216.73.216.6

Evolution of Sophisticated Phishing Tactics: The QR Code Phenomenon

· Published 01/04/2025 15:36 · Modified 01/04/2025 15:59

Export JSON

Essential information

Published
01/04/2025 15:36
Modified
01/04/2025 15:59
Tags
2025-04-01 business email compromise credential harvesting human verification phishing qr code quishing social engineering url redirection
Related entities
57 observables, 14 techniques (mitre), 6 others

Description

Since late 2024, attackers have employed new tactics in documents containing QR codes. These include concealing final destinations using legitimate websites' redirection mechanisms and adopting Cloudflare Turnstile for user verification. Some sites specifically target credentials of particular victims. , or , embeds URLs into QR codes, enticing recipients to scan them with smartphones. This bypasses traditional security measures and targets personal devices. Attackers use , exploit open redirects, and incorporate within redirects to evade detection. The operations typically involve redirection, , and . These evolving tactics challenge both security detection mechanisms and user awareness.

External references