GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Embed Notice

HTML Code

Corresponding Notice

  1. Embed this notice
    Tod Beardsley (todb@infosec.exchange)'s status on Monday, 02-Sep-2024 23:45:58 JSTTod BeardsleyTod Beardsley

    So this is neat.

    1) Some (all?) antispam/counterphishing email scanners are blind to #QRCode content.

    2) You can draw working QRCodes with Unicode character sets, thus avoiding an image parser entirely, even if the scanner could process images in the first place.

    3) By providing QRCode links, the attacker encourages the victim to use their personal device rather than the workstation, making defensive tracking more complicated.

    I think it’s hilarious that a format designed SPECIFICALLY for machine vision is being used to evade machine interpretation.
    https://infosec.exchange/@patrickcmiller/113067302631450126

    In conversationabout 8 months ago from infosec.exchangepermalink

    Attachments

    1. No result found on File_thumbnail lookup.
      Patrick C Miller :donor: (@patrickcmiller@infosec.exchange)
      from Patrick C Miller :donor:
      New QR Code Phishing Campaign Exploits Microsoft Sway to Steal Credentials https://thehackernews.com/2024/08/new-qr-code-phishing-campaign-exploits.html
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.