Cyber Thieves Using QR Codes for Phishing - Mobile Enterprise
Mobile Enterprise
Compatible with Android and iOS, Kaspersky Lab unveiled a new mobile app, the Kaspersky QR Scanner, designed to read information from quick response (QR) codes, as well as warn users about potentially dangerous links within them.
Method of Deception
A popular method of deception used by cybercriminals is to encrypt a phishing link in a QR code. Since it can be challenging to identify a malicious QR code with the naked eye, cybercriminals can replace pictures with codes online and physically glue their malicious codes over genuine ones on real-world posters.
To address this issue, the solution uses the following approach: scan – check – open. As soon as the QR code becomes visible to the device's camera, the app then responds by checking the information encoded in the code. If it is valid, the scanner will open the page. Read more.