Exemplifying Emerging Phishing: QR-based Browser-in-The-Browser (BiTB) Attack

Fuente: arXiv
Salvato in:
Dettagli Bibliografici
Autori principali: Akram, Muhammad Wahid, Sood, Keshav, Hassan, Muneeb Ul, Subba, Basant
Natura: Preprint
Pubblicazione: 2025
Soggetti:
Accesso online:
Tags: Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
_version_ 1866915533255868416
author Akram, Muhammad Wahid
Sood, Keshav
Hassan, Muneeb Ul
Subba, Basant
author_facet Akram, Muhammad Wahid
Sood, Keshav
Hassan, Muneeb Ul
Subba, Basant
contents Lately, cybercriminals constantly formulate productive approaches to exploit individuals. This article exemplifies an innovative attack, namely QR-based Browser-in-The-Browser (BiTB), using proficiencies of Large Language Model (LLM) i.e. Google Gemini. The presented attack is a fusion of two emerging attacks: BiTB and Quishing (QR code phishing). Our study underscores attack's simplistic implementation utilizing malicious prompts provided to Gemini-LLM. Moreover, we presented a case study to highlight a lucrative attack method, we also performed an experiment to comprehend the attack execution on victims' device. The findings of this work obligate the researchers' contributions in confronting this type of phishing attempts through LLMs.
format Preprint
id arxiv_https___arxiv_org_abs_2505_18944
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Exemplifying Emerging Phishing: QR-based Browser-in-The-Browser (BiTB) Attack
Akram, Muhammad Wahid
Sood, Keshav
Hassan, Muneeb Ul
Subba, Basant
Cryptography and Security
Emerging Technologies
Lately, cybercriminals constantly formulate productive approaches to exploit individuals. This article exemplifies an innovative attack, namely QR-based Browser-in-The-Browser (BiTB), using proficiencies of Large Language Model (LLM) i.e. Google Gemini. The presented attack is a fusion of two emerging attacks: BiTB and Quishing (QR code phishing). Our study underscores attack's simplistic implementation utilizing malicious prompts provided to Gemini-LLM. Moreover, we presented a case study to highlight a lucrative attack method, we also performed an experiment to comprehend the attack execution on victims' device. The findings of this work obligate the researchers' contributions in confronting this type of phishing attempts through LLMs.
title Exemplifying Emerging Phishing: QR-based Browser-in-The-Browser (BiTB) Attack
topic Cryptography and Security
Emerging Technologies
url https://arxiv.org/abs/2505.18944