Earlier this year, a relatively unknown startup from Finland made a startling announcement: It had finally solved solid-state batteries.
Technology
How Android malware lets thieves access your ATM cash
NEWYou can now listen to Fox News articles!
Smartphone banking has made life easier, but it has also opened new opportunities for cybercriminals.
Over the past few years, we have seen Android malware steal passwords, intercept OTPs and even take remote control of phones to drain accounts. Some scams focus on fake banking apps, while others rely on phishing messages that trick you into entering sensitive details.
Security researchers have now discovered a new threat that goes a step further. Instead of simply stealing login information, this malware gives thieves the ability to walk up to an ATM and withdraw your money in real time.
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM newsletter.
Android malware like NGate tricks users into downloading fake banking apps that steal sensitive data. (Kurt “CyberGuy” Knutsson)
How the NGate malware works
The Polish Computer Emergency Response Team (CERT Polska) discovered a new Android malware called NGate that uses NFC activity to access a victim’s bank account. This malware monitors contactless payment actions on the victim’s phone and forwards all transaction data, including the PIN, directly to a server controlled by attackers. It does not just copy card details. Instead, it waits until the victim taps to pay or performs a verification step, then captures the fresh, one-time authentication codes that modern Visa and Mastercard chips generate.
To pull this off, attackers need to infect the phone first. They typically send phishing messages claiming there is a security problem with the victim’s bank account. These messages often push people to download a fake banking app from a non-official source. Once the victim installs it, the app walks them through fake verification prompts and requests permissions that allow it to read NFC activity. As soon as the victim taps their phone or enters their PIN, the malware captures everything the ATM needs to validate a withdrawal.
MANAGE ANDROID APPS WITH THE NEW ‘UNINSTALL’ BUTTON
Once installed, the malware captures NFC tap-to-pay codes and PINs the moment the victim uses their phone. (Kurt “CyberGuy” Knutsson)
What attackers do with the stolen data at the ATM
The attackers rely on speed. The one-time codes generated during an NFC transaction are valid for only a short period. As soon as the infected phone captures the data, the information is uploaded to the attacker’s server. An accomplice waits near an ATM, holding a device capable of emulating a contactless card. This could be another phone, a smartwatch or custom NFC hardware.
When the data arrives, the accomplice presents the card-emulating device at the ATM. Since the information contains fresh, valid authentication codes and the correct PIN, the machine treats it like a real card. The ATM authorizes the withdrawal because everything appears to match a legitimate transaction. All of this happens without the criminal ever touching the victim’s physical card. Everything depends on timing, planning and getting the victim to unknowingly complete the transaction on their own phone.
Criminals use the stolen, time-limited codes at an ATM to make real withdrawals without the victim’s card. (Kurt “CyberGuy” Knutsson)
7 steps you can take to stay safe from Android NGate malware
As attacks like NGate become more sophisticated, staying safe comes down to a mix of good digital habits and a few simple tools that protect your phone and your financial data.
1) Download apps only from the Play Store
Most malicious banking apps spread through direct links sent in texts or emails. These links lead to APK files hosted on random servers. When you install apps only from the Play Store, you get Google’s built-in security checks. Play Protect regularly scans apps for malware and removes harmful ones from your device. However, it is important to note that Google Play Protect may not be enough. Historically, it isn’t 100% foolproof at removing all known malware from Android devices. Even if attackers send convincing messages, avoid installing anything from outside the official store. If your bank wants you to update an app, you will always find it on the Play Store.
2) Use strong antivirus software
One careless tap on a fake bank alert can hand criminals everything they need. Strong antivirus software can stop most threats before they cause damage. It scans new downloads, blocks unsafe links and alerts you when an app behaves in ways that could expose your financial data. Many threats like NGate rely on fake banking apps, so having real-time scanning turned on gives you an early warning if something suspicious tries to install itself.
Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices at Cyberguy.com.
