Dossier
WindRelay
Coverage of WindRelay in the Nexus archive.
- New Android malware lets criminals use your bank card in real time
Researchers at Group-IB discovered "WindRelay," a new NFC relay malware family designed to capture live card data and forward it in real time to attackers. The attack process involves tricking victims into installing an Android remote access Trojan (RAT) called SpyNote, which then enables the theft of contactless payment details from physical cards. This technology allows criminals to make purchases or withdraw cash remotely using dynamic transaction-specific codes.