive legitimate voucher buyers means there’s always a way.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: