QR Phishing Hits Record Levels as Attackers Hide Malicious Links Inside QR Codes
ID: 8a63ba00-83a6-501f-8cd3-88a904d83a81
STIX ID: report--8a63ba00-83a6-501f-8cd3-88a904d83a81
Feed Name: GBHackers
QR-code phishing (“quishing”) has surged to record levels, with telemetry from ESET and Microsoft showing millions of detections and rapid growth; attackers embed QR images in PDFs and emails to redirect users—often to mobile-optimized credential-harvesting pages—bypassing traditional email defenses. The report describes common delivery vectors, multi-stage redirect/evasion techniques (shorteners, CAPTCHA, TDS), geographic detection distribution, and recommends extending URL inspection to images, enforcing phishing-resistant MFA, and user training.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
