Tuesday, April 1, 2014

The Shady Side of QR Codes



QR codes or quick response codes as they are known are profoundly seen everywhere. Whether it is a magazine or the hoarding of Macy’s we can see businesses applying this marketing gimmick in all arenas. But this marketing tool could just be the loop hole that hackers have been waiting for.

The fact that QR codes are really cheap and even easy to make has made them really popular in the recent times. This has given the cyber criminals a tool to gain access to the data in people's smart phones.

How does a QR code work?
Lets first understand how a QR code actually works. QR codes are basically black square boxes which embed a URL's of websites which can be scanned a deciphered by a smartphone and will lead the user to an add or maybe some malicious website which downloads viruses or trojans onto the phone.  




Why fear Viruses/Malware  in QR Codes??
  • Malwares can access the Contacts, Calendar and even credit card information if it is stored on the infected phone
  • Usually the passwords of Google, Facebook, LinkedIn and other websites will be stored on the user's phone. Malware can access these passwords and can misuse them for personal gain
  • All the smartphone devices usually have location based services associated with them. The viruses can be used to track users location

The user interest in QR codes is just building up as of now. But with time as the QR codes become widely used, it could become a favorite for cyber criminals who want to exploit unsuspecting users.

References:
http://www.securitymanagement.com/news/hacker-says-‘don’t-scan-qr-code’-009207
http://2d-code.co.uk/qr-code-virus/
http://www.cnet.com/news/the-dark-side-of-qr-codes/
http://askbobrankin.com/can_qr_codes_spread_computer_viruses.html
http://www.dummies.com/how-to/content/security-risks-that-come-with-use-of-qr-codes.html