
This Password Hack Jumps From Laptop To Smartphone — Attacks Underway
As reported by the Cyble Research & Intelligence Labs team, a newly analyzed and ongoing password hacking campaign, dubbed Scanception, has been observed to transition its attack from laptops to smartphones. The recent surge in Scanception attacks is a stark reminder that cybersecurity threats are no longer limited to one device or platform.
This alarming trend highlights the urgent need for enhanced email security solutions that inspect both attachments and embedded QR codes. The Scanception hackers have cleverly embedded malicious QR codes at the end of four-page PDFs, evading detection methods that only scan the start of a document. The attackers’ modus operandi involves luring users into scanning the QR code using their smartphone camera, effectively shifting the attack from laptops to mobile devices.
The Scanception campaign has already targeted a broad sweep of users across various regions, including North America, EMEA and APAC, and high-value industries have been favored by the threat actors. These sectors include tech, healthcare, manufacturing, and financial services.
To mitigate these attacks, it is crucial to expand security protections beyond the network perimeter. Monitoring for malicious domains and URLs has become an essential component in today’s cybersecurity landscape. Furthermore, educating staff on the dangers of QR-based attacks must be emphasized.
Source: www.forbes.com