Skip to main content

How hackers steal mobile payments data in China

Image Credit: Shutterstock

As of 2014, China is home to 649 million Internet users, with millions being added every month. Driven by high smartphone penetration and improving network coverage, more Chinese are using mobile payment services.

The country’s annual m-payment turnover soared 134.30% year-on-year to reach US$3.61 trillion in 2014. However, the booming growth of this fledgling industry also brings security concerns. Here are some tricks often used by mobile payment hackers in China.

Fraudulent Wi-Fi

Nowadays, Chinese Internet users tend to make payments and bank transfers on-the-go via public Wi-Fi networks because it is just there and free. However, this habit could make you easy prey for hackers who set up fraudulent Wi-Fi in shopping malls or entertainment centers.

Once Wi-Fi squatters connect their mobile device to this network, their personal information is in danger of being stolen. If they conduct any kind of purchase or transfer in the meantime, hackers can record their IP address and information at the back-end, and then steal their accounts and passwords.


June 5th: The AI Audit in NYC

Join us next week in NYC to engage with top executive leaders, delving into strategies for auditing AI models to ensure fairness, optimal performance, and ethical compliance across diverse organizations. Secure your attendance for this exclusive invite-only event.


QR codes with virus embedded

Although QR codes never quite took off in the West, they have become immensely popular in China as customers scan codes to find friends, make payments, exchange information, redeem coupons, follow services on WeChat, and so on. Hackers can embed a virus to QR codes so that anyone scanning them will automatically download a virus to their smartphones. Personal information, from phone numbers to bank details and passwords, can be stolen in seconds.

Phishing websites

In this case, hackers send out short messages with fraudulent bank service numbers to lure users to log into a fake website. Once customers input bank accounts and passwords on the site, hackers will steal the information and be able to access the money in their bank accounts.

This story originally appeared on TechNode. Copyright 2015