FURTHER reports have been made to police regarding fake QR codes being placed on car parking machines and electric vehicle charging points across Conwy and Denbighshire.

This is known as “quishing” and takes you to a fake website.

In addition to money being paid to this website, bank details may also be captured as well as sensitive information such as passwords, financial data, or personally identifiable information (PII).

That information can also be used for other purposes, such as identity theft, financial fraud, or ransomware.

READ MORE:

Scam warning on parking meters in Llandudno and Colwyn Bay

Earlier this month, parking operatives found fraudulent QR codes on parking meters at The Parade, Llandudno and Colwyn Bay Promenade last weekend.

QR codes are not used by the official PayByPhone app which motorists can use to pay for parking in the county.

Acting detective sergeant Roheryn Evans, from North Wales Police’s cyber crime team, said: “Criminals are always looking to exploit any means to trick people into providing their personal data, bank details or passwords.

“As with all other cybercrime, consider who is asking you to click on a QR code and whether or not the originator is genuine.

“Never ever provide personal information unless it is a trusted source.”

Police issued the following advice when using QR codes:

  • Always check for tampered QR codes (stickers) before scanning. Some QR codes in open spaces (like stations and car parks) could be risky.
  • If in doubt, do not scan a code and use a search engine to find the official website or app for the organisation you need to make a payment to.
  • When scanning a QR code, use the QR-scanner built into your camera, or one that comes with your phone, as opposed to using a downloaded app from an app store.
  • If you receive an email with a QR code in it, and you're asked to scan it, you should exercise caution as we are seeing an increase in these types of “quishing” attacks.
  • Always check your bank accounts regularly and report any suspicious activity to your bank immediately.