An attacker is attempting to extract sensitive information from a company's employee by impersonating a trusted individual over the phone. What is this type of social engineering attack called?
Vishing is a type of social engineering attack where an attacker uses the telephone system, often pretending to be a trusted entity, to extract sensitive information from a target. Phishing is similar but primarily occurs through email or other electronic communication. Impersonation could be part of a vishing attack but is a broader term that doesn't specify the method of communication. Business email compromise is an attack targeted at companies to gain access to company information or assets, typically through deception via email.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is vishing, and how does it differ from phishing?
Open an interactive chat with Bash
How can organizations protect themselves against vishing attacks?
Open an interactive chat with Bash
What are some common tactics attackers use in vishing attacks?