Massive Surge of NFC Relay Malware Stealing European Credit Cards
HighWhat happened
Over 760 malicious Android applications have been identified exploiting Near-Field Communication (NFC) relay techniques to steal payment card information across Eastern Europe. These apps misuse Android's Host Card Emulation (HCE) to emulate or capture contactless credit card data, enabling unauthorized transactions without the physical cardholder's presence.
Who is affected
Individuals and financial institutions in Eastern Europe, particularly in Poland, the Czech Republic, and Russia, are the primary targets of these NFC relay malware attacks.
Why it matters
The rapid proliferation of NFC relay malware poses a significant threat to the security of contactless payment systems, leading to potential financial losses for consumers and reputational damage for financial institutions. The sophistication of these attacks makes detection and prevention more challenging.
How it could have been prevented
Implementing robust security measures such as multi-factor authentication for transactions, educating users about the risks of downloading unverified applications, and enhancing monitoring systems to detect unusual transaction patterns could mitigate the impact of such malware.
Relevant professional terms
- Near-Field Communication (NFC)
- A short-range wireless technology that enables data exchange between devices in close proximity, commonly used for contactless payments.
- Host Card Emulation (HCE)
- A technology that allows software emulation of a payment card on a mobile device, enabling it to perform contactless transactions without needing a physical card.
Recommended reading: Kaspersky Blog on NFC Carding Theft
