#relays


WindRelay Android Malware Turns Victims’ Phones Into NFC Relays for Payment Fraud

Aug 13, 2026 // 14:56

A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access trojan (RAT) […]

Android malware combo takes out loans and relays victims’ credit cards

Aug 13, 2026 // 01:37

A new Android NFC relay malware called WindRelay is being used alongside the SpyNote remote administration tool (RAT) to steal card data and send it […]

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

Jul 28, 2026 // 15:01

The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh […]

Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption

Jul 27, 2026 // 23:48

Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockchain-based name services and infected-device relays after a March law-enforcement […]

DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic

Jun 18, 2026 // 19:18

Threat actors associated with the DragonForce ransomware have been observed using a custom Go-based remote access trojan (RAT) called Backdoor.Turn to conceal command-and-control (C2) traffic […]

Ransomware gang abuses Microsoft Teams relays to hide malicious traffic

Jun 16, 2026 // 14:17

DragonForce ransomware used a custom malware named ‘Backdoor.Turn’ to hide command-and-control traffic inside Microsoft Teams relay infrastructure. The backdoor abuses the Traversal Using Relays around […]