Malicious QR codes sent in the mail deliver malware
ID: 9eb361f9-4bd8-501c-bb00-fb94f7721784
STIX ID: report--9eb361f9-4bd8-501c-bb00-fb94f7721784
Feed Name: Malwarebytes Blog
The Swiss NCSC warning describes a cross-region campaign where physical letters containing QR codes lure victims into installing a fake “severe weather” Android app (branded as “AlertSwiss”) that deploys the Coper/Octo2 banking Trojan. Coper provides device takeover, overlay-based credential theft, and advanced obfuscation; operators customize lures per country and target users in Europe, the US, Canada, the Middle East, Singapore, and Australia. The advisory emphasizes scanning QR codes cautiously, keeping devices patched, and using mobile anti-malware.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
