FBI Warns: QR Codes Are Now a Primary Mobile Phishing Weapon
ID: 7c139b00-d59c-5dfc-9b51-9ed170ee7636
STIX ID: report--7c139b00-d59c-5dfc-9b51-9ed170ee7636
Feed Name: Zimperium Blog
Threat Score
Zimperium and the FBI IC3 highlight an active campaign by Kimsuky using malicious QR codes (“quishing”) to drive victims from enterprise channels to mobile-optimized phishing pages that harvest credentials and bypass MFA; this mobile-first tactic evades URL-based email and network defenses and can lead to account takeover, lateral movement, and follow-on spearphishing, while mobile threat defense on the device is presented as a primary mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
