AI
AI

Attackers Are Crafting Phishing Emails with Deceptive ASCII QR Codes and Blob URLs

Photo credit: www.csoonline.com

Attackers are impersonating legitimate services

Research from Barracuda Networks highlights a growing trend in cybercrime where attackers are mimicking recognizable services to deceive users. In one notable phishing scheme, perpetrators disguised their malicious intentions by claiming to send a payroll and benefits enrollment file accessible through a QR code. In another instance, they posed as the reputable global courier DHL, instructing recipients to scan a QR code to fill out a form to resolve a purported missing shipping address.

Creating detection methods for such QR code-based scams may seem straightforward, but the reality is complex. Barracuda’s findings reveal that there are 32 unique ‘block’ characters that cybercriminals can utilize. These include various full and partial blocks which can be encoded in multiple formats such as HTML Entity, UTF-8, or UTF-16. This plethora of combinations—totaling 96—can complicate detection efforts, particularly since many block characters are used legitimately in other contexts.

The researchers elaborated on this complexity by noting that in the case of HTML entities, each block can manifest in different forms, and attackers can cleverly arrange both single blocks and combinations to produce their ASCII or Unicode-based QR codes. This method significantly elevates the number of potential variations of QR codes, making it increasingly difficult for automated systems to identify and flag these malicious attempts accurately.

Source
www.csoonline.com

Related by category

Google Warns of Increasing Enterprise-Specific Zero-Day Exploits

Photo credit: www.csoonline.com The Evolving Landscape of Mobile Security Vulnerabilities Recent...

Cybersecurity Leaders Condemn ‘Political Persecution’ of Chris Krebs in Letter to the President

Photo credit: www.csoonline.com In November 2018, President Trump appointed Chris...

Broadcom-Supported SAN Devices Vulnerable to Code Injection Attacks Due to Critical Fabric OS Flaw

Photo credit: www.csoonline.com Critical Vulnerability Found in Broadcom’s Brocade Fabric...

Latest news

NASA Reaches New Heights in the First 100 Days of the Trump Administration

Photo credit: www.nasa.gov Today marks the 100th day of the...

CBS Evening News Plus: April 29 Edition

Photo credit: www.cbsnews.com Understanding Trump's Auto Tariff Modifications Recent shifts in...

Carême Review – A Sizzling French Adventure Featuring a Chef That’s Too Hot to Handle | Television & Radio

Photo credit: www.theguardian.com Exploring "Carême": A Culinary Journey Through the...

Breaking news