ESET: QR Code Phishing Surges, Misusing Microsoft Login Flows
ESET telemetry for H1 2026 shows 1 in 9 phishing emails now uses QR codes to bypass filters, with nearly 70% of phishing occurring during work hours. The ConsentFix attack abuses Microsoft's legitimate login flow to obtain and redeem OAuth codes.
2026-09-30 ~ 2026-09-30 · 2 related posts
- 1 in 9 phishing emails now uses QR codes; ConsentFix abuses Microsoft OAuth flow — TechNadu · 2026-09-30
- ESET: ~70% of phishing incidents hit during business hours as QR phishing rises — TechNadu · 2026-09-30