Be Careful When Scanning QR Codes - There's a New Scam Going Around!

Tanya Wetson-Catt • Mar 27, 2024

QR codes are everywhere these days. You can find them on restaurant menus, flyers, and posters. They’re used both offline and online. QR codes are convenient and easy to use. You just scan them with your smartphone camera. You’re then directed to a link, a coupon, a video, or some other online content.


With the rise in popularity of QR codes comes an unfortunate dark side. Cybercriminals are exploiting this technology for nefarious purposes. Scammers create fake QR codes. They can steal your personal information. They can also infect your device with malware or trick you into paying money.


It's crucial to exercise caution when scanning QR codes. This emerging scam highlights the potential dangers lurking behind those seemingly innocent squares.

The QR Code Resurgence


QR codes were originally designed for tracking parts in the automotive industry. They have experienced a renaissance in recent years. As a result, they’re used as a form of marketing today.


They offer the convenience of instant access to information. You simply scan a code. They’ve become an integral part of various industries, including retail and hospitality.


Unfortunately, cybercriminals are quick to adapt. A new phishing scam has emerged, exploiting the trust we place in QR codes.


How the Scam Works


The scammer prints out a fake QR code. They place it over a legitimate one. For example, they might stick it on a poster that advertises a product discount or a movie.


You come along and scan the fake QR code, thinking it’s legitimate. The fake code may direct you to a phishing website. These sites may ask you to enter sensitive data. Such as your credit card details, login credentials, or other personal information.


Or scanning the QR code may prompt you to download a malicious app. One that contains malware that can do one or more of the following:


  • Spy on your activity
  • Access your copy/paste history
  • Access your contacts
  • Lock your device until you pay a ransom


The code could also direct you to a payment page. A page that charges you a fee for something supposedly free.


Here are some tactics to watch out for.


Malicious Codes Concealed


Cybercriminals tamper with legitimate QR codes. They often add a fake QR code sticker over a real one. They embed malicious content or redirect users to fraudulent websites.


Fake Promotions and Contests


Scammers often use QR codes to lure users into fake promotions or contests. When users scan the code, it may direct them to a counterfeit website. The website may prompt them to provide personal information. This can lead to potential identity theft or financial fraud.


Malware Distribution


Some malicious QR codes start downloads of malware onto the user's device. This can result in compromised security. Including unauthorised access to personal data and potential damage to the device's functionality.


Stay Vigilant: Tips for Safe QR Code Scanning


Verify the Source


Be cautious when scanning QR codes from unknown or untrusted sources. Verify the legitimacy of the code and its source. This is especially true if it prompts you to enter personal information.


Use a QR Code Scanner App


Consider using a dedicated QR code scanner app. Use that rather than the default camera app on your device. Some third-party apps provide extra security features such as code analysis and website reputation checks.


Inspect the URL Before Clicking


Before visiting a website prompted by a QR code, review the URL. Ensure it matches the legitimate website of the organisation it claims to represent.


Avoid Scanning Suspicious Codes


Trust your instincts. If a QR code looks suspicious, refrain from scanning it. Scammers often rely on users' curiosity. Be careful when scanning QR codes that you see in public places. Don't scan them if they look suspicious, damaged, or tampered with. Exercising caution is paramount.


Update Your Device and Apps


Keep your device's operating system and QR code scanning apps up to date. Regular updates often include security patches that protect against known vulnerabilities.


Be Wary of Websites Accessed via QR Code


Don't enter any personal information on a website that you accessed through a QR code. This includes things like your address, credit card details, login information, etc.

Don't pay any money or make any donations through a QR code. Only use trusted and secure payment methods.


Contact Us About Phishing Resistant Security Solutions


QR codes can be useful and fun. But they can also be dangerous if you're not careful. Always scan them with caution. Protect yourself from scammers who want to take advantage of your curiosity.


This scam falls under the umbrella of phishing. Phishing is one of the most dangerous modern risks for individuals and organizations. If you need help ensuring your devices are phishing resistant, just let us know.



Contact us today to learn more.

