Android App Steals Contactless Credit Card Data

June 21st, 2012

Via: SC Magazine:

A German penetration tester has posted to the Google store an Android application capable of siphoning credit card data from contactless bank cards.

The app, dubbed paycardreader, will skim card numbers and expiry dates, along with transactions and merchant IDs, and was successfully tested against a German PayPass Mastercard.

Developer Thomas Skora, senior consultant for Integralis, said it also worked with Germany’s popular GeldKarte.

The app required either an NFC-enabled (near field communications) handset, or for users to attach a near field communications transmitter to their Android phones.

Skora said the app was “only for technical demonstration” to demonstrate how data could be swiped from contactless cards.

Leave a Reply

You must be logged in to post a comment.