Massive surge of NFC relay malware steals Europeans’ credit cards
In recent months, researchers have found over 760 malicious Android apps that use Near-Field Communication (NFC) relay malware to steal people's payment card information, demonstrating how widespread this type of malware has become in Eastern Europe.
NFC malware exploits Android's Host Card Emulation (HCE) to imitate or steal contactless credit card and payment information, in contrast to conventional banking trojans that employ overlays to steal banking passwords or remote access tools to carry out fraudulent transactions.
EMV fields are captured, attacker-controlled replies are delivered in response to APDU instructions from a POS terminal, or terminal queries are routed to a remote server, which generates the appropriate APDU responses to allow payments at the terminal without th...



