It's unfortunate yes but that's what drives the threat signatures
edit: it's noted downthread that automated testing of card details to find valid ones is a reason.
It's unfortunate yes but that's what drives the threat signatures