Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    UAE unveils world’s first clinical AI scientist to help doctors make faster decisions

    June 17, 2026

    World Cup favorites frustrated as underdogs earn key results

    June 17, 2026

    TGA: 15 days remaining to object to unpaid traffic fines issued before 1st November 2024

    June 17, 2026
    Facebook X (Twitter) Instagram
    Riyadh Week
    • Home
    • KSA
    • Business
    • Technology
    • Sports
    • Lifestyle
    Facebook X (Twitter) Instagram YouTube
    Riyadh Week
    Home»Technology»NFC relay attacks on smartphones surged by 188% in 2026, Kaspersky reveals
    Technology

    NFC relay attacks on smartphones surged by 188% in 2026, Kaspersky reveals

    Editorial TeamBy Editorial TeamJune 2, 2026
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    According to Kaspersky telemetry, the number of NFC-based attacks on Android smartphones aimed at stealing victims’ funds have surged by 188% in the first four months of 2026, compared with the same period in 2025.

    From January to April 2026, Kaspersky cybersecurity solutions blocked 35,600 attacks of different Android malware families that use NFC techniques, including SuperCard X, PhantomCard, NGate, as well as other malicious modifications of NFCGate tool, compared to over 12,300 attacks blocked during the first four months in 2025. According to Kaspersky, users in Russia face NFC relay mobile threats more often, nevertheless Kaspersky experts note that users in other regions — especially in Latin America and Europe — also encounter NFC-based attacks. At the end of 2025, Kaspersky predicted an increase in the number of attacks on NFC payments in 2026.

    At the moment, there are two main schemes of NFC-based attacks:

    Direct NFC. Fraudsters contact victims via messaging apps and, under the guise of verifying users’ identity, trick them into downloading malware that is disguised, for example, as a financial application. Victims are then prompted to tap their bank card to an infected smartphone, as well as to enter the card PIN. As a result, the card data is handed over to the attackers.

    Reverse NFC. Scammers send users a malicious application and, using social engineering techniques, persuade them to set this application as a primary contactless payment method on their compromised smartphones. Such application generates an NFC signal that ATMs recognise as the scammers’ card. Victims are then persuaded to go to an ATM and deposit funds into a ‘secure account’ using their infected phone. In reality, the scammers receive the victims’ money.

    “While previously attackers relied on ‘direct NFC’ scheme, now the ‘reverse NFC’ appears more common”, comments Sergey Golovanov, chief security expert at Kaspersky. “The danger of a newer, more sophisticated scheme is that this type of fraud is harder to detect and fight against, because victims themselves transfer money to the attackers’ accounts and such transactions are hard to distinguish from legitimate ones. We do not rule out that NFC relay malware itself continue to evolve and geography of attacks will expand. That’s why this threat should be further closely monitored”.

    “The first publicly reported attacks that used a modified legitimate NFC tool occurred in late 2023. Those attacks were primarily detected in Europe. Then users from Russia and other regions faced similar mobile malware attacks. Later it became known that cybercriminals packaged NFC relay malware into malware-as-a-service (MaaS) offering, potentially simplifying access to malicious tools for other attackers. NFC relay campaigns demonstrate how threat actors adapt and reuse new methods to steal users’ funds”, added Dmitry Kalinin, cybersecurity expert at Kaspersky.

    To protect against NFC relay attacks and other mobile threats, Kaspersky recommends:

    • Avoid installing apps from unofficial sources. This includes links sent via messaging apps, social media, SMS, or recommended during a phone call.
    • Never follow instructions from strangers at an ATM — no matter who they claim to be.
    • Use a comprehensive security solution on your Android smartphones to prevent visits to phishing sites from web browsers and messengers, and stop malware installation.

    Image Credit: Kaspersky


    Source: Tahawul Tech

    Related Posts

    Cisco reports on AI network pressures

    June 17, 2026

    AT&T expands its 400G network

    June 17, 2026

    Ericsson and Verizon highlight private 5G service

    June 17, 2026
    Top Posts

    QBS Software Middle East embeds AI into core operations

    April 1, 2026

    Bosnia’s Barbarez cool as ice after reaching World Cup in shootout with Italy

    April 1, 2026

    Kuwaiti tanker hit by Iranian drone attack in Dubai waters

    April 1, 2026

    UAE designers turn jewellery into meaningful Eid gifts

    April 1, 2026
    Don't Miss

    UAE unveils world’s first clinical AI scientist to help doctors make faster decisions

    By Editorial TeamJune 17, 2026

    The world’s first artificial intelligence scientist which will help clinical decision making faster and easier…

    World Cup favorites frustrated as underdogs earn key results

    June 17, 2026

    TGA: 15 days remaining to object to unpaid traffic fines issued before 1st November 2024

    June 17, 2026

    JEWELS OF THE WORLD OPENS IN RIYADH

    June 17, 2026
    • KSA
    • Business
    • Technology
    • Lifestyle
    • Sports
    2026. All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.