• XSS.stack #1 – первый литературный журнал от юзеров форума

Статья Carding Knowledge everything what I know

Backstab

(L3) cache
Забанен
Регистрация
22.12.2022
Сообщения
151
Реакции
176
Пожалуйста, обратите внимание, что пользователь заблокирован
MY ENGLISH IS PURE CHAOS SO FORGIVE ME THAT,WARNING AFTER READING YOU CAN BE MORE CONFUSED NOT FROM INFORMATIONS BUT FROM MY CUSTOM ENGLISH,
MADE BY BACKSTAB,EVERYTHING IS WRITTEN BY MYSELF,NOTHING ON THIS POST i NOT COPY/PASTE FROM ANOTHER SOURCE,ENJOY


because people share knowledge and users help each other so I want too bring something useful to community and its be just my experience and knowledge
please don't expect any methods I just want update some information what you could find in guides

also I am not expert there I just want help and share my experience
i know we cannot share together working methods because its be fast burned but i think people must have valid information from which can learn so lets go start

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Carding is not same like vendors,scammers present to You
a lot information what you could find on clear net or even on other forums is outdated

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
1. EASY/SIMPLE BASIC INFORMATION

Few example what I found on outdated or even forums,guides

- use Firefox and extension ( for example to load PayPal account with cookies )
that's was probably work few years ago but now its anti-fraud system more better and extension could be detected
anyways Mozilla Firefox have high Spyware level so I think its not safe like people say

Screenshot_2023-01-13_22-27-14.png


- use Virtual Machine
again that's was probably work few years ago but now its can be again detected ( check attach file to proof my information )
also its you can setup VM to not be detected but that's nobody cannot know when people don't tell you that
also maybe a lot people don't know how dangerous is Mozilla Firefox ( check attach file to proof my information )
you can easily solved use arkenfox ( https://github.com/arkenfox/user.js )


Screenshot_2023-01-13_22-18-49.png



I can continue more because there is many things but I don't want waste your time and I just want proof my information
don't forget check attachment

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
I remember times when people on Carding groups on Telegram don't care about security and OpSec everyone want just fast money but nobody want learn
so let me tell you few basic problem with carding and payments what people have
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
1 - CARD IS DEAD
2 - BAD PROXY

3 - BAD SETTING/SETUP
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
1 - CAN BE EASILY SOLVED OVER VERIFIED CHECKER FOR CARDS
2 - ITS MORE COMPLICATED FOR THIS REASON CHECK
( check attach file to proof my information )
a) You must always check anti-fraud score under 0-20 is okay that was you see on screenshot its bad and never works for payment
b) DNS LEAK MUST MATCH WITH ISP
EXAMPLE : COMCAST CABLE ( SOCKS5 ) MUST HAVE COMCAST CABLE ( DNS ) THAT'S CORRECT
COMCAST CABLE ( SOCKS5 ) HAVE GOOGLE OR ANOTHER DNS IS WRONG AND AGAIN NEVER WORK PROPERLY FOR PAYMENTS
Screenshot_2023-01-13_22-38-06.png



Screenshot_2023-01-13_22-41-44.png


3 - ITS MOST COMPLICATED AND ITS BE VERY HARD FOR ME DESCRIBE AND EXPLAIN WHAT I CURRENT MEAN

Now i don't want immediately jump how properly setup your device but I want write my theory with some examples ( some information can be repeated )

- like i said its most complicated thing and for me its hard describe in this post but let me start from begin
when i was start with carding i was read guides where vendors write "use Firefox and use extension" now we know its bad because its can be detected

for example do you know what is device fingerprints or even browser fingerprints/canvas fingerprints
do you know webGL could detect your GPU ?

do you know TCP/IP could detect your real OS ? ( so when spoofing from Linux to Windows over some anti-detect browser TCP/IP could be problem )

i am pretty sure some things you don't know before that you read this and don't worry its not reason to be shamed,
this problematic about browser I be explain more and when you have over 20 reactions on your account you can check it



