November 1, 2024·5 min read

QR code scams: what to check before scanning

QR codes bypass the most basic phishing defense you have — looking before you click. Attackers know this. Here is what they are doing with it.

Your eyes are no longer protecting you

You have spent years training yourself not to click suspicious links. You hover. You check domains. You look for the subtle misspelling. That habit has protected you — until now.

QR codes eliminate the visual inspection step entirely. When you point your camera at a QR code, the destination URL is invisible until after the code has been processed. By the time your camera shows you where it leads, your phone is already loading it. And that half-second of preview most people don't read — that's exactly where attackers hide.

Security researchers have dubbed QR-based phishing "quishing." It has exploded in prevalence since 2022 because it bypasses email link-scanning tools, anti-phishing filters, and human habit. Corporate security teams are struggling to respond to it. For individuals, the risk is even higher.

Where QR scams appear — and why you won't expect them

What to do before you scan anything

If you already scanned it

Do not enter any information on the page that opened. Take a screenshot and note the URL. If the page asked for login credentials or payment details — and you entered them — treat this as a compromise immediately: change the relevant password, contact your bank if financial data was entered, and check your account activity.

Submit the URL to MountainShield for advisory review. We can assess the domain age, hosting patterns, and known threat indicators before you take any further action.

The uncomfortable reality

QR codes were designed for convenience. Attackers redesigned them for deception. In a world where your phone camera is a doorway, you need something standing on the other side that you trust. That is what we are here for.

Not sure?

Submit it for advisory review

If you have something suspicious you want assessed, submit it and we'll provide a recommendation based on available indicators within your plan's SLA.

Submit a Check

Related articles

← Back to all articles