NFC Relay Apps Threaten Global Banking Security

30 Oct 2025

Cybersecurity firm zLabs reported a growing threat to mobile payment security: over 760 malicious Android apps exploiting NFC relay are targeting banks globally.

Global Operation Details

Since 2024-04, this campaign has evolved from isolated incidents to a coordinated scale, affecting countries like Russia, Poland, and Brazil. These apps impersonate about 20 legitimate entities like VTB Bank and Tinkoff Bank.

  • Threat actors set up around 70 command-and-control servers.
  • Data exfiltration utilizes Telegram bots and private channels.
  • Apps mimic legitimate banking portals to deceive users.

Technical Exploitation and Methods

NFC and Host Card Emulation (HCE) are central to these apps, which function as paired systems: one app extracts data, the other interfaces with point-of-sale systems. Background services intercept NFC events, using HostApduService to relay APDUs between devices. Names are masqueraded to appear as trusted banks or services.

  • Command-and-control uses WebSocket for key functions.
  • Critical commands include APDU relays and device registration.
  • Use of code obfuscation with JSONPacker complicates analysis.

Banking Sector Implications

The NFC relay-based fraud campaign highlights vulnerabilities in mobile financial systems. It underscores the need for enhanced scrutiny of app permissions related to NFC payments, calling for vigilance among financial institutions and increased security measures to protect consumer data.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
6313777
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1241822
downloads
WinRAR

WinRAR

Latest update WinRAR download for free for Windows PC or Android mobile

5
735 reviews
488993
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
452496
downloads

News and reviews for Mobile Android

X Chat to Challenge WhatsApp with Better Encryption

Elon Musk to unveil X Chat, a highly encrypted app like Bitcoin, in months.

Read more

Google Adds Min Mode to Android 17 Displays

Android 17 introduces Min Mode, allowing full-screen apps on AOD for efficiency.

Read more

Android App Discounts: Top Game Deals Available Now

Discounts on popular Android games, including Kingdom Rush 5, available now. Deals aim to attract gamers with price cuts on various titles.

Read more

New Android Deals Include Kingdom Rush 5, Super Onion Boy 2

Discover discounted Android apps and games, including Kingdom Rush 5, Super Onion Boy 2, and more exciting deals.

Read more

Top 2025 Android Apps for Advanced Photo Editing

Explore top Android apps for photo editing in 2025. Find tools like Luminar Mobile and VSCO that enhance mobile photography with AI and ease.

Read more

Apple Introduces Swift SDK for Android App Development

Apple released the Swift SDK for Android, aiding developers in porting Swift packages to Android, enhancing cross-platform code sharing.

Read more

Learning from Android App Development Challenges

New developers of Android can avoid key challenges by understanding native code advantages and practical testing approaches.

Read more

Adobe's Project Pulsar Enhances Samsung Galaxy XR with Depth Editing

Project Pulsar enhances Samsung Galaxy XR with depth-oriented video editing, supported by Adobe, offering spatial computing experiences.

Read more

Google's Android 'MinMode' Upgrade Enhances Always-On Display

Google introduces MinMode for Android, enhancing always-on displays to show app content and improve utility.

Read more

Google Play Store Adds AI Review Summaries for Users

Google now offers AI-generated review summaries on the Play Store, aiding users in app evaluation.

Read more