Suped

Summary

Email spam filters are constantly evolving to combat new threats. While traditional filters primarily focused on text, links, and attachments, the rise of sophisticated phishing techniques, particularly those involving QR codes embedded in images, has introduced new challenges. The core issue is that many older or less advanced filters are not equipped to read or interpret content within images, making QR codes a disproportionately effective way to bypass detection.

What email marketers say

Email marketers are increasingly aware of the evolving landscape of spam filtering, particularly concerning images and QR codes. While some acknowledge that certain filters do scan image content, there's a general consensus that QR codes in images pose a unique challenge due to filters' inability to easily parse their embedded links. Marketers also highlight the concerning trend of scammers leveraging legitimate platforms to send malicious content.

Marketer view

Marketer from Email Geeks observes that image-heavy scam emails can bypass filters, even with authentication like BIMI, suggesting text-based content would be caught. This highlights a gap in current filter capabilities for visual content.

25 Aug 2024 - Email Geeks

Marketer view

Marketer from Email Geeks states that image scanning by spam filters is not universal, with some performing it and others not. This variability makes it challenging for senders to predict how their image-heavy emails will be handled.

25 Aug 2024 - Email Geeks

What the experts say

Email deliverability experts offer a nuanced perspective on image and QR code scanning. While acknowledging that some level of image scanning occurs, they emphasize the technical and cost challenges involved in comprehensive analysis. Experts also highlight that legitimate platforms with strong authentication are less likely to have their content deeply scrutinized, which unfortunately creates an opening for sophisticated phishing attempts.

Expert view

Deliverability expert from Email Geeks confirms that email filters employ diverse methods and technologies to scan images for various types of malicious content or indicators. This suggests a continuous arms race in detection.

25 Aug 2024 - Email Geeks

Expert view

Email security expert from Spamresource.com explains that traditional filters often fail to detect QR code phishing because these attacks lack the usual indicators, such as direct links or suspicious attachments. This makes QR codes a unique challenge.

15 Mar 2025 - Spamresource.com

What the documentation says

Official documentation and research outlets reveal that while email filters are becoming more sophisticated, parsing image content and QR codes for malicious intent remains a significant hurdle. The visual nature of QR codes makes them inherently difficult for traditional text-based filters to analyze, forcing security providers to develop new, resource-intensive technologies. This ongoing challenge means that a layered approach to email security is crucial.

Technical article

Documentation from Cisco Talos Blog highlights that QR codes are remarkably effective at circumventing anti-spam filters because many are not equipped to detect their presence within images. This indicates a fundamental gap in older filtering architectures.

05 Oct 2023 - Cisco Talos Blog

Technical article

Documentation from Malwarebytes notes that email filters typically analyze links in text, but often overlook QR codes embedded as images, which allows them to bypass detection. This highlights the difference in how text and visual content are processed.

25 Apr 2025 - Malwarebytes

15 resources

Start improving your email deliverability today

Get started