A Targeting Attack by Dynamic Fake QR Code Using Invisible Laser Irradiation
Dai Itakura, Taiga Manabe, Yuki Kamata, Ayana Oku, Hiroshi Yamamoto, Yoshihisa Takayama, Toshihiro Ohigashi
2025
Abstract
In this study, we propose a method to generate a fake QR code that can lead to a malicious website at any particular time by laser irradiation of a QR code. First, we explain the fake QR code. Subsequently, we will examine the configuration of a fake QR code that dynamically changes the probability of induction to a malicious website by laser irradiation, considering that the camera treats the area as a bright area when the area is imaged with high illumination by the laser. We show its feasibility by experimentation. We focus on the attackable distance, which is critical in evaluating the threat level. The feasibility is then shown and the threat level is evaluated by the attackable distance. Specifically, we examine the conditions necessary to achieve long laser irradiation distances. Consequently, a demonstration experiment shows that it is possible to fake a QR code by laser irradiation over a long distance of approximately 100 meters. Finally, we discuss countermeasures against laser irradiation for fake operation.
DownloadPaper Citation
in Harvard Style
Itakura D., Manabe T., Kamata Y., Oku A., Yamamoto H., Takayama Y. and Ohigashi T. (2025). A Targeting Attack by Dynamic Fake QR Code Using Invisible Laser Irradiation. In Proceedings of the 11th International Conference on Information Systems Security and Privacy - Volume 2: ICISSP; ISBN 978-989-758-735-1, SciTePress, pages 455-462. DOI: 10.5220/0013102500003899
in Bibtex Style
@conference{icissp25,
author={Dai Itakura and Taiga Manabe and Yuki Kamata and Ayana Oku and Hiroshi Yamamoto and Yoshihisa Takayama and Toshihiro Ohigashi},
title={A Targeting Attack by Dynamic Fake QR Code Using Invisible Laser Irradiation},
booktitle={Proceedings of the 11th International Conference on Information Systems Security and Privacy - Volume 2: ICISSP},
year={2025},
pages={455-462},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0013102500003899},
isbn={978-989-758-735-1},
}
in EndNote Style
TY - CONF
JO - Proceedings of the 11th International Conference on Information Systems Security and Privacy - Volume 2: ICISSP
TI - A Targeting Attack by Dynamic Fake QR Code Using Invisible Laser Irradiation
SN - 978-989-758-735-1
AU - Itakura D.
AU - Manabe T.
AU - Kamata Y.
AU - Oku A.
AU - Yamamoto H.
AU - Takayama Y.
AU - Ohigashi T.
PY - 2025
SP - 455
EP - 462
DO - 10.5220/0013102500003899
PB - SciTePress