---
title: Cybercrime Goes Plug and Play With Voice Fraud-as-a-Service Platform
metaTitle: New Plug and Play Voice Fraud-as-a-Service
description: AI voice agents, phishing emails, and live credential theft all in one $4,000 criminal toolkit. It's called ATHR, and it's already in use.
slug: plug-and-play-voice-fraud-service
date: "2026-04-17T12:00:00-05:00"
featured: true
image:
  src: "https://cdn.securelogix.dev/slx/images/plug-and-play-voice-fraud-service.webp"
  alt: "An arm reaching across a digital workstation with items arrayed in too-perfect order."
sourcePublisher:
  name: Cybernews
  url: "https://cybernews.com/"
sourceArticle:
  url: "https://cybernews.com/security/ai-vishing-platform-athr-voice-phishing-attacks/"
tags: [Vishing, TOAD, Credential Harvesting]
status: published
---

A newly discovered criminal toolkit is enabling fraudsters to run sophisticated, large-scale phone scams almost entirely on autopilot.

The platform, known as ATHR, combines fake emails with AI-generated phone calls to trick victims into handing over login credentials for some of the world’s most widely used services, including Google, Microsoft, and major cryptocurrency exchanges.

According to researchers, the commoditized platform, which combines AI voice agents, credential harvesting tools, phishing email templates, and browser-based call handling into a single service, is being marketed on cybercrime forums for $4,000 upfront, plus 10% of any profits generated.

Abnormal Security’s Aaron Orchard, Callie Baron, and Piotr Wojtyla, who tracked and detailed the new platform in a blog, said that instead of relying on typical malicious links or infected attachments, this telephone-oriented attack delivery – known as TOAD – takes a different route...