ATM ‘JACKPOTTING’ CRIME WAVE GROWS AFTER THIEVES WALK AWAY WITH HUNDREDS OF THOUSANDS IN CASH
3) Keep your device and apps updated
Security patches fix vulnerabilities that attackers use to hijack permission settings or read sensitive data. Updates also improve how Android monitors NFC and payment activity. Turn on automatic updates for both the operating system and apps, especially banking and payment apps. A fully updated device closes many of the holes that malware tries to exploit.
4) Use a password manager to avoid phishing traps
Phishing attacks often direct you to fake websites or fake app login pages that look identical to the real thing. A password manager saves your credentials and fills them in only when the website or app is authentic. If it refuses to autofill, it is a clear sign that you are on a fake page. Consider using a password manager to generate and store complex passwords.
Next, see if your email has been exposed in past breaches. Our No. 1 password manager pick includes a built-in breach scanner that checks whether your email address or passwords have appeared in known leaks. If you discover a match, immediately change any reused passwords and secure those accounts with new, unique credentials.
Check out the best expert-reviewed password managers of 2025 at Cyberguy.com.
5) Turn on two-factor authentication for all financial services
Two-factor authentication gives you a second layer of protection, even if your password is compromised. App-based authenticators are more secure than SMS codes because they cannot be intercepted as easily. For banking apps, enabling 2FA adds friction for attackers trying to perform unauthorized actions. Combined with strong passwords from a password manager, it significantly reduces the chance of account takeover.
6) Ignore suspicious texts, emails and calls
Attackers rely on urgency to trick you. They often claim that your card is blocked, your account is frozen or a payment needs verification. These messages push you to act fast and install a fake app. Always pause and check your bank’s official channels. Contact the bank through verified customer care numbers or the official app. Never click links or open attachments in unsolicited messages, even if they look legitimate.
7) Review app permissions
Most people install apps and forget about them. Over time, unused apps pile up with unnecessary permissions that increase risk. Open your phone’s permission settings and check what each app can access. If a simple tool asks for access to NFC, messages or accessibility features, uninstall it. Attackers exploit these excessive permissions to monitor your activity or capture data without your knowledge.
Kurt’s key takeaway
Cybercriminals are now combining social engineering with the secure hardware features inside modern payment systems. The malware does not break NFC security. Instead, it tricks you into performing a real transaction and steals the one-time codes at that moment. This makes the attack difficult to spot and even harder to reverse once the withdrawal goes through. The best defense is simple awareness. If a bank ever urges you to download an app from outside the Play Store, treat it as an immediate warning sign. Keeping your phone clean is now as important as keeping your physical card safe.
Have you ever downloaded an app from outside the Play Store? Let us know by writing to us at Cyberguy.com.
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide — free when you join my CYBERGUY.COM newsletter.
Copyright 2025 CyberGuy.com. All rights reserved.
Technology
Is the ‘Holy Grail of batteries’ finally ready to bless us with its presence?
Not only that, but Donut Lab, a spinoff of Verge Motorcycles, said that its solid-state battery — long considered the “Holy Grail of batteries” for their high-density, durable, fast-charging abilities — would go into production later this year.
Battery experts were understandably skeptical. After all, solid-state batteries are one of those technologies, along with artificial general intelligence and the hyperloop, that seem perpetually two years away. And while most legitimate efforts in this field — whether academic or commercial — have some level of published research or recognizable names attached, Donut Lab seemed to have emerged out of nowhere, with no known researchers or prior presence in the field. This lack of traceability immediately raised concerns about the startup’s credibility.
“I can’t say they didn’t do it,” said Eric Wachsman, the director of the Maryland Energy Innovation Institute and an expert on solid-state batteries and solid oxide fuel cells. “All I can say is they haven’t demonstrated that they have.”
The skepticism seems warranted, especially when you consider how many other people have been chasing the solid-state dream. Were we really to believe this obscure startup had beaten Toyota, Stellantis, and the entire nation of China to the punch? The odds were against it.
