logo

Android malware steals your card details and PIN to make instant ATM withdrawals

ID: 63b6fb63-1df7-52fe-b302-b56abff15fa7

STIX ID: report--63b6fb63-1df7-52fe-b302-b56abff15fa7

Feed Name: Malwarebytes Blog

Threat Score
75/100

Date Published: 2025-11-06

Date Updated: 2026-04-28

...
...

Malwarebytes and CERT Polska analyzed NGate, an Android banking trojan that infects victims via phishing and fake banking apps to capture NFC tap-to-pay transaction data (including one-time cryptograms and PINs) and immediately forward it to accomplices who emulate the card at ATMs to withdraw cash; the report describes the attack flow, social-engineering requirements, mitigation advice, and Malwarebytes detection names.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.