CYBERSECURITYTRACKER
TRACKING
Permanent story citation

WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4527

As cited

Copy frozen at (site build).

threat intel

WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud

A previously unknown Android malware family called WindRelay captures contactless payment card data via NFC and relays it to attackers in real time. Deployed alongside the SpyNote remote access trojan, it enables fraudsters to intercept live payment information from compromised devices.

Why it matters: Organizations and consumers using contactless payments are exposed to real-time card data theft; practitioners should monitor for SpyNote infections and review NFC-capable device security controls.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud

A previously unknown Android malware family called WindRelay captures contactless payment card data via NFC and relays it to attackers in real time. Deployed alongside the SpyNote remote access trojan, it enables fraudsters to intercept live payment information from compromised devices.

Why it matters: Organizations and consumers using contactless payments are exposed to real-time card data theft; practitioners should monitor for SpyNote infections and review NFC-capable device security controls.

VendorsGoogle
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary