The modern contact center is going through substantial changes.
AI is transforming how calls are handled, customers are routed, and supervisors analyze calls to improve customer service. However, just as AI is being used for positive purposes, it is also being weaponized by bad actors.
Recent data from TNS reveals that 9.8% of all inbound voice traffic to enterprises is now classified as threatening.
The volume of malicious activity is so high that the benefits delivered through AI optimization risk being offset by the disruption these threats cause.
Using AI, fraudsters are deploying increasingly sophisticated tactics against contact centers—from voice cloning to coordinated multi-channel attacks that overwhelm both systems and agents simultaneously. Traditional safeguards are struggling to defend against these advanced threats.
To understand how these attacks are unfolding and what companies can do to combat them, we spoke with Maurie Munro, Vice President of Enterprise Sales at TNS Communications, about the evolving landscape of voice fraud.
Why Contact Centers Have Become Prime Targets
The pivot in attacker strategy toward contact centers represents a calculated evolution in cybercrime. While network breaches remain a danger, criminals have learned that exploiting human vulnerabilities often offers a faster and more reliable path to success.
As Munro explains, “It’s harder to hack a network than it is to hack a person.”
Contact centers are particularly vulnerable due to their concentrated human presence. Thousands of service agents process sensitive account information every day, making them prime targets for social engineering.
These attacks aim to reach agents and trick them—often through AI-powered voice cloning—into giving away customer data. This information is then combined with other stolen datasets to increase credibility in future scams, ultimately enabling crimes such as financial fraud.
“Data environment breaches are often leveraged by bad actors to craft personalized follow-up calls, making them appear more legitimate to both agents and customers,” Munro says.
These schemes depend on reaching a live agent. In the past, IVRs were a first line of defense, filtering out spam. Yet attackers now bombard contact centers with massive call volumes, developing ways to bypass IVRs and increase their chances of connecting with a person.
They also orchestrate coordinated campaigns across multiple channels simultaneously, using AI and social engineering to create confusion and urgency.
“TNS is also seeing multi-pronged attacks that use SMS, email, and voice together—often enhanced by AI and social engineering—as fraudsters attempt to overwhelm individuals and confuse agents,” Munro notes.
This sophistication has made many traditional defenses ineffective. New attack methods demand a fundamental shift in security strategy. A zero-trust framework—which treats every call as unverified until proven otherwise—has become essential rather than optional.
Real-Time Verification: How It Changes the Game
A zero-trust approach acknowledges that traditional phone system security no longer suffices in an era when caller IDs can be spoofed, voices can be synthesized, and social engineering is increasingly complex.