Donut Lab seemed to anticipate the doubt, launching a website last February called idonutbelieve.com that would serve as a platform to publish independent tests verifying that, in fact, its solid-state battery was real, and spectacular. Over the course of several weeks, the startup posted third-party results from state-owned VTT Technical Research Centre of Finland that it said proved its battery was what it said it was: a fast-charging, high-energy-density solid-state battery that wasn’t actually a supercapacitor in disguise.
“The resistance won’t disappear when we present the proof,” Donut Lab CEO and cofounder Marko Lehtimäki said in a video. “It will just intensify because this new technology is a threat to the established players in the industry.”
But Donut Lab is still hiding the ball on some key information. At CES in January, the startup said its solid-state battery has an energy density of 400Wh per kilogram—roughly twice that of typical lithium iron phosphate (LFP) batteries in production. Not only that, but it could charge to full in five minutes, had a practically unlimited lifespan of 100,000 charging cycles, was unaffected by heat and cold (negative 30 degrees Celsius and 100C), and contains no rare earth elements, precious metals, or flammable liquid electrolytes.
Much of that remains unsubstantiated. Even after posting five independent test reports from VTT, the startup has yet to demonstrate three of the most important metrics: chemistry, density, and cycle-life claims.
The stakes are incredibly high. Imagine an electric vehicle that can travel 700–800 miles on a single charge, and that wasn’t at risk of bursting into flames because the flammable electrolytes had been replaced with a solid material.
In lithium-ion batteries, the motion of the liquid electrolytes generates heat, and in certain situations, this can slip into a “thermal runaway” effect that results in a fire. By comparison, solid-state batteries would make it safer to quickly draw power from (or add it back to) the battery, meaning you could theoretically charge an EV faster. It also could mean, structurally, less room has to be devoted to temperature control, which could allow companies to squeeze more battery cells into the same size pack.
After reviewing the tests of the Donut battery, Wachsman said there are still significant concerns. During the extreme heat tests, for example, the pouch surrounding Donut’s battery lost its vacuum seal. Gas generation inside batteries — caused by processes like electrolyte decomposition or oxygen release — can lead to swelling and rupture of the battery pouch. But without knowing the exact chemistry of the cell, it’s difficult to say how significant it is that Donut’s battery had this failure.
Setting aside the Donut battery for a moment, solid-state batteries have struggled to graduate from the laboratory to the assembly line because of well-documented problems. These batteries are often plagued by the formation of metallic cracks called dendrites that cause them to short circuit. Think of them like cracks that form on a sidewalk when a tree root grows underneath.
Dendrites have been a thorn in the side of battery developers since the 1970s. One reason lithium-ion batteries have become ubiquitous while other approaches have stalled is that their commonly used graphite anodes are less susceptible to dendrite formation.
But new discoveries could help engineers finally overcome these hurdles. A research team from MIT recently published a study in Nature that found that chemical reactions caused by high electrical currents that weaken the electrolyte also make it more susceptible to dendrite growth. That’s why developing stronger electrolytes alone hasn’t solved the decades-old dendrite problem. And it could point to the importance of developing more chemically stable materials to finally fulfill the promise of solid-state batteries.
Progress is already being made — where else? — in China. Last month, CATL, which controls nearly 40 percent of the global battery market, filed a patent application for solid-state batteries with a reported 500Wh energy density. According to CarNewsChina, the battery maker has already been planning small-scale production in 2027. But automotive-grade cells won’t be ready likely until the end of the decade.
Other Chinese companies are rushing ahead. Automaker FAW said recently that its “liquid-solid-state” lithium-rich manganese cell with 500Wh/kg was ready for vehicle integration.
China is already laying the groundwork for mass production by the end of the decade, by which point it hopes the technology will be mature. And why wouldn’t it? This is a country that has taken EVs and battery development seriously for years, allowing it to corner the market on much of the world’s supply.
Different companies are taking different approaches. For example, Honda is committed to sulfur-based electrolytes despite emerging alternatives. Last October, Toyota announced “the world’s first practical use of all-solid-state batteries in BEVs” by 2027 or 2028. And Mercedes, using a prototype battery from startup Factorial, was able to get an electric EQS sedan a real-world range of 749 miles.
