• XSS.stack #1 – первый литературный журнал от юзеров форума

QISHING

QR phishing is useful for specific jobs that rely on their customers interacting with QR codes. for example, some restaurants let you self-order or self-checkout entirely on your own by placing the poster with the restaurant QR code that leads to the menu or checkout page, which then asks what table they are to connect them with their order, etc. this is very common in airports and food courts.

you could abuse this to place a sticker with your QR code on it over their QR code. you could invent a whole poster offering a giveaway or a free gift card if they sign up for something and pay shipping to collect their cc, then turning it into a sticker and placing it on the restaurant door.

QR codes are useful because they're a link but you can't tell where they're pointing without a phone, so it's not obvious that the QR code leads to a phish.
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх