That’s piss poor performance from the bank. They obviously need a security audit.
My bank will sometimes call me if they want something, but it’s always just a voice message telling me to call the number on my card. They don’t even provide the number on the phone message, just to get the idea into people’s heads that they don’t provide phone numbers on the message so if a number starts being provided on the call, it’s immediately suspicious.
I told them as much. I spoke to a manager about it once on a call and I’m like, how the hell do I know you’re actually the bank? You’ve given me nothing. Then you’re asking for my uniquely identifying personal information via a voice prompt. Literally anyone could spoof all of this and you’re training your clients to just hand over the information when asked, not even by a person, but by a robocall.
Yeah, I got another a few months later, same shit.
I feel bad for the customers of that bank. They’re not my primary bank so I couldn’t give a shit. I’m also security focused enough to know better.
That’s piss poor performance from the bank. They obviously need a security audit.
My bank will sometimes call me if they want something, but it’s always just a voice message telling me to call the number on my card. They don’t even provide the number on the phone message, just to get the idea into people’s heads that they don’t provide phone numbers on the message so if a number starts being provided on the call, it’s immediately suspicious.
I told them as much. I spoke to a manager about it once on a call and I’m like, how the hell do I know you’re actually the bank? You’ve given me nothing. Then you’re asking for my uniquely identifying personal information via a voice prompt. Literally anyone could spoof all of this and you’re training your clients to just hand over the information when asked, not even by a person, but by a robocall.
Yeah, I got another a few months later, same shit.
I feel bad for the customers of that bank. They’re not my primary bank so I couldn’t give a shit. I’m also security focused enough to know better.