According to the IC3 or Internet Crime Complaint Center, Vishing is simply voice phishing, a scheme whereby unsuspecting callers are directed to rogue IVR systems which are disguised as real systems from banks, credit card companies, etc.
These systems masquerade as real banks interactive voice response systems asking for confidential information.
In other words there is a relatively new way to get unsuspecting people to part with their confidential and personal information.
The requests to contact these IVR systems can come via telephone calls as well as e-mails.
According to the Wall Street Journal there is a hacker who even sells a kit which crafts e-mails which look like they come from real banks.
So now, we need to not only be concerned about clicking on web links but also calling telephone numbers.
So why is this good news? Well, there is an opportunity for a developer to come up with a system that checks phone numbers against a vishing database to ensure the number called is not fraudulent.
A second option would be to do a database dip and look up the phone number being called just as you dial. When you call Bank of America for example you expect to see the display say Bank of America. If you see "Unknown" you know you dialed a suspicious number.