“The companies probably have a ways to go,” said Alevtina Smirnova, director of the NSF Industry-University Cooperative Research Center for Solid-State Electric Power Storage. “Because there is no comparison to what is happening now in China to what is happening here in the US.”
For its part, Donut Lab is unperturbed by the skepticism around its claims. On April 1st, Lehtimäki posted a new video addressing some of the controversy surrounding its solid-state batteries. He also revealed that Donut Lab had created a second, more production-ready version of its battery that would start shipping to customers later this year.
There was a crucial admission: The widely discussed “100,000 cycles” figure was a design target, he said, not an experimentally verified result. Actual testing has been conducted over shorter cycles, with projections extrapolated based on known variables such as charge rate, temperature, and usage conditions.
He then pivoted to a more near-term project: Donut Lab’s latest merch drop, including a “tin-foil”-covered bucket hat.
Technology
Fox News AI Newsletter: Lowe’s $250M bet on blue-collar jobs that AI can’t do
A worker stocks merchandise at a Lowe’s home improvement store in Chicago, Illinois, on Feb. 26, 2025. Lowe’s reported fourth-quarter earnings that exceeded Wall Street estimates. (Scott Olson/Getty Images)
NEWYou can now listen to Fox News articles!
Welcome to Fox News’ Artificial Intelligence newsletter with the latest AI technology advancements.
IN TODAY’S NEWSLETTER:
– Lowe’s CEO warns AI can’t climb a ladder as company makes $250M bet on blue-collar future
– Wisconsin town becomes first in nation to pass referendum restricting AI data center development
– Amazon rebuilding customer shopping experience around AI from ground up
HAMMERING IT HOME: Lowe’s CEO warns AI can’t climb a ladder as company makes $250M bet on blue-collar future – The CEO of Lowe’s highlighted the physical limitations of artificial intelligence, noting that AI “can’t climb a ladder,” while simultaneously announcing the home improvement company’s massive $250 million investment focused on the future of blue-collar work.
CITIZENS FIGHT BACK: Wisconsin town becomes first in nation to pass referendum restricting AI data center development – A local community in Wisconsin became the first in the nation to pass a referendum designed to restrict the development of massive artificial intelligence data centers in their area.
CLEAN SHEET: Amazon disrupting itself, rebuilding customer shopping experience around AI from ground up – Tech giant Amazon is intentionally disrupting its own established e-commerce models by rebuilding the entire customer shopping experience from the ground up to center around advanced artificial intelligence technologies.
Amazon CEO Andy Jassy speaks during an Amazon Devices launch event in New York City, Feb. 26, 2025. (Brendan McDermid/Reuters)
SECURITY DISPUTE: Federal appeals court rejects Anthropic bid to block Pentagon blacklist in AI dispute – A federal appeals court denied a bid by artificial intelligence company Anthropic to block a Pentagon blacklist amid an ongoing legal dispute regarding defense contracting and AI technology.
War Secretary Pete Hegseth marveled at the ‘war time speed’ of Operation Epic Fury forces. (Win McNamee/Getty Images)
WHAT’S AT STAKE: OPINION: Chad Wolf: China’s AI mockery shows fight for America is underway – Former acting Homeland Security Secretary Chad Wolf argues in a Fox News Digital op-ed that China’s mockery in the artificial intelligence space is a clear indicator that the high-stakes fight for America’s future is already actively underway.
ENEMY WITHIN: OPINION: We could win AI war, still lose all our freedoms if we aren’t careful – A newly published opinion essay from Fox News Digital explores the complex geopolitical and domestic threats surrounding artificial intelligence, cautioning that the United States could successfully win the global AI arms race but still risk losing fundamental freedoms if careful guardrails are not implemented.
REVOLUTIONARY MOMENT: Hollywood titan believes AI is a revolutionary moment reshaping industries – A prominent Hollywood titan expressed strong convictions regarding artificial intelligence, characterizing the technology’s rapid advancement as a revolutionary moment that is fundamentally reshaping the entertainment industry and beyond.
