We received reports of a QR code phishing attack earlier today imitating our HR department. The email contained no body and was merely and attachment that attempted to look like a formal TCNJ document. There are a number of markers within, such as odd wording, the use of the word “Corporate” in relation to policies, and poor formatting that lead this to be quickly identified as a phishing attack. Scanning the QR code will prompt the user to complete a captcha before redirecting to a fake Microsoft login page where the attacker will harvest credentials if entered. Please be vigilant when reviewing your emails and please forward any suspicious messages to us at phish@tcnj.edu. Thank you.


