A security researcher from Germany released an Android application on Google Play that can obtain contactless credit card data over the air for a limited set of cards

Posted: 2012/06/25 in Cybercrime, Education / Awareness, Stats / reports

Contactless credit cards can typically be used without a pin for transactions under €10 by simply holding the card near a point of sale terminal.

The Android application, which Symantec detects as Android.Ecardgrabber, attempts to read this data by using a communication protocol called Near Field Communication (NFC)— a technology present on the latest smartphones. The app was posted on Google Play on June 13 and was downloaded 100-500 times before removal.

More:

http://www.symantec.com/connect/blogs/ecardgrabber-android-app-sniffing-contactless-credit-card-details-over-air

About these ads

Comments are closed.