By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Warning over new mobile attack that allows hackers to empty bank accounts
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Warning over new mobile attack that allows hackers to empty bank accounts
News

Warning over new mobile attack that allows hackers to empty bank accounts

News Room
Last updated: 2025/04/21 at 9:45 AM
News Room Published 21 April 2025
Share
SHARE

A SOPHISTICATED new scam attack that allows cyber thieves to instantly access the money of victims has been uncovered by experts.

The devastating scam is pulled off when targets “tap” their payment cards on their infected Android phones.

2

Dodgy apps are thought to take bank card details without you knowingCredit: Cleafy

It’s been dubbed “SuperCard X” and appears to be linked to Chinese-speaking threat actors, according to security firm Cleafy.

The ruse begins like many others, with individuals receiving a fake text or WhatsApp message claiming to be from their bank.

These messages say there has been a suspicious transaction on their account and that they need to call a number to resolve it.

Fraudsters pose as bank support staff and trick victims into revealing their card number, PIN and removing spending limits within their banking app.

But matters take a different turn next when the scammer tells them to install an app that’s meant to be a security or verification tool.

Instead, it hides the SuperCard X malware.

The cyber crook finally urges the person to tap their payment card on their phone to verify it.

However, this doesn’t protect their account – it allows the malware to read the card chip data, which is instantly sent off to the fraudster.

“As highlighted in this report, this new threat stands out from previous ones not so much due to the sophistication of the malware itself, but rather in terms of the fraud mechanism that relies on a novel technique associated with the NFC,” Cleafy says.

“This process allows the attacker to access the stolen funds instantly and potentially outside traditional fraud channels that typically involve bank transfers.”

Horror Android mistake lets crooks clone your bank card in seconds for spending spree – and even silently withdraw cash

Google – which runs Android – told BleepingComputer that “no apps containing this malware are found on Google Play” based on their current detection.

“Android users are automatically protected by Google Play Protect, which is on by default on Android devices with Google Play Services,” a rep said.

“Google Play Protect can warn users or block apps known to exhibit malicious behavior, even when those apps come from sources outside of Play.”

a man in a hoodie is holding a cell phone in front of his face

2

The scam abuses NFC technology on phonesCredit: Getty

How to spot a dodgy app

Detecting a malicious app before you hit the ‘Download’ button is easy when you know the signs.

Follow this eight-point checklist when you’re downloading an app you’re unsure about:

  1. Check the reviews – be wary of both complaints and uniformly positive reviews by fake accounts.
  2. Look out for grammar mistakes – legitimate app developers won’t have typos or errors in their app descriptions.
  3. Check the number of downloads – avoid apps with only several thousand downloads, as it could be fake.
  4. Research the developer – do they have a good reputation? Or, are totally fake?
  5. Check the release date – a recent release date paired with a high number of downloads is usually bad news.
  6. Review the permission agreement – this agreement gives permission for the app to take bits of your data, and fake apps often ask for additional data that is not necessary.
  7. Check the update frequency – an app that is updated too frequently is usually indicative of security vulnerabilities.
  8. Check the icon – look closely, and don’t be deceived by distorted, lower-quality versions the icons from legitimate apps.

All of this information will available in both Apple’s App Store and the Google Play Store.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Shared Budgets in Google Ads: Everything You Need to Know | WordStream
Next Article Niger waives right-of-way fees for telcos, introduces ₦500,000 one-time permit 
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

No, Hal – Big Banking Has Not Captured Bitcoin – It Is the Reverse | HackerNoon
Computing
Responsible AI powers NetApp’s innovation and customer focus – News
News
The five shockingly common objects in your home that are tanking your Wi-Fi
News
SugGhunhsBVsnfNwgnWkfwFu:Fx
News

You Might also Like

News

Responsible AI powers NetApp’s innovation and customer focus – News

6 Min Read
News

The five shockingly common objects in your home that are tanking your Wi-Fi

6 Min Read

SugGhunhsBVsnfNwgnWkfwFu:Fx

0 Min Read
News

I Found Out Ring and Nextdoor's Rules on Posting About ICE Raids, Police and More

10 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?