Course Content
Cybersecurity Awareness for Corporate Teams

2.2 Advanced Social Engineering Tactics 

  • Quishing (QR Code Phishing): Attackers embed malicious links in QR codes within PDF attachments. Because email filters often cannot “read” QR codes, these bypass security scanners. Users scan them with mobile devices, which often lack corporate security protections.

  • Smishing (SMS Phishing): Texts claiming “Package Delivery Failed” or “Bank Fraud Alert.” These have a 98% open rate compared to 20% for email.

  • Vishing (Voice Phishing) & Deepfakes: Attackers use AI to clone a CEO’s voice. They call a finance employee and demand an urgent transfer. This “Deepfake Vishing” is a rising vector for high-value fraud.