/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Inside Genesis Market, an invite-only service where cybercriminals can source cookies lifted from hacked computers, as happened with the recent EA breach

Joseph Cox / VICE : Tweets: @motherboard Tweets: @motherboard : A representative for the hackers who breached EA said they bought the cookie from a site called Genesis Market. https://www.vice.com/...

VICE Joseph Cox

Context & Ripple Effects

This piece closes the loop on the EA hackers' $10 stolen-cookie purchase: VICE goes inside Genesis Market, the invite-only storefront where those cookies were sourced, showing that session hijacking is now an off-the-shelf commodity rather than bespoke tradecraft.

The story sits inside a broader arc of criminal-market reporting — from the Gnosticplayers dump covering millions of EatStreet records to the hacked carding forum Carding Mafia — and, per the later record, it ends with the FBI and international partners seizing Genesis Market outright.

First-order effects

  • For targets like EA, the immediate exposure is that a $10 purchased cookie defeats password-based defenses entirely: the buyer walked into Slack and then talked IT support into issuing network login tokens.
  • Genesis Market sellers gain a low-friction sales channel — cookies lifted from hacked machines are packaged and sold invite-only, so victims need never appear on any breached-company notification list.

Second-order effects

  • Security teams at large enterprises are pushed to stop treating active sessions as trusted state, hardening help-desk verification and token issuance because the EA playbook — cookie plus a persuasive call to IT — is now reproducible by any marketplace customer.
  • The fraud-forum economy becomes self-cannibalizing: as Carding Mafia's own hack exposed emails, usernames, and passwords for roughly 300K of its members, these marketplaces double as high-value hacking targets.

Third-order effects

  • If the pattern holds, cookie-and-session theft becomes the front door of enterprise breaches rather than a side channel, shifting defensive budgets from perimeter authentication to session integrity — and drawing law enforcement toward marketplace takedowns, as the eventual multinational seizure of Genesis Market shows.
  • Criminal infrastructure keeps professionalizing along a supply-chain model — specialized suppliers, retail marketplaces, invite-only distribution — meaning each takedown tests whether demand simply migrates to the next venue or fragments.

The trend: Cybercrime is consolidating into turnkey commodity marketplaces where stolen sessions are bought like inventory, forcing defenders to secure sessions themselves and inviting coordinated law-enforcement seizures of the venues.

Discussion

  • @motherboard @motherboard on x
    A representative for the hackers who breached EA said they bought the cookie from a site called Genesis Market. https://www.vice.com/...