What is Voice Phishing (Vishing)?
Vishing is voice‑based social engineering. Fraudsters pretend to be banks, merchants, or support, create a sense of urgency, and trick victims into reading out OTPs, card data, or consenting to remote access. Attack spikes after outages, or during promo seasons. The voice is typically calm, even helpful. The result is account takeover or rerouting of payments.
Prevention: reduce dependence on SMS codes, educate users in‑flow about what a legitimate call will never ask, and ask for out‑of‑band confirmation within your app for high‑value changes. Detect SIM/device changes, and cool down sensitive actions. If a user informs about a vish attempt, apply tighter limits and re‑prove identity with identity verification.