- many people tell you use RDP and there can be again some problem because many vendors sell VM RDP and that's real problem
be honest i know how its be flustered why payments not work and you just read again outdated guides and think what you was doing wrong

now be honest and buy physical RDP can be for many us problem and expensive as hell,so for this reason I was start from begin and that was download Linux and try hack owns RDP
because my theory is carders want fast and easy money but they don't start from begin but somewhere from middle

simple who hack RDP ( hackers ) vendors just sell they
who phish cards ( phishers ) and again vendors many times don't have any idea how use they just sell

so I think its perfect and fine to download some Linux and start from begin and try hack own RDP or even get some experience about phishing

now another example many scammers sell method+bin but let me tell you secret and that's every site is cardable You need always just non-vbv bin
but also I want say its can be true and some sites is more hard to card than others

now my personal experience when I was bought gift cards
on sites egifter,dundle I maked purchase 50$ Steam gift card and after I try bought another they want DL FRONT+BACK ( maybe selfie ) what must match with victim on card and for that i was not ready

so that's another problem You was come to do carding and you never think about ( like make digital DL over photoshop and PSD templates )
and be honest that's fucking hell because every state in USA have different PSD template and different PDF417 barcode

Yes i know its better ways how cash out card but everyone tell you buy gift cards or even crypto ( its same difficult )
simple to say I recommend to use android phone rooted,custom rom and etc

- FLASH TWRP
- CUSTOM ROM WITHOUT GAPPS
- FLASH MAGISK
- MOST IMPORTANT IS USE XPOSED MODULES


2. EXAMPLE OF CARDING/BASIC INFORMATION

 

Вложения

  • Screenshot_2023-01-13_23-37-43.png
    Screenshot_2023-01-13_23-37-43.png
    26 КБ · Просмотры: 496
Последнее редактирование:
Пожалуйста, обратите внимание, что пользователь заблокирован
FREE NON-VBV USA BIN
https://xss.pro/threads/79560/post-552335
 
Пожалуйста, обратите внимание, что пользователь заблокирован
USA ULTIMATE ID PACK ( PSD TEMPLATES ) FREE
https://xss.pro/threads/79319/
 
Пожалуйста, обратите внимание, что пользователь заблокирован
1st you're right about opsec but a many like us care about security. 2nd you can hire someone to code a anti-vm detection script or if you know how to code you code you can do this even if you know javascript. 3rd you're wrong Carding is not dead, hundreds and thousands of people are doing carding. People just want easy cashout methods, they don't want to invest in themselves. Remember a real carder never reveals his method, not to burn that. thanks.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
1st you're right about opsec but a many like us care about security. 2nd you can hire someone to code a anti-vm detection script or if you know how to code you code you can do this even if you know javascript. 3rd you're wrong Carding is not dead, hundreds and thousands of people are doing carding. People just want easy cashout methods, they don't want to invest in themselves. Remember a real carder never reveals his method, not to burn that. thanks.
Maybe my English is problem to You understand what I mean
3rd but I don't write anything about carding dead

look you miss reaction on your account too see clearly all post
2nd You dont hire someone there is many scripts open source for anti Virtual machine detection ,You can check on github

I was mean this information is not included on guides or even post and when yes its minimal and simple many people dont know,about VM detection
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Maybe my English is problem to You understand what I mean
3rd but I don't write anything about carding dead

look you miss reaction on your account too see clearly all post
2nd You dont hire someone there is many scripts open source for anti Virtual machine detection ,You can check on github

I was mean this information is not included on guides or even post and when yes its minimal and simple many people dont know,about VM detection
thanks
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Maybe my English is problem to You understand what I mean
3rd but I don't write anything about carding dead

look you miss reaction on your account too see clearly all post
2nd You dont hire someone there is many scripts open source for anti Virtual machine detection ,You can check on github

I was mean this information is not included on guides or even post and when yes its minimal and simple many people dont know,about VM detection
can you share links for open source scripts for spoofing vm? i wanna tr
 
Пожалуйста, обратите внимание, что пользователь заблокирован
can you share links for open source scripts for spoofing vm? i wanna tr
There you have nice article with example how do that,Evasions technique for Virtual Machine
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Do you want continue ?
 
