Computer security

Millions of credit card details stolen from the Bank of Costa Rica

Maze ransomware actors have breached inside Banco BCR, a state-owned Bank of Costa Rica and have stolen 11 million credit card details. These Maze actors were already behind the number of cyberattacks across the world in recent times, the data breaches of CognizantBouygues Construction, Cyber insurer Chubb and UK-based medical agency

Maze have also mentioned in their website that they had already breached Banco BCR in August 2019, and stole some information but did not encrypt the data as that could damage the firm heavily. Furthermore, it appears that the bank had not secured their servers and networks till now, which allowed Maze actors to breach the bank network again in February 2020 and steal plenty of credit card credentials. Considering the global pandemic, the hackers did not encrypt the data for the second time as well.

Out of the 11 million credit cards, 4 million are unique and 140,000 belongs to the USA residents. Moreover, to ensure the proof of theft Maze has posted the credit card details of 240 people including validity information and credit card verification codes but without the final four digits of the credit card. 

It appears the actors have tried to contact the bank and demand for the ransom, but has not received any response for their messages, and so Maze actors have mentioned, if there is no response from the bank then the stolen information will be sold in the dark web. If people need to confirm whether their card is secured, they need to contact the Banco BCR, and confirm the safety of their credit cards. It is appropriate for the Banco BCR to publish the data breach information to the public and its customers. 

Robust cybersecurity protocols are a must all time, especially financial institutions, should be on high alert. Banking trojans have become a prevalent security issue in recent times, and these institutions need to improvise their cybersecurity strategies, policies, configurations and awareness to keep their organization in the game.  

Subscribe to our newsletter for daily alerts on cyber events, you can also follow us on FacebookLinkedinInstagramTwitter and Reddit.   

Share the article with your friends
William Marshal

William has been one of the key contributors to 'The Cybersecurity Times' with 9.5 years of experience in the cybersecurity journalism. Apart from writing, he also like hiking, skating and coding.

View Comments

Recent Posts

Top 9 Best Log Management Tools for 2025

Discover the best log management tools for efficient system management and monitoring. Learn about the…

6 months ago

Top 4 Remote Support Tools for 2025- Best Remote Support Solution

Taking remote of devices and managing them will make thing simple for IT admins. In…

6 months ago

Top 5 Best Unified Endpoint Management (UEM) Software for 2025

In 2024, the Unified Endpoint Management Software market will continue to evolve and here are…

6 months ago

Top 5 Threat Intelligence Tools For 2025

Explore the top 5 threat intelligence tools, their features, and how they enhance cybersecurity against…

7 months ago

Top 5 Best Microsoft Intune Alternatives to Consider for 2025

Explore the top 5 best Microsoft Intune alternatives, comparing key features, user reviews, and capabilities…

8 months ago

Recast Software: Advanced Endpoint Management and Security Tools for IT Teams

Recast Software offers a suite of tools designed to enhance and simplify endpoint management in…

1 year ago