Caller ID spoofing is the practice of causing the telephone network to indicate to the receiver of a call that the originator of the call is a station other than the true originating station. This is achieved by manipulating the "From" field in the Session Initiation Protocol (SIP) headers used in VoIP communications. Because the global telephony backbone was built on trust, many older exchanges do not verify the authenticity of this data.
In Canada, the implementation of STIR/SHAKEN (Secure Telephone Identity Revisited/Signature-based Handling of Asserted Information Using toKENs) aims to combat this. However, attackers bypass these protocols by routing calls through international gateways in jurisdictions where these standards are not enforced. This creates a "trust gap" where a call from overseas can appear with a local "613" or "416" area code.
⚠ Warning: Verification Failure
Never rely on the name or number displayed on your screen as proof of identity. Modern software allows attackers to change these values in milliseconds. Refer to the Glossary for technical definitions of SIP and STIR/SHAKEN.