Documents / FOIA release

Hacker Jargon

Central Intelligence Agency · 2018-09-18 · 4 pages · text from the file's own layer

This Central Intelligence Agency internal wiki page, titled Hacker Jargon and approved for release on 4 September 2018, is a glossary of terms and acronyms used by hackers and cyber criminals in underground forums. It defines terms such as BIN, botnets, carding, dumps, mules, phishing, ransomware, skimming and Track 1 and Track 2 data. Most entries relate to credit card fraud and identity theft. The page was last modified in February 2016, and it does not discuss UFOs or unidentified aerial phenomena.

(U//FUU6} Hacker jargon - CIA Wiki l
Approved for Release: 2018/09/04 C06765084 (b)(3)
encoding track information on plastic.
I Mule — middleman used to launder money. Some are recruited through “work from home schemes” and
are fooled into believing they work for a legitimate employer. Others are fully aware that they are
engaging in illegal activity. Mules usually receive 10% of the transaction.
I OS Bank — off shore bank
I Phishing - The extraction of infonnation from a target using a hook (usually an e-mail purporting to be
from a legitimate company). Phishers spam the Internet with e-mails in hopes of obtaining infonnation
that can be used for fraudulent purposes.
I Pinpads - the 10-digit keypads on ATMS used to input PINs.
I POS (Point of Sale) - Acronym for a tenninal through which credit cards are swiped in order to
communicate with processors who approve or decline transactions.
I Proxies - Tenn used for proxy servers. The use of proxy servers to mask ones identity on the Internet is
widely practiced amongst carders. Many vendors sell access to proxy servers, socks, http, https, and VPN
(Virtual Private Networks), which aide in hiding the user's actual IP address when committing fraud or
other illegal activity on the Intemet.
I Ransomware - Used by criminals to encrypt documents on a victim's computer. The criminal demands
money in exchange for the encryption key.
I RAR - a proprietary file fonnat for data compression and archiving
I Rippers - Refers to individuals who steal account infrormation.
I Roots - refers to DNS servers that resolve Internet names and IP addresses
I Scam/Scamming/Scammers — refers to phishing
I Scareware - misleading pop-up wamings that a user's computer is infected with a virus, entising the user
to click on the warning which downloads a real virus.
I Script Kiddie/kids - a new entrant into the hacker economy. The tenn does not necessarily refer to the
age of the individual - just lack of hacking and other cyber crime experience and skills.
I Shell - a software program that provides a user interface. It enables users to interact with a system through
a user-friendly interface.
I Skimming - thin overlays placed over legitimate keypads and card swipes on ATMS to capture account
infonnation.
I Socks — refers to proxies
I Spoofed/Spoofer - e-mail appears to come from one source when, in fact, it comes from another. Also,
could refer to an attempt to mislead a search engine.
I Track 1/Track 2 data - Track l and Track 2 data is the infonnation stored on the magnetic stripe of a
3 of4 Approved for Release: 2018/09/04 C06765084 6/27/2018 2:18 P

Not linked to a story yet.

About this file

FOIA release, from the cia-readingroom collection. The PDF is mirrored here; the original link is above. 4 pages are in the text index: search them above, or from the library's search.