U.S. Energy Giant Falls Victim to Unprecedented QR Code Phishing Attack

19th April 2024

U.S. Energy Giant Falls Victim to Unprecedented QR Code Phishing Attack

QR codes are free and easy to read and have now been used in an email Phishing attack on a US energy giant.

The attack is based on the fact that corporate and private email protection systems normally permit jpg, and pdf files in without checking these normally benign files for malicious QR codes.

QR codes themselves are embedded hyperlinks that direct users to websites, in this attack the link went to Bing, Salesforce and Cloudflare’s Web3 services – all of which could be legitimate links.

Normal QR attacks involving placing malicious QR codes where people would expect to see a QR code, on product leaflets, parking meters, billboards etc.

More information about the attack here (link to Cyber Daily website)

U.S. Energy Giant Falls Victim to Unprecedented QR Code Phishing Attack

 

Countermark is a safe way to attach data to products and to documents. If you are designing a system and you want to keep users safe and don’t want to expose users to QR code attacks find out more at our website.

https://countermark.com/

 

Article link = https://cyberdaily.securelayer7.net/u-s-energy-giant-falls-victim-to-unprecedented-qr-code-phishing-attack