These keys are effectively serial numbers, not blinded tokens, right? Why don't the original sellers just revoke ones that were obtained through credit card fraud?
They still had to eat the $20 fee per fraudulent transaction and deal with the pissed off customers though.