As cited
Citation snapshot as of .
threat intel
Android malware combo takes out loans and relays victims' credit cards
A new Android malware called WindRelay exploits NFC communication to intercept credit card data in real time and works in tandem with SpyNote remote administration tool (RAT) to exfiltrate payment information. The malware also facilitates fraudulent loan applications using stolen victim credentials. Attackers relay the captured card data to themselves immediately, enabling rapid monetization of compromised devices.
Why it matters: Android users with NFC-enabled devices face immediate risk of payment card theft and fraud if malware is installed; defenders should monitor for SpyNote infections and unusual loan application activity tied to customer accounts.
- Source published
- First seen by Cybersecurity Tracker