Risk
7/2/2008
07:07 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

High-Tech Card Cheat Pleads Guilty

One of the devices used by the group was a wireless transmitter to anticipate the cards players would be dealt, according to a Justice Department indictment.

Between March 2003 and July 2006, the Tran Organization -- a group of high-tech card cheats -- scammed casinos around the country for about $7 million. On one occasion, they made $868,000 in about 90 minutes.

On Tuesday, the U.S. Department of Justice said that Son Hong Johnson, one of the members of the group, had pleaded guilty to cheating casinos around the country. He is the 11th defendant to plead guilty out of 13 individuals named in an indictment returned on May 22, 2007.

One of the defendants, Han Truong Nguyen, was sentenced in May to 27 months in prison and ordered to pay $1,896,659 in restitution. The remanding defendants await sentencing. Johnson is scheduled to be sentenced in December.

According to the indictment, the group would bribe card dealers at casinos to create a false shuffle that returned a group of cards to the deck in a known order. This "slug" of cards enabled Tran members to anticipate the cards players would be dealt.

One member of the group would act as "card recorder" and would note at least some of the cards dealt during the course of play. "During mini-baccarat games, the card recorder usually would record the value of the cards on a paper form the casino provided to mini-baccarat players in the normal course of play," the indictment said. "In blackjack games, the card recorder would use a hidden transmitter or microphone and a cellular telephone to relay the order of the cards to an enterprise member or associate, who would enter the order of the cards into a computer program loaded with a specially designed card tracking computer program."

One of the devices used by the group was a wireless transmitter purchased from the Spy Shops of the U.S. and Canada. The indictment does not specifically name the device used, but it may have been what the site calls the wireless in-ear cellular communicator ($950), which is designed for covert communication.

The group didn't always win. Indeed, the indictment said that the group sometimes lost intentionally to deflect suspicion. In addition, members sometimes made mistakes in the execution of their scheme, resulting in losses.

Members of the group often cashed out with gambling winnings of less than $10,000 to avoid federal reporting requirements.

Still, they weren't careful enough. The indictment does not specify how the group was finally identified and caught, but it may have had something to do with an attempt to fleece the Imperial Palace Casino in Biloxi, Miss., that went awry.

In June 2006, one of the defendants attempted to bribe an undercover agent at the Imperial Palace. That's the sort of misstep that's likely to bring unwanted attention from law enforcement authorities.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2012-4988
Published: 2014-07-09
Heap-based buffer overflow in the xjpegls.dll (aka JLS, JPEG-LS, or JPEG lossless) format plugin in XnView 1.99 and 1.99.1 allows remote attackers to execute arbitrary code via a crafted JLS image file.

CVE-2014-0207
Published: 2014-07-09
The cdf_read_short_sector function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted CDF file.

CVE-2014-0537
Published: 2014-07-09
Adobe Flash Player before 13.0.0.231 and 14.x before 14.0.0.145 on Windows and OS X and before 11.2.202.394 on Linux, Adobe AIR before 14.0.0.137 on Android, Adobe AIR SDK before 14.0.0.137, and Adobe AIR SDK & Compiler before 14.0.0.137 allow attackers to bypass intended access restrictions via uns...

CVE-2014-0539
Published: 2014-07-09
Adobe Flash Player before 13.0.0.231 and 14.x before 14.0.0.145 on Windows and OS X and before 11.2.202.394 on Linux, Adobe AIR before 14.0.0.137 on Android, Adobe AIR SDK before 14.0.0.137, and Adobe AIR SDK & Compiler before 14.0.0.137 allow attackers to bypass intended access restrictions via uns...

CVE-2014-3309
Published: 2014-07-09
The NTP implementation in Cisco IOS and IOS XE does not properly support use of the access-group command for a "deny all" configuration, which allows remote attackers to bypass intended restrictions on time synchronization via a standard query, aka Bug ID CSCuj66318.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Marilyn Cohodas and her guests look at the evolving nature of the relationship between CIO and CSO.