Attacks & Threats
Vishing
Also known as: Voice phishing
Definition
Phishing conducted over voice channels — phone calls or VoIP — to manipulate victims into revealing credentials, payments, or remote access.
Examples
- A caller posing as the bank's fraud department asks for a one-time code "to cancel a suspicious transaction".
- An attacker impersonates a known executive using a cloned voice to instruct accounting to send a wire transfer.
Related terms
Phishing
A social-engineering attack in which an attacker impersonates a trusted party to trick a victim into revealing credentials, transferring money, or running malware.
Smishing
Phishing delivered via SMS or other mobile-messaging channels to trick victims into clicking malicious links, calling fraudulent numbers, or revealing data.
Social Engineering
The psychological manipulation of people into performing actions or disclosing confidential information that benefits an attacker.
Pretexting
A social-engineering technique in which an attacker invents a believable scenario or identity to manipulate a target into disclosing information or performing an action.
Tech Support Scam
A fraud in which attackers pose as technical support agents from a well-known vendor to convince victims to install remote-access tools, hand over credentials, or pay for fake services.
CEO Fraud
A subtype of business email compromise in which an attacker impersonates a senior executive to pressure an employee into performing an unauthorised wire transfer or sensitive action.