Blog Layout

To QR or not to QR? Be careful, there's a QR code scam going around

The O Team • 7 March 2024

QR codes are everywhere these days. You can find them on restaurant menus, flyers, and posters. They’re used both offline and online. QR codes are convenient and easy to use. You just scan them with your smartphone camera. You’re then directed to a link, a coupon, a video, or some other online content.


With the rise in popularity of QR codes comes an unfortunate dark side. Cybercriminals are exploiting this technology for nefarious purposes. Scammers create fake QR codes. They can steal your personal information. They can also infect your device with malware or trick you into paying money.


It's crucial to exercise caution when scanning QR codes. This emerging scam highlights the potential dangers lurking behind those seemingly innocent squares.

 

The QR Code Resurgence


QR codes were originally designed for tracking parts in the automotive industry. They have experienced a renaissance in recent years. As a result, they’re used as a form of marketing today.


They offer the convenience of instant access to information. You simply scan a code. They’ve become an integral part of various industries, including retail and hospitality.


Unfortunately, cybercriminals are quick to adapt. A new phishing scam has emerged, exploiting the trust we place in QR codes.


How the Scam Works


The scammer prints out a fake QR code. They place it over a legitimate one. For example, they might stick it on a poster that advertises a product discount or a movie.


You come along and scan the fake QR code, thinking it’s legitimate. The fake code may direct you to a phishing website. These sites may ask you to enter sensitive data. Such as your credit card details, login credentials, or other personal information.


Or scanning the QR code may prompt you to download a malicious app. One that contains malware that can do one or more of the following:


• Spy on your activity

• Access your copy/paste history

• Access your contacts

• Lock your device until you pay a ransom


The code could also direct you to a payment page. A page that charges you a fee for something supposedly free.


Here are some tactics to watch out for.


Malicious Codes Concealed


Cybercriminals tamper with legitimate QR codes. They often add a fake QR code sticker over a real one. They embed malicious content or redirect users to fraudulent websites.


Fake Promotions and Contests


Scammers often use QR codes to lure users into fake promotions or contests. When users scan the code, it may direct them to a counterfeit website. The website may prompt them to provide personal information. This can lead to potential identity theft or financial fraud.


Malware Distribution


Some malicious QR codes start downloads of malware onto the user's device. This can result in compromised security. Including unauthorised access to personal data and potential damage to the device's functionality.


Stay Vigilant: Tips for Safe QR Code Scanning


Verify the Source


Be cautious when scanning QR codes from unknown or untrusted sources. Verify the legitimacy of the code and its source. This is especially true if it prompts you to enter personal information.


Use a QR Code Scanner App


Consider using a dedicated QR code scanner app. Use that rather than the default camera app on your device. Some third-party apps provide extra security features such as code analysis and website reputation checks.


Inspect the URL Before Clicking


Before visiting a website prompted by a QR code, review the URL. Ensure it matches the legitimate website of the organisation it claims to represent.


Avoid Scanning Suspicious Codes


Trust your instincts. If a QR code looks suspicious, refrain from scanning it. Scammers often rely on users' curiosity. Be careful when scanning QR codes that you see in public places. Don't scan them if they look suspicious, damaged, or tampered with. Exercising caution is paramount.


Update Your Device and Apps


Keep your device's operating system and QR code scanning apps up to date. Regular updates often include security patches that protect against known vulnerabilities.


Be Wary of Websites Accessed via QR Code


Don't enter any personal information on a website that you accessed through a QR code. This includes things like your address, credit card details, login information, etc.


Don't pay any money or make any donations through a QR code. Only use trusted and secure payment methods.


Contact Us About Phishing Resistant Security Solutions


QR codes can be useful and fun. But they can also be dangerous if you're not careful. Always scan them with caution. Protect yourself from scammers who want to take advantage of your curiosity.


This scam falls under the umbrella of phishing. Phishing is one of the most dangerous modern risks for individuals and organisations. If you need help ensuring your devices are phishing resistant, just let us know. Contact us today to learn more >





Article used with permission from The Technology Press.


Spooky graveyard scene with bats, skeletons and an open laptop with the Windows icon on the screen
by The Orbital10 Team 3 March 2025
This is the year Windows 10 dies: How to prepare your business >
Women working at a desk on a Teams video call with other staff members
by The Orbital10 Team 11 February 2025
Do you love keeping your employees happy by allowing them to work remotely? Or do you think everyone is more productive in the office? Businesses are divided on this right now… here are some important considerations before you decide what’s best for your team.
Floppy disks in a dark smoky room
by The Orbital10 Team 11 February 2025
When did you last review your business’s backup tools? Outdated backup systems can fail to protect you from modern threats, like ransomware attacks. If you want a reliable backup system, here’s what you need to know…
Picture of an envelope with a giant paperclip attached, and colourful lights in the background
by The Orbital10 Team 11 February 2025
Cyber criminals get more creative every day. The latest scam designed to steal your business data uses corrupted Word files – and getting fooled is easier than you might think…
Row of wooden people ornaments with one cracked through the middle and a red wooden person ornament
by The Orbital10 Team 11 February 2025
Great employees have the same goals you do. But while they’re working hard to help your business succeed, they could accidentally be opening the door to cyber criminals. Here’s how to make your team your business’s strongest defence…
Man holding out a phone with 'FREE WiFi' displayed on the screen
by The Orbital10 Team 10 February 2025
Public Wi-Fi can be a lifesaver when you must send an urgent email while out of the office. But did you know it can also put your business data at risk? These are the two big threats you and your team need to be aware of…
Smart phone with the words 'FOMO fear of missing out' displayed on the screen
by The Orbital10 Team 10 February 2025
FOMO – the fear of missing out – can creep into many aspects of your life. This can include FOMO over business tech, which is driving many businesses to spend more. But are you making the right choices for your business?
A smart phone on a tablet on an open laptop
by The Orbital10 Team 10 February 2025
Are all the devices your team uses helping them stay productive – or hindering them? Every extra gadget means another thing to remember, charge, and carry. There’s a simple way to help streamline tech in your business…
Person holding up a picture of a sad face which is covering up their own face
by The Orbital10 Team 3 February 2025
If you’re still attached to Windows 10, now’s the right time to upgrade. Here’s why…
Open laptop with an image of a rocket launching out of the screen, surrounded by computer apps
by The Orbital10 Team 27 January 2025
Imagine starting your PC and your favourite apps open automatically. It's a small change that could save you a lot of time. Here’s how to make it happen...
More posts
Share by: