ESET: ~70% of phishing incidents hit during business hours as QR phishing rises

TechNadu · x · 2026-09-30

TechNadu summarizes ESET telemetry: 1 in 9 detected phishing emails in H1 2026 used QR codes; ConsentFix abuses a legitimate Microsoft sign-in flow to obtain OAuth codes exchanged for access and refresh tokens; nearly 70% of incidents occur during business hours, with ClickFix variants showing phishing tactics keep evolving.

Related event: ESET: QR Code Phishing Surges, Misusing Microsoft Login Flows(2 posts)→

Original post →

More from Safety

Safety channel →