BOT DOC: AI chatbots refilling psych meds sparks debate – If you have ever waited weeks just to renew a mental health prescription, you already know how frustrating the system can feel. Now imagine handling that refill through a chatbot instead of a doctor.
Subscribe now to get the Fox News Artificial Intelligence Newsletter in your inbox.
FOLLOW FOX NEWS ON SOCIAL MEDIA
YouTube
X
SIGN UP FOR OUR OTHER NEWSLETTERS
Fox News First
Fox News Opinion
Fox News Lifestyle
Fox News Health
DOWNLOAD OUR APPS
Fox News
Fox Business
Fox Weather
TRUMP UNVEILS NATIONAL AI POLICY FRAMEWORK
Fox Sports
Tubi
WATCH FOX NEWS ONLINE
Fox News Go
STREAM FOX NATION
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Fox Nation
Stay up to date on the latest AI technology advancements and learn about the challenges and opportunities AI presents now and for the future with Fox News here.
Technology
Now the FAA says gamers are the answer to its air traffic controller shortage
The Federal Aviation Administration (FAA) has struggled for years to have enough air traffic controllers to address shortages, with the US Government Accountability Office (GAO) saying in January that the number of people in the job in the US has declined by around 6 percent “in the last decade.” Now the Trump administration is rolling out a recruiting campaign targeting gamers ahead of the opening of the annual air traffic control hiring window on April 17th.
Even with the campaign, getting qualified individuals through training and into the role may still be a challenge: according to the Department of Transportation’s Office of Inspector General (OIG), the FAA is facing “considerable challenges with training, including a shortage of qualified instructors, training capacity limitations, an outdated curriculum, and high training failure rates.”
An FAA video full of clips of things like Madden NFL, Fortnite, League of Legends esports, and the Xbox One stinger from commercials promises an average salary of $155,000 per year after three years and says that “you’ve been training for this.”
In a press release, the FAA says that air traffic controllers said in exit interviews that gaming was an influence on “their ability to think quickly, stay focused, and manage complexity.” The FAA’s website about the application process encourages applicants to “level up” their career. However, the Trump administration isn’t the first to target gamers for the role; according to The New York Times, the Biden administration launched a “Level Up” recruiting push in 2021, encouraging gamers as well as women and members of minority groups to become air traffic controllers.
Getting more air traffic controllers has been a focus for Sean Duffy, President Trump’s secretary of transportation, and he announced a plan to “supercharge” hiring shortly after he was sworn in for the job last year. That campaign closed in March 2025 and “attracted more than 10,000 applications,” resulting in about 600 trainees entering the Controller Training Academy, the OIG says. And the GAO says that some attrition during the air traffic controller hiring process “may be preventable,” noting that the hiring process can be “difficult to navigate” and that applicants may have already accepted other jobs by the time they get an employment offer.
The National Air Traffic Controllers Association (NATCA), the union representing air traffic controllers, “welcomes innovative approaches to expanding the candidate pool,” including “outreach to individuals with high-level aptitude skills such as gamers,” according to a statement from NATCA president Nick Daniels.
-
Atlanta, GA6 days ago1 teenage girl killed, another injured in shooting at Piedmont Park, police say
-
Education1 week agoVideo: Toy Testing with a Discerning Bodega Cat
-
Movie Reviews1 week agoVaazha 2 first half review: Hashir anchors a lively, chaos-filled teen tale
-
Georgia4 days agoGeorgia House Special Runoff Election 2026 Live Results
-
Pennsylvania5 days agoParents charged after toddler injured by wolf at Pennsylvania zoo
-
Arkansas23 hours agoArkansas TV meteorologist Melinda Mayo retires after nearly four decades on air
-
Milwaukee, WI5 days agoPotawatomi Casino Hotel evacuated after fire breaks out in rooftop HVAC system
-
Entertainment1 week agoInside Ye’s first comeback show at SoFi Stadium