During a security audit, you discover that an employee has been tricked into giving away sensitive information via a phone call with a person posing as IT support. Which type of social engineering attack does this scenario best describe?
Vishing is a social engineering technique that involves voice communication, typically over a telephone call, where an attacker attempts to trick individuals into disclosing sensitive information or performing actions that compromise security. In this scenario, the attacker posing as IT support to extract information over a phone call is a classic example of vishing. The incorrect options, while also forms of social engineering, do not specifically involve voice calls.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is vishing and how does it work?
Open an interactive chat with Bash
How does vishing differ from phishing and smishing?
Open an interactive chat with Bash
What other social engineering techniques should I be aware of?