Picture of a cell phone with a QR Code pulled up

Casey State Bank

Blog

Smart Scanning: Your Guide to QR Code Security

QR codes are a quick, easy way to access specific websites. One of the most common uses is for restaurant menus– instead of a large, cumbersome menu, you simply follow a QR code and have everything right on your phone! While they’re handy and convenient, not all QR codes are safe. Today, we’re going to take a look at how QR codes can be used for scams, and how you can avoid being tricked by fraudulent QR codes.

What Is A QR Code?

QR codes, short for quick response codes, are cell phone and computer-readable codes with many functions. They can take you to specific websites, lead you to download apps, and quickly pull up information.

QR codes have been around for years. They were first developed in the mid-1990s but didn’t see much public use. Instead, they were used for inventory control and manufacturing. But as smartphones became more ubiquitous and the Covid-19 pandemic encouraged us to limit personal contact, their use exploded.

While QR codes themselves are usually secure, they have also become a tool for cyber scammers. Let’s talk about what those scams are and how we can avoid them. 

Thinking About QR Code Security

So how does QR code scamming work? Think of these scams as marketing campaigns. The scammer wants you to take action and scan their code, so they need to make it as appealing as possible. Fake promotions have emerged as a favorite attack method. Cybercriminals embed a QR code into a phishing email, text, or social media post. When you scan the fake QR code, you may be prompted to download malicious content, log in to a website, or provide payment details. And as soon as you do that, they have your information. 

Public QR codes also pose a risk, as cybercriminals may place their phony QR codes over genuine ones. It’s a simple technique involving printing QR codes (which anyone can generate) on labels and just sticking them to publicly accessible surfaces. It’s a low-tech way to trap people in a high-tech crime.

Preventing QR Code Crime

QR code scams can happen to anyone. Fraudsters spend a lot of time and effort making their QR codes and the information surrounding them seem legitimate. Pay attention to QR codes when you’re out in public. Before you scan a code, check out its source. Avoid scanning codes from unknown or suspicious locations, such as unsolicited emails, random flyers, or public posters. Use your smartphone’s built-in scanner or a trusted QR code scanning app that can detect malicious codes. 

Also, remember that many QR code scams rely on you expecting the QR code as part of your environment, and not investigating too deeply. Before scanning, check the surrounding area for signs of tampering or illegitimacy. If the QR code is on a plain label trying to blend in with a sign? Don’t scan it. Additionally, enable your device’s security settings to alert you about potential threats and never provide personal information or payment details after scanning a QR code unless you are absolutely certain of the source’s legitimacy. By following these precautions, you can enjoy the convenience of QR codes without falling victim to scams.

QR Code Security With Casey State Bank

QR codes are generally safe– in fact, they’re a tool we help the businesses that bank with us to use through Autobooks. Like so many scams, the danger from QR codes is really a form of social engineering. Paying attention and not simply scanning is one of the best ways to avoid this type of cybercrime. 

At Casey State Bank, we care about your security. Your financial and personal information is important to us, and we want to help you maintain your privacy and security. That’s why we take proactive measures, like using multifactorial authentication and other safety tools, to help keep your data safe. For more information about protecting your personal information, check out the Casey State Bank blog and our SAFE security topics video library.