meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS Stormcast Thursday, January 8th, 2026: HTML QR Code Phishing; n8n vulnerability; Powerbank Feature Creep

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 8 January 2026

⏱️ 7 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. SANS Stormcast Thursday, January 8th, 2026: HTML QR Code Phishing; n8n vulnerability; Powerbank Feature Creep

Transcript

Click on a timestamp to play from that location

0:00.0

Hello and welcome to the Thursday, January 8th, 2026 edition of the Sands

0:10.4

and then at Storm Center's Stormcast. My name is Johannes Ulrich, recording today from

0:15.2

Jacksonville, Florida. And this episode is brought you by the Sands.edu graduate certificate program in incident response.

0:24.2

Today we got another fishing diary from Jan.

0:27.5

Jan is writing about actually a set of emails that I've seen coming into our internal handler's alias over the holidays.

0:36.9

At first I was a little bit worried of attackers

0:39.2

kind of trying some new tricks over the holidays, maybe trying to outrun some of the defenders

0:44.1

here, because of course during the holidays, many of them may have taken the day off and

0:48.5

people also are less likely to make like big updates to their infrastructure over holidays.

0:56.0

Well, the small but significant change here was that QR codes in these emails were actually encoded as an HTML table.

1:07.4

So yeah, looks like a QR code, it may be a little bit squished, but of course,

1:12.2

QR codes are designed to be a rather resilient to like distortions and such like that,

1:18.0

because after all, it's the same as pointing your phone on a QR code from likely a little bit

1:23.6

an odd angle. That's sort of why they work, even if they aren't really perfect.

1:29.2

And a lot of email protection solutions have started looking at QR codes in order to filter

1:36.1

out some of these sort of out-of-band attacks where victims are being tricked to then use

1:41.3

their local phone to complete the fishing attack, which of course then isn't caught often by Enterprise Security Solutions.

1:52.7

So that's the latest trick here.

1:55.4

And of course, now I hope that some of the Fender, some of the anti-fishing solutions will add this to their

2:02.0

repertoire and, well, let's see what attackers are coming up next. And if you are into

2:06.5

fishing and please include us in your fishing mailing list, so that way we also get copies of whatever

2:13.3

you're trying next. And over the last couple days, there were actually, I think, a total of four critical

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.