Welcome home, fellow Gator.

The Gator Nation's oldest and most active insider community
Join today!
  1. Hi there... Can you please quickly check to make sure your email address is up to date here? Just in case we need to reach out to you or you lose your password. Muchero thanks!

QR Code Scam

Discussion in 'Too Hot for Swamp Gas' started by chemgator, Jan 20, 2022.

  1. chemgator

    chemgator GC Hall of Fame

    13,848
    1,960
    1,318
    Apr 3, 2007
    A paper shredder. I print them out and shred them. They make good mulch.
     
  2. ValdostaGatorFan

    ValdostaGatorFan GC Hall of Fame

    2,774
    601
    1,998
    Aug 21, 2007
    TitleTown, USA
    The first to fall was Adobe Reader in the enterprise applications category after Haboob SA's Abdul Aziz Hariri (@abdhariri) used an exploit chain targeting a 6-bug logic chain abusing multiple failed patches which escaped the sandbox and bypassed a banned API list on macOS to earn $50,000.

    After zero-day vulnerabilities are demoed and disclosed during Pwn2Own, vendors have 90 days to create and release security fixes for all reported flaws before Trend Micro's Zero Day Initiative publicly discloses them.

    Sandboxes are not the be-all and end-all. This is macOS and not iOS, but the point stands.

    Windows 11, Tesla, Ubuntu, and macOS hacked at Pwn2Own 2023

    Also, finding exploits can be quite lucrative.

    Synacktiv (@Synacktiv) took home $100,000 and a Tesla Model 3 after successfully executing a TOCTOU (time-of-check to time-of-use) attack against the Tesla – Gateway in the Automotive category. They also used a TOCTOU zero-day vulnerability to escalate privileges on Apple macOS and earned $40,000.
     
    • Informative Informative x 1
  3. tilly

    tilly Superhero Mod. Fast witted. Bulletproof posts. Moderator VIP Member

    Your point is well taken, but CamScanner is a very common software. Everyone in my org uses it, my wife use it with her clients and it's the go to for my kids school work.

    It lets you take a pic of a physical doc with your phone and converts the photo to a pdf instantly so you can print, share or send it.

    Im an Android guy phone wise (Have a couple Macbooks and iPads though) and will look deeper at the malware issue.

    Thats sorta shocking. CS is likely the best known app of its kind. (100m users)
     
  4. ValdostaGatorFan

    ValdostaGatorFan GC Hall of Fame

    2,774
    601
    1,998
    Aug 21, 2007
    TitleTown, USA
    I would use something different, but that's just me. The article is dated, so it could be legit now, but it just gives me a bad feeling. I've never needed an app like this, but if I did, I would use one of the alternatives listed in the article.
     
  5. tilly

    tilly Superhero Mod. Fast witted. Bulletproof posts. Moderator VIP Member

    Cam Scanner was sort of the pioneer piece in this niche. So simple and versatile. Definately going to look deeper. May have to get my whole staff to switch.

    Thanks for the link.
     
  6. ValdostaGatorFan

    ValdostaGatorFan GC Hall of Fame

    2,774
    601
    1,998
    Aug 21, 2007
    TitleTown, USA
    Np. In all honesty, it's probably safe now.
     
  7. ValdostaGatorFan

    ValdostaGatorFan GC Hall of Fame

    2,774
    601
    1,998
    Aug 21, 2007
    TitleTown, USA
  8. jovannixv

    jovannixv Recruit

    6
    2
    1,663
    May 18, 2023
    I also tried different mobile apps. You might know CamScanner.
     
    • Funny Funny x 1
  9. archigator_96

    archigator_96 GC Hall of Fame

    3,935
    3,604
    1,923
    Apr 8, 2020
    Well, that doesn't pay as much.
     
  10. AgingGator

    AgingGator GC Hall of Fame

    3,899
    836
    2,088
    Apr 24, 2007
    Too high-tech. You will need to get a bonded courier
     
    • Funny Funny x 1
  11. l_boy

    l_boy 5500

    13,024
    1,742
    3,268
    Jan 6, 2009
    • Informative Informative x 1
  12. tilly

    tilly Superhero Mod. Fast witted. Bulletproof posts. Moderator VIP Member

    You are statistically safer using your phone for such things than you are using your physical plastic card at retail.

    And lets not even talk about the old days when there were carbon copies.

    The kid at starbucks snaps a pic of your card while you wait for your latte
    ...and then goes on a spree.

    Using your phone encrypts your info and requires your fingerprint/facial rec to even use it and then NONE of your financial info is available to the retailer.
     
    • Agree Agree x 1
    • Fistbump/Thanks! Fistbump/Thanks! x 1
  13. tilly

    tilly Superhero Mod. Fast witted. Bulletproof posts. Moderator VIP Member

    @ncargat1 ... Apologies. Didnt realize I was responding to a two year old bumped thread.
     
    • Fistbump/Thanks! Fistbump/Thanks! x 1
  14. demosthenes

    demosthenes Premium Member

    8,916
    1,085
    3,218
    Apr 3, 2007
    Did you ban the bot?
     
  15. tilly

    tilly Superhero Mod. Fast witted. Bulletproof posts. Moderator VIP Member

    He has some posts that dont seem to line up with being a bot.
     
    • Optimistic Optimistic x 1