Let's Talk Tech

More from our blog

by Tanya Wetson-Catt 15 May, 2024
The Internet of Things (IoT) is no longer a futuristic concept. It's rapidly transforming industries and reshaping how businesses operate. IoT is a blanket term to describe smart devices that are internet enabled. One example is smart sensors monitoring production lines. Connected thermostats optimising energy consumption is another. Experts project the number of connected devices worldwide to continue growing. It’s estimated to rise from about 15 billion in 2023 to 21 billion in 2026. IoT devices are weaving themselves into the fabric of modern business operations. But successfully deploying them on your existing network isn’t always easy. It can feel like navigating a maze. Have you been struggling with the integration of smart devices? This guide will equip you with the knowledge and steps you need. Step 1: Define Your Goals and Needs Before diving headfirst, it's crucial to have a clear vision of your goals. Ask yourself and your team a few questions. These questions will help ensure you’re aligning smart devices with business needs. What problem are you trying to solve with IoT? Are you aiming to improve operational efficiency? Possibly, you want to gain real-time data insights. Or you may want to enhance remote monitoring capabilities. It’s important to target your IoT device deployment. Defining the issue that it’s meant to solve helps you do that. What type of data will you be collecting? Take time to define the nature and volume of data generated by your chosen devices. This is essential for choosing the right network infrastructure. What level of security do you need? Security measures depend on the sensitivity of the data collected. You might need specific measures to protect it from unauthorized access. Go through these questions as a first step. You'll gain a clearer picture of your specific needs. This enables you to select the most appropriate IoT devices and network solutions. Step 2: Select the Right Devices and Network Infrastructure With your goals in mind, it's time to choose your components. You’ll want to look at both the devices and the infrastructure of the network. IoT Devices When choosing smart devices, consider factors like: Compatibility with your existing infrastructure Data security features Scalability Power requirements Research reputable vendors. Choose devices with strong security protocols in place. Look for good firmware protection. Network Infrastructure Your existing network might be lacking. It may not be equipped for the extra traffic and data generated by IoT devices. You may need to upgrade your bandwidth. As well as deploy separate networks for IoT devices. You may also need to invest in dedicated gateways. Ones that can manage communication between devices and the cloud. Step 3: Focus on Security Throughout the Journey Security is paramount in the realm of IoT. Compromised devices can become gateways for cyberattacks. Malware attacks on IoT devices increased 77% during the first half of 2022. Here are some key security considerations. Secure the Devices Ensure the chosen devices have strong passwords. They should also be regularly updated with the latest firmware. You want to choose devices that offer features like encryption and secure boot. Secure the Devices Create separate networks for IoT devices and critical business systems. This minimizes the potential impact of a security breach on your core operations. Install Network Access Control (NAC) Install NAC solutions, such as multi-factor authentication. These controls restrict access to your network only to authorised devices. They also help you enforce security policies automatically. Track and Maintain Continuously track your network for suspicious activity. Regularly update your security protocols and software to stay ahead of evolving threats. Step 4: Deployment and Ongoing Management You should now have the necessary hardware and security measures in place. It's time to deploy your IoT devices. Here are some tips: Follow the manufacturer's instructions carefully during installation and configuration. Test and confirm the functionality of your IoT devices. You should do this before fully integrating them into your network. Develop a comprehensive management strategy for your IoT devices. It should include regular maintenance, firmware updates, and issue monitoring. Step 5: Continuous Learning and Improvement The world of IoT is constantly evolving, and so should your approach. Here are some tips for continuous improvement. Analyse the Data Once your IoT devices are operational, analyse the collected data. This helps you gain insights, identify areas for improvement, and refine your strategy. Embrace Feedback Encourage feedback from stakeholders within your organisation. Use it to constantly refine your implementation and address emerging challenges. Stay Informed Keep yourself updated on the latest trends and advancements in the IoT landscape. This empowers you to adapt and leverage new technologies as they emerge. Successfully deploying IoT on your business network requires careful planning. As well as prioritization of security and a commitment to continuous improvement. Get Expert Help for Your Network Devices Need help embracing a proactive approach to IoT adoption? We can help you transform your business operations. As well as unlock the full potential of smart devices at your business. Contact us today to learn more.
