New U.K. Vishing Scam Offers Significant Phone Plan Discounts in Exchange for your Phone Provider's One-Time Security Code

Stu Sjouwerman | Jan 21, 2022

New UK Vishing ScamScammers targeting customers of mobile carrier O2 are enticing victim engagement by offering discounts on their mobile plan as much as 40%.

ZDNet contributor, Charlie Osborne, told of their personal experience with this scam in which they were the recipient of a cold-call scam from someone claiming to be with O2. In this scam, the caller sounds happy to inform the victim they have been selected to receive a 35% to 40% discount on their phone service.

As part of the scam, the caller accesses the O2 customer page and enters in the victim’s mobile number. When prompted for the one-time security code send via text to the victim, the scammer asks for the code in order to “apply the discount”.

screenshot-2022-01-14-at-13-14-07

Source: Charlie Osborne

This scam could be used to leverage legitimate mobile phones for other vishing or SMS phishing scams. Users utilizing corporate mobile phones should be wary as well, as this attack provides the scammer access to the victim's mobile account.

Topics: Phishing vishing

Discover Your Organization’s Phish-prone™ Percentage

Ninety-one percent of data breaches begin with spear phishing. Launch our Free Phishing Security Test for up to 100 users to uncover your team's vulnerability and see how your security posture stacks up against industry benchmarks.

Get Your Free Phishing Security Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.