incident-response-trainer
Mock scenarios · Rule-based grading
CatalogOverviewSnapshot
← Back to catalog
CybersecurityeasyQR Code PhishingHigh asset
Scenario

Finance employee scanned 'Free Parking Validation' QR poster in lobby — entered M365 credentials on look-alike page

A easy Cybersecurity scenario on QR Code Phishing.

Practice this scenario

Start a graded attempt against this scenario. Your response is scored by the same deterministic rubric used across the catalog. Email and evidence content stay hidden until you start.

Launches this exact scenario. One of 5 templates in this Track + Difficulty pool.

catalog id · qr-code-phishing-parking-poster

Training alignment

What this scenario practices, mapped to recognized frameworks.

Educational mapping only. Not a compliance attestation.

What this trains
  • Non-email phishing recognition
  • Awareness-driven physical-vector triage
MITRE ATT&CKmitre-attack
  • Phishing · Initial AccessT1566 · TA0001
    MappedHigh confidence

    Trains recognition of QR-coded phishing pivoted through physical signage.

MITRE D3FENDmitre-d3fend
  • Network Traffic AnalysisD3-NTA
    MappedMedium confidence

    Trains DNS and TLS-SNI visibility for follow-on traffic.

  • Multi-factor AuthenticationD3-MFA
    MappedMedium confidence

    Trains MFA-backed containment when a phishing landing is opened.

NIST CSF 2.0nist-csf-2
  • Continuous Monitoring · DetectDE.CM · DE
    MappedHigh confidence

    Trains detection reasoning when the email channel is bypassed.

NIST SP 800-61r3nist-sp-800-61r3
  • IR lifecycle phaseDetection & Analysis
    MappedHigh confidence

    Trains triage when phishing arrives via non-email vectors.

CISA Cybersecurity Performance Goalscisa-cpg
  • Basic Cybersecurity Training2.F
    MappedHigh confidence

    Trains the awareness baseline for non-email phishing vectors.

  • Phishing-Resistant MFA2.E
    MappedMedium confidence

    Trains the MFA baseline that limits follow-on impact.

CIS Controls v8cis-controls
  • Security Awareness and Skills TrainingControl 14
    MappedHigh confidence

    Trains the awareness control the scenario exercises.

  • Access Control ManagementControl 6
    MappedMedium confidence

    Trains access-control discipline for redirected logins.