1 in 9 phishing emails now uses QR codes; ConsentFix abuses Microsoft OAuth flow
TechNadu · x · 2026-09-30
ESET telemetry from H1 2026 shows 1 in 9 detected phishing emails used a QR code to steer victims past traditional mail filters.
More concerning is ConsentFix: it abuses a legitimate Microsoft sign-in flow to trick users into granting consent, obtaining OAuth codes that are exchanged for access and refresh tokens — full account access. Classic phishing red flags are getting easier to bypass.
Related event: ESET: QR Code Phishing Surges, Misusing Microsoft Login Flows(2 posts)→
More from Safety
- French Tax Breach Stole Data on 350K+ People, Undetected for 7 Weeks — TechNadu · 2026-09-30
- NVIDIA launches OpenShell, an open secure runtime that governs AI agent execution outside the model — TheZachMueller · 2026-09-30
- Tokyo court rules AI voice clone of actor Tsuda Kenjiro violated publicity rights — nordicinst · 2026-09-30
- Anthropic Says Zhipu's Open-Weight GLM-5.3 Nearly Matches Claude at Writing Exploits — The Decoder · 2026-09-30
- New paper: AI assurance needs five commitments, not six checklists — YvesMulkers · 2026-09-30
- Oxford researcher slams Anthropic's GLM-5.3 cyber report as double standard — StefanoGogioso · 2026-09-30