logo

AI-Driven Phishing and QR Code Quishing Surge in 2025 Spam and Phishing Report

ID: 9ea4c48b-c545-56cd-90d0-acce3ba2f170

STIX ID: report--9ea4c48b-c545-56cd-90d0-acce3ba2f170

Feed Name: GBHackers

Threat Score
78/100

Date Published: 2026-02-13

Date Updated: 2026-04-22

Author: Mayura Kathir

...
...

The report outlines a large-scale 2025 phishing and malware campaign that exploits AI-generated lures and QR-code "quishing" to direct victims to credential-harvesting pages or malware-hosting sites; attackers also distribute RenEngine via pirated games to deploy HijackLoader and info-stealers (Lumma, ACR Stealer), using advanced techniques like DLL side-loading, process hollowing, and module stomping to evade detection and steal credentials, cookies, and crypto wallets. The document includes technical details of the infection chain, observed indicators, and recommended defensive controls including QR detection, behavior-based endpoint protection, application control, and user training.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.