Guides detection and prevention of QR code phishing (Quishing) in emails via image OCR, URL extraction, sandboxing, mobile defenses, and detection rules. For email security configs.
How this skill is triggered — by the user, by Claude, or both
Slash command
/cybersecurity-skills-zh:detecting-qr-code-phishing-with-email-securityThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
二维码网络钓鱼(Quishing)是一种快速增长的攻击向量,恶意 URL 被嵌入钓鱼邮件的二维码图片中。2025 年 8 月至 11 月间,Quishing 事件从 46,000 起增长至 250,000 起,增长了五倍,其中凭据钓鱼占检测到事件的 89.3%。传统邮件安全过滤器难以应对,因为二维码既无法被人工阅读,也无法被标准 URL 扫描器识别,而用户扫描后通常使用缺乏企业安全控制的个人移动设备。攻击者已演进出使用分割二维码(两张独立图片)、嵌套二维码和基于 ASCII 文本的二维码来规避检测。
二维码网络钓鱼(Quishing)是一种快速增长的攻击向量,恶意 URL 被嵌入钓鱼邮件的二维码图片中。2025 年 8 月至 11 月间,Quishing 事件从 46,000 起增长至 250,000 起,增长了五倍,其中凭据钓鱼占检测到事件的 89.3%。传统邮件安全过滤器难以应对,因为二维码既无法被人工阅读,也无法被标准 URL 扫描器识别,而用户扫描后通常使用缺乏企业安全控制的个人移动设备。攻击者已演进出使用分割二维码(两张独立图片)、嵌套二维码和基于 ASCII 文本的二维码来规避检测。
npx claudepluginhub killvxk/cybersecurity-skills-zhDetects QR code phishing (quishing) attacks in emails via image analysis. Guides SOC analysts in incident investigation, detection rule creation, and threat hunting.
Detects QR code phishing (quishing) attacks in emails via image analysis. Guides SOC analysts in incident investigation, detection rule creation, and threat hunting.
Detects and prevents QR code phishing (quishing) attacks that embed malicious URLs in QR code images within emails, bypassing traditional security filters.