The FBI is inspecting a dark-web service that claimed entry to 153 million driver’s license data. The Nexus assortment coated individuals throughout the USA and Canada. Some entries carried labels studying “CDL” or “ECDL.” Researchers warn that stolen credentials may complicate driver verification all through the availability chain.
“The FBI can affirm that it’s wanting into the incident,” FBI New Orleans advised BigRig. “As a result of ongoing nature of the investigation, we decline to remark additional.” Authorities haven’t recognized an affected transportation enterprise or business driver. No proof at the moment connects these data with cargo theft.
KrebsOnSecurity first reported the obvious connection involving Louisiana identification supplier IDScan.web. The corporate has not confirmed unauthorized entry involving its methods. Reuters additionally couldn’t independently set up the place the gathering originated. Federal investigators have launched no additional particulars.
IDScan.web markets CDL authentication to transportation companies. Its logistics web page shows FedEx and Tractor Provide Co., with out explaining their present platform use. An IDScan case research describes an unnamed Northeast produce distributor utilizing the corporate’s VeriScan identity-verification platform at a warehouse. The corporate targets distribution facilities, ports, freight brokers, 3PLs and motor carriers.
BigRig beforehand examined IDScan’s warnings about pretend CDLs and fictitious pickups. Chief Working Officer Jillian Kossman described criminals utilizing false credentials to impersonate reliable drivers. She defined that many fraudulent licenses seem convincing throughout visible inspection. That earlier dialogue established IDScan’s position inside pickup safety.
Nexus claimed steady entry
Nexus appeared August 31 by an commercial on the Russian cybercrime discussion board Exploit. The operator promoted greater than 160 million North American license and identification-card data. One other 10 million paperwork included journey credentials, residency playing cards and medical recordsdata. The commercial claimed roughly 500,000 contemporary additions arrived each day.
The risk actor additionally claimed persistent entry to a significant identity-verification firm and its clients. In keeping with the commercial, the operation had repeatedly collected materials for over one 12 months. These statements stay claims from the vendor quite than confirmed investigative findings. IDScan.web has not recognized any compromised buyer or platform.
Zach Edwards, workers risk researcher at Infoblox, examined Nexus earlier than the service disappeared. He discovered his personal license from a current cybersecurity convention journey in Las Vegas. Different entries contained submission dates throughout a number of days. These timestamps indicated that the gathering included lately obtained paperwork.
Brian Krebs individually watched the displayed license depend improve by practically 400,000 throughout sooner or later. He discovered CDL and ECDL labels whereas looking out unrelated names. “There have been fairly a number of in outcomes when trying to find random issues,” Krebs advised BigRig. These recordsdata confirmed no variations from different license entries.
Some states use ECDL for an enhanced business driver’s license. Nonetheless, no person has confirmed what both designation meant inside Nexus. Krebs discovered no scans tied on to freight services or business pickups. The database contained no warehouse names, cargo histories or transaction particulars.
Nexus went offline shortly after Krebs printed his findings. Its login web page displayed a message asserting that the service was now not accessible. No public proof exhibits legislation enforcement brought on that disappearance. Investigators haven’t confirmed whether or not copies stay elsewhere.
Stolen IDs may weaken pickup checks
“The truth that this risk actor has probably acquired business drivers licenses raises the stakes for freight corporations,” Edwards wrote. Prison teams already make investments important effort into showing reliable throughout cargo hijacking schemes. Genuine identification paperwork may make these impersonation makes an attempt tougher to detect. Investigators haven’t related any Nexus document with such exercise.
Many accessible recordsdata reportedly included images exhibiting either side of every card. Some entries additionally contained barcode knowledge, ultraviolet photos and infrared captures. Criminals may use full paperwork to impersonate victims throughout identification checks. Edwards warned that somebody may print fraudulent licenses utilizing real info.
“Stolen paperwork can completely defeat KYC methods,” Edwards wrote. Digital scans alone could now not present sufficient certainty throughout hiring or pickup verification. He really helpful confirming that every individual matches the introduced identification. Freight services may additionally require bodily credentials earlier than releasing cargo.
Merul Dhiman develops identity-verification know-how for FreightCheck, which serves transportation corporations. He recognized a larger concern for freight operations. “A CDL is an authorization token, not simply an ID,” Dhiman wrote. A real credential can cross validation with out confirming that the individual belongs with the cargo.
“The system confirmed the doc,” Dhiman wrote. “It by no means confirmed who was holding it.” He really helpful matching a stay individual with the authorized identification at pickup. That step connects the credential, driver and assigned load earlier than launch.
IDScan.web’s public relations agency acknowledged the BigRig inquiry and forwarded inquiries to firm representatives. No substantive response arrived earlier than publication. Reuters additionally couldn’t independently set up the reported supply. The FBI investigation stays ongoing.
Essential questions nonetheless encompass the incident. Investigators haven’t verified the marketed totals or recognized a compromised system. No one has confirmed what number of business licenses appeared inside Nexus. Authorities additionally haven’t discovered any ensuing freight fraud.
Why It Issues
Freight operations typically deal with a legitimate CDL as each identification and authorization to launch worthwhile cargo. If criminals acquire real license recordsdata, one profitable scan may launch that cargo to an impostor.
CFCO
In my view, CFCO coaching reinforces why human-level verification should occur earlier than freight leaves. An genuine CDL solely validates the doc, not the individual standing on the dock. Groups should join that particular person with the authorized provider and assigned cargo earlier than launch.
Click on right here for extra articles on cargo theft and freight fraud by Editor.
Port inspection results in $10M counterfeit Nike, Adidas seizure in California – BigRig
One grievance uncovered $800K Texas grain theft spanning 176 hundreds – BigRig
Florida AG calls semi-truck a ‘rolling dungeon’ after 4 youngsters confined for six years – BigRig
The put up FBI investigating dark-web service claiming 153M license data, elevating CDL safety issues appeared first on BigRig.


