During an AstriCon session on VoIP security the speaker discussed how easy it was to hack voicemail PINs, but not to listen to your voice messages but to initiate "call backs" using spoofed CallerIDs. Essentially, this leverages the "call back" feature that many voicemail systems have to call back the person that left the message.
He then asked the audience for any real world examples of how they were hacked. Several volunteered their stories. I captured one of them where their Elastix server was hacked - due to their parent company locking them out of the server and not updating /patching the server. This resulted in the hackers racking up toll fraud (Korean calls) of $400,000! It's a fun watch. Enjoy! [HD available in full screen mode]
Tags: asterisk, astricon, elastix, hacker, hacking, sip, toll fraud, voip
Related tags: server
-
Follow me:
Facebook Profile
FriendFeed Profile
Google Reader Profile
LinkedIn Profile
Twitter Profile

Sponsored by the Call Center Outsourcing Community & the Virtual Contact Center Outsourcing Community
By: VoIP & Gadgets Blog
This article was syndicated via RSS from: http://feedproxy.google.com/~r/voipgadgets/~3/L_3G5vshkfU/astricon-voip-security---400000-fraud---yikes.asp