"but unlucky for me over https://abrahamjuliot.github.io/creepjs i was always detected and I litteraly spend with puppeteer few days
anyways with anti-detect browser I don't have good experience many of they are build for affiliate marketing ,so when you have own source or even something not publicly available its can works"


If you have a correct setup, with an actually working antidetect you can get a score 71.5%-75% just like normal chrome. This score is similar on android chrome too.
 
Последнее редактирование:
Пожалуйста, обратите внимание, что пользователь заблокирован
about next week be ready to new article how make from your android fraud machine
 
MY ENGLISH IS PURE CHAOS SO FORGIVE ME THAT,WARNING AFTER READING YOU CAN BE MORE CONFUSED NOT FROM INFORMATIONS BUT FROM MY CUSTOM ENGLISH,
MADE BY BACKSTAB,EVERYTHING IS WRITTEN BY MYSELF,NOTHING ON THIS POST i NOT COPY/PASTE FROM ANOTHER SOURCE,ENJOY


because people share knowledge and users help each other so I want too bring something useful to community and its be just my experience and knowledge
please don't expect any methods I just want update some information what you could find in guides

also I am not expert there I just want help and share my experience
i know we cannot share together working methods because its be fast burned but i think people must have valid information from which can learn so lets go start

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Carding is not same like vendors,scammers present to You
a lot information what you could find on clear net or even on other forums is outdated

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
1. EASY/SIMPLE BASIC INFORMATION

Few example what I found on outdated or even forums,guides

- use Firefox and extension ( for example to load PayPal account with cookies )
that's was probably work few years ago but now its anti-fraud system more better and extension could be detected
anyways Mozilla Firefox have high Spyware level so I think its not safe like people say

Посмотреть вложение 49847

- use Virtual Machine
again that's was probably work few years ago but now its can be again detected ( check attach file to proof my information )
also its you can setup VM to not be detected but that's nobody cannot know when people don't tell you that
also maybe a lot people don't know how dangerous is Mozilla Firefox ( check attach file to proof my information )
you can easily solved use arkenfox ( https://github.com/arkenfox/user.js )


Посмотреть вложение 49846



I can continue more because there is many things but I don't want waste your time and I just want proof my information
don't forget check attachment

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
I remember times when people on Carding groups on Telegram don't care about security and OpSec everyone want just fast money but nobody want learn
so let me tell you few basic problem with carding and payments what people have
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
1 - CARD IS DEAD
2 - BAD PROXY

3 - BAD SETTING/SETUP
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
1 - CAN BE EASILY SOLVED OVER VERIFIED CHECKER FOR CARDS
2 - ITS MORE COMPLICATED FOR THIS REASON CHECK
( check attach file to proof my information )
a) You must always check anti-fraud score under 0-20 is okay that was you see on screenshot its bad and never works for payment
b) DNS LEAK MUST MATCH WITH ISP
EXAMPLE : COMCAST CABLE ( SOCKS5 ) MUST HAVE COMCAST CABLE ( DNS ) THAT'S CORRECT
COMCAST CABLE ( SOCKS5 ) HAVE GOOGLE OR ANOTHER DNS IS WRONG AND AGAIN NEVER WORK PROPERLY FOR PAYMENTS
Посмотреть вложение 49848



Посмотреть вложение 49849

3 - ITS MOST COMPLICATED AND ITS BE VERY HARD FOR ME DESCRIBE AND EXPLAIN WHAT I CURRENT MEAN

Now i don't want immediately jump how properly setup your device but I want write my theory with some examples ( some information can be repeated )

- like i said its most complicated thing and for me its hard describe in this post but let me start from begin
when i was start with carding i was read guides where vendors write "use Firefox and use extension" now we know its bad because its can be detected

for example do you know what is device fingerprints or even browser fingerprints/canvas fingerprints
do you know webGL could detect your GPU ?

