Be wary of QR code scams, warns the FTC

Date:

Share:

[ad_1]

The Federal Trade Commission (FTC) warned the public against scanning any old QR code in a consumer alerts blog last week. Naturally, the warning comes down to security and privacy — bad actors can put QR codes in inconspicuous places or send them via text or email, then just sit back and wait for a payday in the form of money, logins, or other sensitive information.

The New York Times reported that John Fokker, who heads threat intelligence at cybersecurity company Trellix, says Trellix found over “60,000 samples of QR code attacks” in the third quarter this year alone. The Times wrote that the most popular scams involved payroll and HR personnel impersonators and postal scams, among others. Early last year, police in several Texas cities said they’d found fraudulent QR codes placed on parking meters, directing people to a false payment site.

To avoid being victimized by a bad code, the FTC suggests ignoring unexpected emails or other messages you weren’t expecting that come with some sort of urgent request. It’s also good to check the URL that shows up on your screen when scanning to make sure it’s a site you trust. Then again, even a legitimate QR code can show you a garbled and meaningless shortened web address, so if you know what site you want to visit, it’s best to go there directly.

The Commission also recommends the old standby of updating your devices and ensuring you have good, strong passwords and multi-factor authentication in place for sensitive accounts. If you’re unsure how to do that second part, check out our two-factor authentication guide, which has instructions for several of the most popular sites and services.

Beyond the FTC’s recommendation, there are other things you can do. Don’t download a QR code scanning app, for one — built-in camera apps for Android and iOS already do that, and apps can sometimes be made for nefarious purposes themselves. The FBI also has a list of recommendations in a similar blog it published in September, but in general, if you aren’t sure about a code, don’t scan it.

[ad_2]

Source link

Subscribe to our magazine

━ more like this

Crypto Crime Investigation (C.C.I) Enhances Singapore’s Safety with Innovative Pig Butchering Fraud Recovery Technology

Crypto Crime Investigation (C.C.I) is proud to announce the launch of its groundbreaking Pig Butchering fraud recovery technology, a vital initiative aimed at protecting...

U.S. Treasury removes Francisco Javier D’Agostino from sanctions list after independent review

The United States Treasury Department has removed Francisco Javier D'Agostino from its sanctions list following an independent review that confirmed his business activities were...

Expert Forensic Analysis in Investigating Crypto Investment Scams and Recovering Lost Funds

The allure of cryptocurrency investment, with its potential for high returns, has unfortunately attracted a darker side: sophisticated and deceptive scams. Victims of these...

Asia’s Certified Cryptocurrency Investigator Launches in Singapore: Pioneering Crypto Crime Investigation (C.C.I)

Singapore, – In a groundbreaking move to enhance digital asset security and bolster consumer confidence in the cryptocurrency market, the Crypto Crime  Investigation...

C.C.I Launches as the Ultimate Recovery Platform for Crypto Investors Targeted by Scams

Nevada, Florida – In response to the growing concern over cryptocurrency investment scams, C.C.I (Crypto Crime Investigation) proudly announces its official launch as the...