惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Y
Y Combinator Blog
博客园_首页
雷峰网
雷峰网
V
V2EX
博客园 - 司徒正美
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - Franky
月光博客
月光博客
Hugging Face - Blog
Hugging Face - Blog
WordPress大学
WordPress大学
T
Tailwind CSS Blog
小众软件
小众软件
博客园 - 叶小钗
美团技术团队
酷 壳 – CoolShell
酷 壳 – CoolShell
Apple Machine Learning Research
Apple Machine Learning Research
IT之家
IT之家
MyScale Blog
MyScale Blog
Blog — PlanetScale
Blog — PlanetScale
大猫的无限游戏
大猫的无限游戏
Jina AI
Jina AI
人人都是产品经理
人人都是产品经理
H
Help Net Security
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻

The Hindu: Latest News today from India and the World, Breaking news, Top Headlines and Trending News Videos.

U.K. pauses its plan to cede Chagos Islands after U.S. opposition Driver jailed for 7 days for driving sleeper bus in drunken condition Kim Jong Un supports China’s “multipolar world” vision during talks with Wang Yi Uttar Pradesh boat tragedy: Punjab town mourns deaths Relief for Bengaluru commuters as Silk Board flyover set to open fully, but inspection by BTP reveals likely bottleneck Repolling underway at booth of Karimganj North Assembly seat in Assam PM Modi interacts with Rahul Gandhi as leaders gather to pay tribute to Mahatma Jyotiba Phule Anil Kapoor’s ‘24’ set to release on OTT Vance, Iranian delegation arrives in Islamabad for U.S. talks amid ceasefire hopes Fire at Hyderabad’s Chintal Basti apartment, 17 residents evacuated safely Centre nudges States to view farm solarisation as a route to wiping off ₹2.4 lakh crore subsidy bill Why voter turnout hit record highs in Assam, Kerala & Puducherry Strait of Hormuz to be open “fairly soon”, says Trump ‘Jana Nayagan’ leak tests new legal penalties, torrent downloads under scanner Vijay’s ‘Jana Nayagan’ controversy explained: From legal battles to piracy chaos HYDRAA brings down guest house and other structures at Ameenpur Row erupts over removal of Ambedkar statue at midnight in Secunderabad Cantonment area Nitish may resign as Bihar CM on April 13; son Nishant likely to become one of two JD(U) Dy CMs Police open fire on youth while he was trying to flee Struggling CSK look to snap their losing streak | Vidyut Sivaramakrishnan ED raids former Trinamool Minister Partha Chatterjee’s residence Karnataka’s Gruha Jyothi scheme dimmed the scope of PM’s Surya Ghar Muft Bijli Yojana: KRESMA After Artemis II, NASA looks to SpaceX, Blue Origin for Moon landings Ayush Shetty storms into Badminton Asia Championships final Scholarships: April 11, 2026 Andhra Pradesh’s Socio-Economic Survey missing in recent Budget Session; efforts underway Inside Péro’s fun office Penciljam sessions in Bengaluru help hone artistic talent Watch: The mistake killing high-concept films | Escalation without calibration | FMM 19 Tamil Nadu Assembly election 2026: DMK demands reinstatement of N. Muruganandam as Chief Secretary
QR code phishing was ‘fastest-growing’ form of email atta...
2026-05-07 · via The Hindu: Latest News today from India and the World, Breaking news, Top Headlines and Trending News Videos.
Other cyber-attack strategies included CAPTCHA-gated phishing [File]

Other cyber-attack strategies included CAPTCHA-gated phishing [File] | Photo Credit: REUTERS

While email-based hackers and cybercriminals have many tools at their disposal in order to deceive users and harvest their credentials via phishing attacks, a new report from Microsoft stated that malicious QR codes were growing in popularity.

In a report titled ‘Email threat landscape: Q1 2026 trends and insights,’ by Microsoft Threat Intelligence and the Microsoft Defender Security Research Team, researchers outlined that between January and March, they detected around 8.3 billion email-based phishing threats.

The report noted that by the end of the quarter, the fastest-growing form of attack was QR code phishing, which more than doubled during the time.

“The most significant shift in Q1 2026 was the rapid escalation of QR code phishing, with attack volumes increasing from 7.6 million in January to 18.7 million in March, a 146% increase over the quarter,” stated Microsoft, adding that after a decline in January, there was a significant surge in both February and March.

QR code-based phishing works by inserting malicious URLs within the scannable designs, and sending them through the body of an email or via an attachment.

“By the end of the quarter, QR code phishing had reached its highest monthly volume in at least a year,” said the report.

Link-based email threats made up 78%, while malicious payloads made up 19% of attacks in January, though these figures changed throughout the quarter.

Other cyberattack strategies included CAPTCHA-gated phishing, where fake versions of tests meant to detect organic human behaviour were used as a decoy to hide the “transition to malicious content,” per the report.

“By forcing users to engage with the CAPTCHA before accessing the payload, threat actors reduce the likelihood of automated scanning tools identifying the threat and increase the chances of successful credential harvesting or malware delivery,” said the report.

CAPTCHA-gated phishing was enabled through HTML attachments, SVG files, PDF files, DOC/DOCX files, and email-embedded URLs, though hacker preferences for these formats fluctuated over the months.

In order to deceive users and lull them into a false sense of security, many such malicious emails made use of fake confidentiality disclaimers, similar to those found at the tail end of corporate emails.

In March, the U.S. FBI published an advisory that warned about ongoing phishing campaigns by cyber actors associated with the Russian Intelligence Services (RIS).

Published - May 07, 2026 02:42 pm IST