In December 2024, a Dutch technology company lost 2.3 million euros after a series of phone calls that started with what seemed like an innocent question to reception. Three days later, an attacker had worked their way by phone into the finance department.
The scale of the problem
The IBM Cost of a Data Breach Report 2025 shows that social engineering is involved in 17% of all data breaches. The average cost per breach has now risen to 4.88 million dollars. In the Netherlands, the Fraud Help Desk reported a 42% increase in telephone fraud reports in 2025.
What makes vishing so dangerous?
No technical barrier stops it, conversations adapt in real time, and they are difficult to trace. In addition, vishing plays on emotion: fear, urgency, and obedience to authority.
The role of AI and deepfakes
With voice-cloning software, it is now possible to imitate a specific person’s voice based on just a few minutes of audio material. This technology is becoming more accessible and cheaper by the month.
What actually works?
Regular mystery calls, dedicated vishing training, clear verification protocols, an open reporting culture, and a department-specific approach.