ARTICLE
25 June 2025

Employers: A Cautionary Tale About New Cyber Threats Involving Employee Handbooks

CH
Clark Hill

Contributor

At Clark Hill, our value proposition is simple. We offer our clients an exceptional team, dedicated to the delivery of outstanding service. We recruit and develop talented individuals and empower them to contribute to our rich diversity of legal and industry experience. With locations spanning across the United States, Ireland, and Mexico, we work in agile, collaborative teams, partnering with our clients to help them reach and exceed their business goals.

Clark Hill. Simply Smarter.

Clark Hill has a robust cybersecurity and privacy practice group and a team of employment attorneys. The cyber unit's work benefits all practice areas they learn about the newest risks facing clients.
United States Technology

Clark Hill has a robust cybersecurity and privacy practice group and a team of employment attorneys. The cyber unit's work benefits all practice areas they learn about the newest risks facing clients. Recently, their work has uncovered a devious hacker ploy involving electronic distributions of employee handbooks.

Cybercriminals are obtaining copies of real or fake employee handbooks and distributing them by email, spoofing a legitimate employer email address so that the email and its attachment appear authentic. The email asks the employee to scan a QR code, which is described as a way to acknowledge receipt of the handbook. When scanned, the QR codes direct the recipient to a malicious website that impersonates a legitimate corporate login portal, such as Microsoft 365 or even your own Company's HR portal. The QR code requires the employee to provide user credentials, which the hacker then uses to gain access to the email environment. This scheme can also be used to install malware when the QR code is accessed.

Companies may wish to engage preventative strategies. For example,

  • Provide email security training using this ploy as a case study
  • Communicate to employees how and when handbooks are distributed and the manner in which acknowledgments are collected
  • Engage with your IT Department on best practices for email and business records security, the use of multi-factor authentication, and anti-malware software
  • Training employees that handbooks are company property and are not to be disseminated outside of the company
  • Engage with payroll providers or vendors of your HRIS software about the security of portals and company documents stored on their sites

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More