Ghost Tap Android Malware Targets Payment Data in Multiple Countries

Ghost Tap Android Malware Targets Payment Data in Multiple Countries

First seen 8 Jan 2026, 22:53 UTC Scworld 36.1

Article Content

Browse articles
ThreatCluster

Chinese threat operations TX-NFC and NFU Pay have been using APKs disguised as banking apps to distribute the Ghost Tap Android malware. This malware is designed to steal credit card information through social engineering tactics, primarily affecting users in Brazil, Italy, Malaysia, Turkey, Uzbekistan, Greece, and Indonesia.