AstriCon VoIP Security – $400,000 toll fraud – YIKES!

astricon-2011-logo.jpg
During an AstriCon session on VoIP security the speaker discussed how easy it was to hack voicemail PINs, but not to listen to your voice messages but to initiate "call backs" using spoofed CallerIDs. Essentially, this leverages the "call back" feature that many voicemail systems have to call back the person that left the message.

He then asked the audience for any real world examples of how they were hacked. Several volunteered their stories. I captured one of them where their Elastix server was hacked - due to their parent company locking them out of the server and not updating /patching the server. This resulted in the hackers racking up toll fraud (Korean calls) of $400,000! It's a fun watch. Enjoy! [HD available in full screen mode]

Tags: , , , , , , , Related tags:

Related Entries
  • VoIP Hacker vs. VoIP Server Honeypots - Mar 10, 2011
    voip-hacker-vs-honeypot.jpg
  • Digium (Unofficially) Announces R-Series Redundancy Analog & PRI Appliances - Oct 27, 2011
    digium-jason-parker-astricon2.jpg
  • Mark Spencer, Allison Smith & the AstriCon Luncheon - Humor Alert! - Oct 26, 2011
    Thumbnail image for astricon-luncheon.JPG
  • AstriCon Video Snippet of an AstriCon Session - Oct 25, 2011
  • 360° Panoramic of Astricon Exhibit Floor - Oct 25, 2011
    astricon-2011-logo.jpg
  • AstriCon - Panoramic Image of 1st Session - Oct 25, 2011
    astricon-2011-logo.jpg
  • Panasonic Launches Line of Desktop SIP Phones - Aug 03, 2011
    ut136_r.jpg
  • Top 20 VoIP Innovators of All Time - Jun 13, 2011
    voip.jpg
  • Oxford Hair Academy Selects Freetalk Connect - Mar 16, 2011
    mansion-oxford-hair-academy-cafe.jpg
  • Asterisk + OpenBTS = Be Your Own Wireless Carrier - Feb 14, 2011
  • TrackBacks | Comments | Tag with del.icio.us | VoIP & Gadgets Blog Home | Permalink: AstriCon VoIP Security - $400,000 toll fraud - YIKES!

    Copyright VoIP & Gadgets Blog

    Call Center Outsourcing Community Virtual Contact Center
    Sponsored by the Call Center Outsourcing Community & the Virtual Contact Center Outsourcing Community

    By: VoIP & Gadgets Blog

    This article was syndicated via RSS from: http://feedproxy.google.com/~r/voipgadgets/~3/L_3G5vshkfU/astricon-voip-security---400000-fraud---yikes.asp

    Filed in: Information Technology, VoIP & Telephony Tags: , , , , , , , , , ,

    Related Posts

    Bookmark and Promote!

    Leave a Reply

    You must be Logged in to post comment.

    © 2012 Knowledge Hub Networks & IT Knowledge Hub LLC. All rights reserved. XHTML / CSS Valid.