Android Malware Hijacks HandyPay NFC App to Steal Card Info

Date:

New Malware Targets Android Users through Trojanized Payment App

A recent cybersecurity threat has emerged as a new variant of the NGate malware targets Android users via a compromised version of the HandyPay payment app. Discovered by ESET, this malware exploits the device’s near-field communication (NFC) capabilities to steal payment card information, which is then sent to attackers for unauthorized purchases or cash withdrawals.

Primarily affecting Android users in Brazil, the malware spreads through fake applications promising card protection and deceptive lottery websites. Users unknowingly download the malicious app and are prompted to set it as their default NFC payment method, leading to significant financial risks.

To mitigate the threat, experts advise users to avoid downloading apps from untrusted sources, disable NFC when not in use, and use Google Play Protect to scan for potential threats.

Risk Level: High

Source: View Original Report

Share post:

spot_imgspot_img

Popular

More like this
Related

Critical PHP Object Injection Vulnerability Found in GiveWP Plugin

A recently discovered vulnerability in the GiveWP plugin poses...

AI Advances Strengthen Cybersecurity: Wordfence Unveils Critical Vulnerability Discovery

Wordfence has revealed significant advancements in its incorporation of...

Critical Unauthenticated Account Takeover Vulnerability Found in TranslatePress Plugin

On August 11, 2026, a significant security vulnerability was...

Hackers Target WordPress Sites in miniOrange Authentication Bypass Attacks

In recent weeks, hackers have escalated their attacks on...