Summary:
- Researchers have discovered a vulnerability in EMV contactless payment protocols that allows expired or deactivated Visa cards to remain functional for unauthorized transactions.
- The flaw stems from a lack of proper synchronization between the card's internal counters and the payment terminal's verification process, potentially allowing attackers to bypass transaction limits.