Google hijacking credit card details?

datadyn

Active Member
Joined
Apr 24, 2005
Messages
54
Reaction score
5
Trying to set up my Chromecast on a new router and according to Google help files I can setup the chromecast from the Google Home app so I downloaded it from the Playstore and started completing all the data required - when it came to the section where it wants my credit card details to verify me ( the program says it is only for verification purposes, no money will be debited ) and while I'm still busy completing the details I get a message saying the credit card had been declined and at the same time I get Whatsapp message from ABSA with a fraud alert stating that a R765.64 transaction to MKMSCTG.COM has been made but they blocked the transaction and asking me if the transaction is frauulent and if so to to select Y which I duly did and about a minute later I get a call from them giving me the fraud department's telephone number and asking me to contact them. The gentleman at their fraud department said MKMSCTG.COM is on their black list hence the imediate blocking of the transaction and furhermore they blocked the debit card as it has now been compromised. Got a new one from the bank today. Now the interesting part is the debit card is used mainly for food purchaes from either Pick & Pay or Checkers with the last transaction being about a week ago so the question remains - who tried to use the debit card details? I'm running Symantec Anti-Virus as well as Malware Bytes so everything is locked down tight from my side. By the way no ways in hell am I going to use the Chromecast.
 
//paragraphs\\
ChatGPT to the rescue:

Certainly! Here's a more readable version of the text:

I was trying to set up my Chromecast on a new router, and according to Google help files, I can set up the Chromecast from the Google Home app. So, I downloaded it from the Playstore and started completing all the required data. When I reached the section asking for my credit card details for verification purposes (the program claimed no money would be debited), I received a message stating that the credit card had been declined.

At the same time, I received a WhatsApp message from ABSA with a fraud alert, mentioning a R765.64 transaction attempt to MKMSCTG.COM. They blocked the transaction and asked if it was fraudulent, to which I responded "Yes." Shortly after, I received a call from them, providing the fraud department's telephone number and urging me to contact them.

The gentleman at their fraud department explained that MKMSCTG.COM is on their blacklist, leading to the immediate blocking of the transaction. Additionally, they blocked the debit card as it had been compromised. I obtained a new card from the bank today.

The intriguing part is that the debit card is primarily used for food purchases from either Pick & Pay or Checkers, with the last transaction occurring about a week ago. This raises the question: who attempted to use the debit card details? I have Symantec Anti-Virus and Malware Bytes installed, ensuring tight security from my end. By the way, I've decided not to use the Chromecast under any circumstances.
 
Has to be, my Home app has never asked me for my card details
Yeah. Thinking about it now, my card details are stored on Google. I don't submit them again when making play store purchases.
 
Attempting to install "Google home" caught me out as well.
Above the google home app install link is an app for chromecasting which I clicked instead of google home. Google is becoming more and more sneaky. This chromecasting app asked me for credit card details.

Screenshot.jpg
 
Last edited:
Attempting to install "Google home" caught me out as well.
Below the google home app is an app for chromecasting which I clicked instead of google home. Google is becoming more and more sneaky. This chromecasting app asked me for credit card details.

View attachment 1640405
The obvious give away there is the developer
 
Attempting to install "Google home" caught me out as well.
Below the google home app is an app for chromecasting which I clicked instead of google home. Google is becoming more and more sneaky. This chromecasting app asked me for credit card details.

View attachment 1640405
Not really but users are becoming more and more dense perhaps?
 
This from where I downloaded the app and Google had all my details up to my debit card number details which I had to enter to verify my identity: https://play.google.com/store/apps/details?id=com.google.android.apps.chromecast.app so no dodgy apps and this was done on a standalone Core i7 that is used only for Internet purchases or driver downloads and not connected to the network with an automated anti-virus scan by both Symantec and Malware Bytes.
ABSA is really on the ball, I have had a recent faily large Amazon gift card purchase for my daughter blocked at first and then I had a call to verify whether it was legit or not.
 
This from where I downloaded the app and Google had all my details up to my debit card number details which I had to enter to verify my identity: https://play.google.com/store/apps/details?id=com.google.android.apps.chromecast.app so no dodgy apps and this was done on a standalone Core i7 that is used only for Internet purchases or driver downloads and not connected to the network with an automated anti-virus scan by both Symantec and Malware Bytes.
ABSA is really on the ball, I have had a recent faily large Amazon gift card purchase for my daughter blocked at first and then I had a call to verify whether it was legit or not.

Suffice to say, Google had nothing to do with it. Your details were compromised somewhere else
 
The puzzling part is the moment that I entered my Gmail email address Google had all the rest of the correct details and after entering the debit card details I put the debit card back in my wallet and was still busy entering the next part which was the area code when the error message popped up to say the card was decined and straight after that the message from ABSA was received to say the transaction was blocked.
I have attended several RSA Conferences so I am not a novice when it comes to cyber security and this whole episode is puzzling to say the least.
 
The puzzling part is the moment that I entered my Gmail email address Google had all the rest of the correct details and after entering the debit card details I put the debit card back in my wallet and was still busy entering the next part which was the area code when the error message popped up to say the card was decined and straight after that the message from ABSA was received to say the transaction was blocked.
I have attended several RSA Conferences so I am not a novice when it comes to cyber security and this whole episode is puzzling to say the least.

I have attended 0 RSA conferences, and I hear you, but what you are suggesting simply seems implausible in my book.
What EXACT card details did you enter? Full 16 digits? Name surname? EXP and cvv? If you entered all of that, it was passed over to Google, and anything in the chain couldve been compromised. You say the PC is 'secure', but what about your router? What if you have some 0day on your PC etc? Those angles are much more probable than what you are suggesting.
 
Top
Sign up to the MyBroadband newsletter
X