Cybersecurity Tip of the Day - Vishing

Cyber Tip of the Day - Vishing

To help promote Cybersecurity Awareness, we would like to start your week with a tip to stay safe online. Today’s subject: Vishing.

Vishing involves using the telephone to scam people into giving away their sensitive information that can then be used for identity theft and fraud.

Here are some cybersecurity tips to protect yourself:

  • Legitimate companies normally won’t ask you for your social security number, credit card number, PIN, or such over a phone call. So, don’t key those in over the phone no matter what.
  • Don’t always believe your caller ID. A fraudster can call you and make the caller ID look like it’s coming from a legitimate source.
  • Vishing calls will try to create a sense of urgency so that the victim doesn’t have time to realize there’s something fishy going on or a cyber attack taking place. Some of these could even have an actual person at the other end asking for remote access to your laptop to help you fix a technical issue.
  • Remain calm and look for signs that the call could be a scam. For instance, government organizations like the IRS will never call you over the phone.
  • Protect your phone number like you’d protect your sensitive information. Many scams will record the call and use that recording later to make it seem like you’re agreeing to payments you never did.
  • Avoid saying things in the affirmative if you are suspicious. For example, the call may begin with “Hello, can you hear me?” to trick you into saying “yes.”

Be Smart. Be Aware. Be Secure. ERMProtect.

ERMProtect is a worldwide leader in cybersecurity solutions and forensics with over 25 years of experience. We identify IT vulnerabilities, secure systems, and train employees to recognize when they are being targeted by hackers. ERMProtect arms employees with the tools and security awareness they need to protect themselves and their organizations from cyber attacks. To speak with an expert on our cybersecurity team please call (800) 259-9660 or click here to schedule a free demo.

ERMProtect's Weekly Newsletter

Get a curated briefing of the week's biggest cyber news every Friday.

Stop Phishing Attacks with ERMProtect's Security Awareness Training

Turn your employees into a human firewall with our innovative Security Awareness Training.

Our e-learning modules take the boring out of security training.

Intelligence and Insights

Principle of Least Privilege (PoLP)

Principle of Least Privilege Requirements: PCI Compliance Services To Strengthen Cybersecurity

This article explores how PCI DSS 4.0.1 enhances IT risk assessment, cybersecurity risk assessment, and penetration testing solutions, while also providing guidance on implementing the Principle of Least Privilege to utilize PCI compliance services to …
FFIEC CAT

What Banks Need to Do Now to Replace the FFIEC’s Cybersecurity Assessment Tool (CAT)

This article explains alternative frameworks banks can use to replace the FFIEC CAT and remain compliant …
Cyber Insurance Audits: What IT Auditors Need to Know

Cyber Insurance Audits: What IT Auditors Need to Know

This article explores the type of cyber insurance policies companies in the marketplace and the role of IT auditors in making sure that cybersecurity standards are met …