Wednesday, September 17, 2025

Attackers Are Sending Bodily Packages with Malicious QR Codes


The FBI has issued an advisory warning that scammers are distributing QR code phishing (quishing) hyperlinks through unsolicited packages despatched by snail mail.

Recipients might scan the code to search out out the place the bundle got here from, which can land them on a phishing web page.

This can be a variation of a “brushing rip-off,” the place unscrupulous distributors ship packages designed to reap info that can be utilized in phony constructive opinions. On this case, the attackers are tricking victims into visiting malicious hyperlinks designed to steal their info or ship malware.

“The FBI warns the general public a couple of rip-off variation wherein criminals ship unsolicited packages containing a QR code that prompts the recipient to offer private and monetary info or unwittingly obtain malicious software program that steals knowledge from their telephone,” the advisory says.

“To encourage the sufferer to scan the QR code, the criminals usually ship the packages with out sender info to entice the sufferer to scan the QR code. Whereas this rip-off just isn’t as widespread as different fraud schemes, the general public ought to concentrate on this legal exercise.”

The Bureau affords the next recommendation to assist individuals keep away from falling for these assaults:

  • “Watch out for unsolicited packages containing merchandise you didn’t order.
  • Watch out for packages that don’t embody sender info.
  • Take precautions earlier than authorizing telephone permissions and entry to web sites and functions.
  • Don’t scan QR codes from unknown origins.
  • If you happen to consider you’re the goal of a brushing rip-off, safe your on-line presence by altering account profiles and request a free credit score report from one or all of the nationwide credit score reporting companies (Equifax, Experian, and TransUnion) to determine doable fraudulent exercise.”

AI-powered safety consciousness coaching can give your group a necessary layer of protection in opposition to social engineering assaults. KnowBe4 empowers your workforce to make smarter safety selections each day. Over 70,000 organizations worldwide belief the KnowBe4 HRM+ platform to strengthen their safety tradition and scale back human danger.

The FBI has the story.



Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles

PHP Code Snippets Powered By : XYZScripts.com