The FTC advises consumers on immediate actions after encountering QR-code fraud tied to parking or payments. If you scanned a suspicious code, the alert recommends steps to limit damage, including monitoring for account misuse and securing affected information.

In its consumer guidance, the FTC explains how QR-code scams can escalate from a single scan into broader account or payment compromise. When scammers swap out legitimate QR codes with their own, the victim’s device may load a counterfeit page that requests sensitive data or pushes fraudulent payment flows. Even when the “ask” is brief—such as entering credentials or confirming payment details—the result can be credential theft, unauthorized charges, or subsequent impersonation. The FTC’s recommendations focus on limiting fallout after you may have interacted with a scam link. Consumers are encouraged to assess what information was entered, to secure any accounts that may have been accessed (for example, by changing passwords if credentials were submitted), and to watch for suspicious activity and unfamiliar transactions. The alert also emphasizes practical caution: verify parking or payment instructions using official methods rather than relying on a QR code that looks suspicious or newly placed. While the warning is aimed at preventing scans in the first place, the FTC includes follow-up steps to help victims reduce exposure if a fake QR code already redirected them to a malicious page.