Risk
7/2/2008
07:07 PM
Connect Directly
Google+
LinkedIn
Twitter
RSS
E-Mail
50%
50%

High-Tech Card Cheat Pleads Guilty

One of the devices used by the group was a wireless transmitter to anticipate the cards players would be dealt, according to a Justice Department indictment.

Between March 2003 and July 2006, the Tran Organization -- a group of high-tech card cheats -- scammed casinos around the country for about $7 million. On one occasion, they made $868,000 in about 90 minutes.

On Tuesday, the U.S. Department of Justice said that Son Hong Johnson, one of the members of the group, had pleaded guilty to cheating casinos around the country. He is the 11th defendant to plead guilty out of 13 individuals named in an indictment returned on May 22, 2007.

One of the defendants, Han Truong Nguyen, was sentenced in May to 27 months in prison and ordered to pay $1,896,659 in restitution. The remanding defendants await sentencing. Johnson is scheduled to be sentenced in December.

According to the indictment, the group would bribe card dealers at casinos to create a false shuffle that returned a group of cards to the deck in a known order. This "slug" of cards enabled Tran members to anticipate the cards players would be dealt.

One member of the group would act as "card recorder" and would note at least some of the cards dealt during the course of play. "During mini-baccarat games, the card recorder usually would record the value of the cards on a paper form the casino provided to mini-baccarat players in the normal course of play," the indictment said. "In blackjack games, the card recorder would use a hidden transmitter or microphone and a cellular telephone to relay the order of the cards to an enterprise member or associate, who would enter the order of the cards into a computer program loaded with a specially designed card tracking computer program."

One of the devices used by the group was a wireless transmitter purchased from the Spy Shops of the U.S. and Canada. The indictment does not specifically name the device used, but it may have been what the site calls the wireless in-ear cellular communicator ($950), which is designed for covert communication.

The group didn't always win. Indeed, the indictment said that the group sometimes lost intentionally to deflect suspicion. In addition, members sometimes made mistakes in the execution of their scheme, resulting in losses.

Members of the group often cashed out with gambling winnings of less than $10,000 to avoid federal reporting requirements.

Still, they weren't careful enough. The indictment does not specify how the group was finally identified and caught, but it may have had something to do with an attempt to fleece the Imperial Palace Casino in Biloxi, Miss., that went awry.

In June 2006, one of the defendants attempted to bribe an undercover agent at the Imperial Palace. That's the sort of misstep that's likely to bring unwanted attention from law enforcement authorities.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading, January 2015
To find and fix exploits aimed directly at your business, stop waiting for alerts and become a proactive hunter.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-7402
Published: 2014-12-17
Multiple unspecified vulnerabilities in request.c in c-icap 0.2.x allow remote attackers to cause a denial of service (crash) via a crafted ICAP request.

CVE-2014-5437
Published: 2014-12-17
Multiple cross-site request forgery (CSRF) vulnerabilities in ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) enable remote management via a request to remote_management.php,...

CVE-2014-5438
Published: 2014-12-17
Cross-site scripting (XSS) vulnerability in ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier allows remote authenticated users to inject arbitrary web script or HTML via the computer_name parameter to connected_devices_computers_edit.php.

CVE-2014-7170
Published: 2014-12-17
Race condition in Puppet Server 0.2.0 allows local users to obtain sensitive information by accessing it in between package installation or upgrade and the start of the service.

CVE-2014-7285
Published: 2014-12-17
The management console on the Symantec Web Gateway (SWG) appliance before 5.2.2 allows remote authenticated users to execute arbitrary OS commands by injecting command strings into unspecified PHP scripts.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Join us Wednesday, Dec. 17 at 1 p.m. Eastern Time to hear what employers are really looking for in a chief information security officer -- it may not be what you think.