Intel Name: Nfc relay android malware
Date of Scan: September 30, 2025
Impact: Medium
Summary: PhantomCard is an Android malware used in NFC relay attacks (ghost tapping) to steal payment card data and commit fraud at ATMs and POS terminals. It’s spread via Telegram and possibly the Google Play Store, and is linked to Chinese-speaking cybercriminals targeting financial and retail sectors.