Memory-scraping malware explained

Memory-scraping malware or RAM Scrapping malware is a malware that scans the memory of digital devices, notably point-of-sale (POS) systems, to collect sensitive personal information, such as credit card numbers and personal identification numbers (PIN) for the purpose of exploitation.[1]

Operation

The magnetic stripe of payment cards hold three different data tracksTrack 1, Track 2 and Track 3.[2] The POS RAM scrapers were created to implement the use of expression matches to gain access and collect the Track 1 and Track 2 card data from the RAM process memory. Some RAM scrapers use the Luhn algorithm to check the validity of card data before exfiltration.[3]

See also

Notes and References

  1. Web site: Memory Scraping Malware . 2015-02-12.
  2. Web site: POS RAM Scraper Malware . 2015-11-18.
  3. Web site: Exfiltration of Data with POS RAM Scraper Malware . November 29, 2017.