by Tanya Wetson-Catt 13 May, 2024
Have you ever seen a video of your favorite celebrity saying something outrageous? Then later, you find out it was completely fabricated? Or perhaps you've received an urgent email seemingly from your boss. But something felt off. Welcome to the world of deepfakes. This is a rapidly evolving technology that uses artificial intelligence (AI). It does this to create synthetic media, often in the form of videos or audio recordings. They can appear real but are actually manipulated. People can use deepfakes for creative purposes. Such as satire or entertainment. But their potential for misuse is concerning. Deepfakes have already made it into political campaigns. In 2024, a fake robocall mimicked the voice of a candidate. Scammers wanted to fool people into believing they said something they never said. Bad actors can use deepfakes to spread misinformation. As well as damage reputations and even manipulate financial markets. They are also used in phishing attacks. Knowing how to identify different types of deepfakes is crucial in today’s world. So, what are the different types of deepfakes, and how can you spot them? Face-Swapping Deepfakes This is the most common type. Here the face of one person is seamlessly superimposed onto another's body in a video. These can be quite convincing, especially with high-quality footage and sophisticated AI algorithms. Here's how to spot them: Look for inconsistencies: Pay close attention to lighting, skin tones, and facial expressions. Do they appear natural and consistent throughout the video? Look for subtle glitches such as hair not moving realistically or slight misalignments around the face and neck. Check the source: Where did you encounter the video? Was it on a reputable news site or a random social media page? Be cautious of unverified sources and unknown channels. Listen closely: Does the voice sound natural? Does it match the person's typical speech patterns? Incongruences in voice tone, pitch, or accent can be giveaways. Deepfake Audio This type involves generating synthetic voice recordings. They mimic a specific person's speech patterns and intonations. Scammers can use these to create fake audio messages. As well as make it seem like someone said something they didn't. Here's how to spot them: Focus on the audio quality: Deepfake audio can sound slightly robotic or unnatural. This is especially true when compared to genuine recordings of the same person. Pay attention to unusual pauses as well as inconsistent pronunciation or a strange emphasis. Compare the content: Does the content of the audio message align with what the person would say? Or within the context in which it's presented? Consider if the content seems out of character or contradicts known facts. Seek verification: Is there any independent evidence to support the claims made? If not, approach it with healthy scepticism. Text-Based Deepfakes This is an emerging type of deepfake. It uses AI to generate written content. Such as social media posts, articles, or emails. They mimic the writing style of a specific person or publication. These can be particularly dangerous. Scammers can use these to spread misinformation or impersonate someone online. Here's how to spot them: Read critically: Pay attention to the writing style, vocabulary, and tone. Does it match the way the person or publication typically writes? Look for unusual phrasing, grammatical errors, or inconsistencies in tone. Check factual accuracy: Verify the information presented in the text against reliable sources. Don't rely solely on the content itself for confirmation. Be wary of emotional triggers: Be cautious of content that evokes strong emotions. Such as fear, anger, or outrage. Scammers may be using these to manipulate your judgment. Deepfake Videos with Object Manipulation This type goes beyond faces and voices. It uses AI to manipulate objects within real video footage such as changing their appearance or behaviour. Bad actors may be using this to fabricate events or alter visual evidence. Here's how to spot them: Observe physics and movement: Pay attention to how objects move in the video. Does their motion appear natural and consistent with the laws of physics? Look for unnatural movement patterns as well as sudden changes in object size, or inconsistencies in lighting and shadows. Seek original footage: If possible, try to find the original source of the video footage. This can help you compare it to the manipulated version and identify alterations. Staying vigilant and applying critical thinking are crucial in the age of deepfakes. Familiarize yourself with the different types. Learn to recognize potential red flags. Verify information through reliable sources. These actions will help you become more informed and secure. Get a Device Security Checkup Criminals are using deepfakes for phishing. Just by clicking on one, you may have downloaded a virus. A device security checkup can give you peace of mind. We’ll take a look for any potential threats and remove them.  Contact us today to learn more.
