Security News

SquarePhish: Advanced phishing tool combines QR codes and OAuth 2.0 device code flow
2022-08-11 04:30

In this Help Net Security video, Security Consultant Kam Talebzadeh and Senior Security Researcher Nevada Romsdahl from Secureworks, showcase SquarePhish, a tool that combines QR codes and OAuth 2.0 device code flow for advanced phishing attacks. If you're at Black Hat USA 2022, you can learn more about SquarePhish.

Tencent admits to poisoned QR code attack on QQ chat platform
2022-06-28 04:31

Chinese web giant Tencent has admitted to a significant account hijack attack on its QQ.com messaging and social media platform. In a post to rival social media platform Sina Weibo - a rough analog of Twitter - Tencent apologized for the incident.

Animated QR codes: how do they work, and how to create your own?
2022-04-23 08:14

Is there such a thing as moving or animated QR codes? And could they work? The GIF shown below contains an animated QR code with moving frames that some might recognize-a sequence from Rick Astley's famous Never Gonna Give You Up music video.

Top 5 tips for QR code safety
2022-03-29 17:27

QR codes have become ubiquitous, driven to even wider use by pandemic concerns. Lots of restaurants now offer their menu through QR codes, sometimes only on QR codes.

Stealing Bicycles by Swapping QR Codes
2022-02-21 12:31

They're stealing Citi Bikes by switching the QR scan codes on two bicycles near each other at a docking station, then waiting for an unsuspecting cyclist to try to unlock a bike with his or her smartphone app. The app doesn't work for the rider but does free up the nearby Citi Bike with the switched code, where a thief is waiting, jumps on the bicycle and rides off.

How QR code ease of use has broaden the attack surface
2022-02-16 07:00

In this interview with Help Net Security, Neil Clauson, Regional CISO at Mimecast, talks about the threats of QR code phishing, explains the vulnerabilities of such technology and how to make sure not to fall prey to such attack. In the case of QR codes being used as a form of payment, the FBI warned that cybercriminals can use tampered QR codes to redirect payments, stealing victim funds for their own personal use.

Surge in Malicious QR Codes Sparks FBI Alert
2022-01-24 21:13

QR codes have become a go-to staple for contactless transactions of all sorts during the pandemic, and the FBI is warning cybercriminals are capitalizing on their lax security to steal data and money, and drop malware. The smart little matrix bar codes are easily tampered with and can be used to direct victims to malicious sites, the FBI warned in an alert.

FBI warns of malicious QR codes used to steal your money
2022-01-23 15:00

"Cybercriminals are tampering with QR codes to redirect victims to malicious sites that steal login and financial information," the federal law enforcement agency said.The FBI said crooks are switching legitimate QR codes used by businesses for payment purposes to redirect potential victims to malicious websites designed to steal their personal and financial information, install malware on their devices, or divert their payments to accounts under their control.