fraud
8 stories
Android Malware Steals Payment Card Data via NFC
Researchers have identified a new Android malware called WindRelay that can intercept payment card information transmitted via NFC while the card is still in the user's possession. This malware operates in conjunction with the SpyNote trojan, granting attackers remote control over infected devices. The attack typically begins with a social engineering tactic where a fraudster impersonates a bank representative.

Cybercriminals Seek Clean Residential Proxies for Fraud
Fraudsters are finding that traditional residential proxies are becoming less effective for carding operations. To bypass advanced fraud detection systems, criminals are now combining these proxies with other identity information, such as browser fingerprints and device profiles.

Felons, Fraudsters Flog Offensive Cybersecurity Startup
A cybersecurity startup named IRIS C2, which claims to acquire zero-day vulnerabilities for potentially millions of dollars, is reportedly run by convicted felons Jack Burkman and Jacob Wohl. The duo has a history of operating under assumed names and engaging in fraudulent activities, including spreading misinformation and securities fraud. Despite their past, IRIS C2 is actively recruiting vulnerability researchers and claims to be developing offensive cybersecurity capabilities, though their specific government contracts remain unclear.

RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service
A new Malware-as-a-Service offering called RedWing packages Android bank fraud tools and is rented via Telegram. It provides ready-made malware capable of taking over phones and stealing banking credentials and one-time passcodes.

Two arrested over credit card phishing – as the Netherlands is named Europe’s worst for payment fraud
Two individuals were arrested over a phishing operation that harvested credit card details. The arrests come as the Netherlands is named the worst country in Europe for payment fraud.

OpenClaw Skill Marketplace Faces AI Supply Chain Threat
Researchers have identified malicious skills within OpenClaw's ClawHub marketplace that evade automated detection. These skills are designed to deploy information-stealing malware and conduct automated financial fraud.

The Purchase Scam Tactic Headed for the World Cup | Recorded Future
A sophisticated purchase scam is leveraging compromised legitimate websites to trick users searching for event tickets or merchandise. These scam domains are hidden from typical search monitoring, making them difficult to detect and disrupt. The tactic is already being used for World Cup-related fraud and is expected to expand to other large events.

Operation Road Trap: Fake toll and parking texts are spreading worldwide
Scammers are actively conducting a global smishing campaign, sending fake text messages that impersonate toll and parking authorities. These messages aim to trick drivers into clicking malicious links or providing sensitive information. The campaign has been ongoing since late 2025 and has already distributed tens of thousands of fraudulent texts across multiple countries.