do you know TCP/IP could detect your real OS ? ( so when spoofing from Linux to Windows over some anti-detect browser TCP/IP could be problem )

i am pretty sure some things you don't know before that you read this and don't worry its not reason to be shamed,
this problematic about browser I be explain more and when you have over 20 reactions on your account you can check it



- many people tell you use RDP and there can be again some problem because many vendors sell VM RDP and that's real problem
be honest i know how its be flustered why payments not work and you just read again outdated guides and think what you was doing wrong

now be honest and buy physical RDP can be for many us problem and expensive as hell,so for this reason I was start from begin and that was download Linux and try hack owns RDP
because my theory is carders want fast and easy money but they don't start from begin but somewhere from middle

simple who hack RDP ( hackers ) vendors just sell they
who phish cards ( phishers ) and again vendors many times don't have any idea how use they just sell

so I think its perfect and fine to download some Linux and start from begin and try hack own RDP or even get some experience about phishing

now another example many scammers sell method+bin but let me tell you secret and that's every site is cardable You need always just non-vbv bin
but also I want say its can be true and some sites is more hard to card than others

now my personal experience when I was bought gift cards
on sites egifter,dundle I maked purchase 50$ Steam gift card and after I try bought another they want DL FRONT+BACK ( maybe selfie ) what must match with victim on card and for that i was not ready

so that's another problem You was come to do carding and you never think about ( like make digital DL over photoshop and PSD templates )
and be honest that's fucking hell because every state in USA have different PSD template and different PDF417 barcode

Yes i know its better ways how cash out card but everyone tell you buy gift cards or even crypto ( its same difficult )
simple to say I recommend to use android phone rooted,custom rom and etc

- FLASH TWRP
- CUSTOM ROM WITHOUT GAPPS
- FLASH MAGISK
- MOST IMPORTANT IS USE XPOSED MODULES


2. EXAMPLE OF CARDING/BASIC INFORMATION

Hidden content











Hidden content[/LIKES][/LIKES][/LIKES]
appreciated
 
Great review for the newbs like me who missed out on the good old days. The VPN/VM/RDP approach is mostly dead. It can work, but there are way too many moving pieces and even one of them being sus will kill the transaction. If you're lucky, you'll live in a larger metro with plenty of trusted wifi hotspots e.g. starbucks and such. Then all you need is any cheapass android phone that can be rooted. You'll also need a source of non-virtual phone numbers that can receive SMS and aren't blacklisted. If the phone number can pass a gmail account verification, it'll raise the trust factor significantly.

Another thing to know is how to verify cards fast without burning them. Autoshop checkers are pretty much guaranteed to kill a good card after returning a valid card result. Then you get no refund and a dead card that may have been good five minutes ago. There are still plenty of websites, especially fast food chains that will let you type in a different names and CC #s one after another until one finally goes through.
 
Great review for the newbs like me who missed out on the good old days. The VPN/VM/RDP approach is mostly dead. It can work, but there are way too many moving pieces and even one of them being sus will kill the transaction. If you're lucky, you'll live in a larger metro with plenty of trusted wifi hotspots e.g. starbucks and such. Then all you need is any cheapass android phone that can be rooted. You'll also need a source of non-virtual phone numbers that can receive SMS and aren't blacklisted. If the phone number can pass a gmail account verification, it'll raise the trust factor significantly.

Another thing to know is how to verify cards fast without burning them. Autoshop checkers are pretty much guaranteed to kill a good card after returning a valid card result. Then you get no refund and a dead card that may have been good five minutes ago. There are still plenty of websites, especially fast food chains that will let you type in a different names and CC #s one after another until one finally goes through.
I don't know who told you it's a good idea to use a rooted mobile device but that is almost always going to significantly increase risk metrics and there can be valid argument made against the suggestion of using "any cheap ass android" phone as well
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх