Voice Phishing (Vishing)

Voice phishing (or “vishing”) is an increasingly common form of social engineering attack designed to manipulate unsuspecting victims into disclosing sensitive personal or financial information. Vishing involves fraudsters using pretexts – such as claiming to be from law enforcement, a bank, or a trusted contact or business – in order to gain victims’ trust and persuade them to divulge sensitive data. Unlike phishing emails, which rely on persuasive messages, vishing uses real-time conversations to create an urgent and more personal sense of threat.

How it works

Vishing typically involves a call from a person claiming to be from a legitimate organisation such as a bank, credit card issuer, or tech support provider, telling the victim that their account has been compromised or their computer is not secure. The caller may also tell them that their card has been charged for purchases they did not make, and will ask for personal details to “verify” the transaction or to log into the account. Once the victim has provided the necessary information, the fraudster is able to steal money or commit identity theft.

Vishing attacks can take various forms, including automated phone calls (or robocalls) or real people who can sound quite convincing. Some will try to rush victims into giving out information, such as bank account numbers or passwords, even if they suspect it’s fraudulent.

How to Prevent Vishing

The best way to protect yourself from vishing scams is to be vigilant and be aware that you may be a target. Never give out personal or financial information in response to an unsolicited call, even if the caller seems legitimate. It is best to hang up and call back the organisation in question from their official number (do not use the number on the caller ID) to confirm the call.

Be suspicious of calls that ask for an immediate response or require payment. Do not trust any caller who verifies your personal information, such as an address or last 4 digits of a social security number. Make sure to keep your anti-virus and malware protection up-to-date, and back up your data regularly.

