Image: Getty Images
Kaspersky has broadened its cybersecurity training offerings with the introduction of a new module focused on vishing (voice phishing) within its Automated Security Awareness Platform (ASAP). This initiative comes in response to a notable rise in voice scams aimed at corporate employees, where attackers increasingly use sophisticated tactics to access confidential information and financial resources.
The new module is designed to assist organizations in fortifying their primary defense by educating employees on how to identify and react to vishing attacks—fraudulent schemes involving phone calls meant to extract personal data, banking information, or login credentials.
“As social engineering tactics become more advanced, our methods of education must evolve accordingly. Vishing is now a significant threat not just to individuals but to organizations as well, resulting in financial losses, data breaches, and damage to reputation,” stated Tatyana Shumaylova, senior product marketing manager at Kaspersky Security Awareness. “Our latest vishing module empowers users with the skills necessary to protect themselves against voice-related scams—a threat that is growing more complex and personalized. We support companies in preparing their workforce to recognize and resist these attacks. Given that vishing can often lead to more severe breaches, raising awareness across various related subjects is crucial.”
Read: Crypto scam alert: 5 things to know about the new Google Forms fraud, according to Kaspersky
Vishing attacks typically start with urgent emails prompting recipients to call a specified phone number. Unlike email phishing, which gives potential victims time to scrutinize suspicious links or content, vishing employs high-pressure tactics over the phone. Attackers often exploit fear and urgency to coerce employees into sharing sensitive information.
Kaspersky highlighted recent incidents that illustrate the extent of this threat. For instance, Irish bank AIB noted a 79 percent increase in vishing cases compared to the previous year, including an incident where a business customer almost lost $47,000. In another notable case, a group identified by Google as UNC6040 employed vishing techniques to target Salesforce users across approximately 20 organizations, successfully deceiving victims into installing harmful applications that provided attackers full access to their corporate systems.
In response to these evolving threats, Kaspersky’s new ASAP module offers real-world case studies, engaging lessons, and simulated scenarios. The platform, which now accommodates over 30 languages, is designed for ease of use and scalability across global enterprises.
Kaspersky’s latest educational endeavor reflects a wider industry effort to enhance cybersecurity practices through ongoing employee training, particularly in light of the increasing sophistication of social engineering threats targeting businesses of all sizes.