Techafricanews KnowBe4 Launches Simulated Vishing Training Amid Rising Voice Phishing Threats
Article Content
- •KnowBe4 launched a simulated vishing training tool to address rising voice phishing threats.
- •A 442% increase in vishing activity was reported between the first and second halves of 2024.
- •Employees are 40% more likely to fall for phone-based phishing simulations than email phishing.
KnowBe4 has introduced a simulated vishing capability to combat the increasing threat of voice phishing. This new feature is part of their platform's attack and simulation pillar, designed to help employees recognize high-pressure phone-based attacks. The 2025 CrowdStrike Global Threat Report noted a staggering 442% increase in vishing incidents from the first to the second half of 2024. Mandiant's M-Trends 2026 Report ranks voice phishing as a top initial infection vector. The 2026 Verizon Data Breach Investigations Report found that employees are 40% more likely to fall for phone-based phishing simulations compared to email phishing. The training incorporates real attacker tactics, including local caller ID spoofing and realistic personas, to create a convincing training environment. Greg Kras, KnowBe4's Chief Product Officer, emphasized the need for organizations to address threats beyond email phishing. The new capability aims to enhance organizational resilience against sophisticated social engineering attacks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…