logo

QR Code 'Quishing' Attacks on Execs Surge, Evading Email Security

ID: f4f7f401-3e5d-517c-acb3-dad9762b7996

STIX ID: report--f4f7f401-3e5d-517c-acb3-dad9762b7996

Feed Name: Dark Reading

Date Published: 2024-02-08

Date Updated: 2026-04-21

Author: Robert Lemos, Contributing Writer

...
...

Abnormal Security reports a sharp rise in QR-code phishing (quishing) in late 2023, with C-suite executives targeted far more than average employees; attackers embed phishing links in QR images to evade filters and lure victims with fake MFA and shared document notifications, primarily to steal credentials that enable inbox rule abuse and account takeover. Although detections have improved since October per Hoxhunt, quishing persists, underscoring the need for layered defenses and sustained user training to mitigate high-impact failures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.