by Tanya Wetson-Catt 08 May, 2024
Back when you were a kid, living in a “smart home” probably sounded futuristic. Something out of Back to the Future II or The Jetsons. Well, we don’t yet have flying cars, but we do have video telephones as well as smart refrigerators and voice-activated lights. But even the most advanced technology can have analogue problems. Hackers can get past weak passwords. Bad connections can turn advanced into basic pretty quickly. Have you run into any issues with your smart home gadgets? Not to worry! We’ve got your back when it comes to troubleshooting several common smart home issues. Here are some of the most frequent problems. Along with simple steps to get your smart haven back on track. 1. Connectivity Woes Are your smart gadgets refusing to connect to Wi-Fi? The main claim to fame of smart devices is that you can access them wirelessly. An internet connection is also vital to integrate several devices into a smart home hub. If your device is having connection issues, check the basics first. Restart your router and your devices. If that doesn't work, ensure you've positioned your router centrally. This gives you optimal signal strength. Consider a mesh network for large houses. Or invest in a Wi-Fi extender for better coverage. 2. Device Unresponsiveness Now that we have voice-activated devices, we expect them to always answer. It can be frustrating when a device won’t respond to its “wake word.” We might even raise our voice and ask again… only to be ignored. Are you having trouble with your smart devices not responding to commands? A simple power cycle (turning them off and on) can often do the trick. Check for software updates on your devices. As well as the corresponding apps. Updating software can fix bugs and improve performance. 3. Battery Drain Smart devices, especially those battery-powered, can drain quickly. Adjust settings to reduce power consumption. Disable features you don't use. Such as notification lights or constant background updates. Consider replacing batteries with high-quality ones for optimal performance. 4. Incompatibility Issues Not all smart devices are created equal. Just because it says “smart” on the box doesn’t mean it plays well with others. When a new device won’t interact with your network, it can mean money down the drain. Before you buy, check to ensure your devices are compatible with each other. Build your devices around your smart home platform. Review the manufacturer's specifications thoroughly to avoid compatibility headaches. 5. Security Concerns Security is paramount in a smart home. There have been horror stories about hacked baby monitors. These stories can get real very fast. You need to pay attention to securing your devices. Rather than getting caught up in plugging them in as fast as possible. Use strong and unique passwords for all your devices and accounts. Enable two-factor authentication wherever available. Keep your devices and apps updated with the latest security patches. A few other smart device security tips include: Change the default device name on your network. Choose something generic. Put smart devices on a separate “guest” network. This keeps them separated from devices with more sensitive data. Turn off unnecessary sharing features. These are often enabled by default. 6. App Troubles Are you running into sporadic problems? Bugs that crop up intermittently? Sometimes, the problem might lie with the app itself. Check if any app updates are available and install them. Try logging out and logging back in to refresh the connection. If issues persist, uninstall and reinstall the app. 7. Automation Gone Wrong Smart home automations can be convenient, but sometimes they malfunction. Review your automation rules and ensure they're set up correctly. Test them individually to identify any faulty triggers or actions. 8. Limited Range Some smart devices have a limited range. Check the manufacturer’s guide so you know what to expect. Move your devices closer to the hub or router for better communication. Consider using repeaters or extenders if the distance is an issue. 9. Ghost Activity Ever experienced your smart lights turning on or off randomly? This could be due to factors such as: Accidental voice commands Faulty sensors Scheduled automations you forgot about A hacked device Review your automation settings and disable any you don't need. Investigate if your devices are picking up unintended voice commands from other sources. Change passwords and watch out for breaches. 10. Feeling Overwhelmed It’s easy to get overwhelmed when you’re dealing with several smart devices. Don't hesitate to consult your device manuals and online resources. You can also get help from our IT experts for specific troubleshooting steps. These resources can offer more guidance tailored to your situation. Need Help Securing Your Smart Home Office? A smart device should simplify your life, not complicate it. These simple solutions can help you navigate common issues. It’s also important to get a smart home security assessment to keep you, your family and your business protected. Contact us today to schedule a security check-up for your smart home and gain peace of mind.
Share by: