voip phreaking

Phone stuff....
Post Reply
User avatar
DNR
Digital Mercenary
Digital Mercenary
Posts: 6114
Joined: 24 Feb 2006, 17:00
18
Location: Michigan USA
Contact:

voip phreaking

Post by DNR »

http://www.voip-info.org/wiki-SIP
http://en.wikipedia.org/wiki/voip
www.oxid.it/cain.html
www.oxid.it/ca_um/topics/voip.htm
www.irongeek.com/i.php?page=videos/cain1
http://www.hackingvoip.com/sec_tools.html

Try searching on your networks for:

Asterisk Management Portal:
intitle:asterisk.management.portal web-access

Cisco Phones:
inurl:"NetworkConfiguration" cisco

Cisco CallManager:
inurl:"ccmuser/logon.asp"

D-Link Phones:
intitle:"D-Link DPH" "web login setting"

Grandstream Phones:
intitle:"Grandstream Device Configuration" password

Linksys (Sipura) Phones:
intitle:" SPA Configuration"

Polycom Soundpoint Phones:
intitle:"SoundPoint IP Configuration"

Snom Phones:
"(e.g. 0114930398330)" snom

Search the internet for places and people in these article exterpts:

Sipera Systems, a VoIP security company, said on Tuesday that users of VoIP services and equipment from Vonage, Globe7 and Grandstream were vulnerable to eavesdropping, spam, spoofing, and denial-of-service (DoS) attacks.

"These vulnerabilities create serious privacy and service availability issues for users," said Krishna Kurapati, Sipera founder and CTO, in a statement. "Vonage, Globe7 and Grandstream customers can no longer assume that their VoIP providers are automatically securing their services, but they should demand best security practices be followed as a condition of becoming a customer."

The Vonage VoIP Motorola Phone Adapter (VT 2142-VD), for example, does not authenticate SIP requests, leaving its vulnerable to VoIP identity theft, Sipera said. An attacker exploiting this vulnerability could send and receive calls using the victim's account. An attacker could also send multiple SIP INVITE messages, in effect creating a denial-of-service attack. Furthermore, an attacker could send spam and phishing messages directly to the hacked Vonage user.

The Grandstream HandyTone-488 PSTN-to-VoIP adapter is vulnerable to buffer overflow and fragmented packet attacks, Sipera said. The device's flaws could be exploited to conduct denial-of-service attacks.

Finally, the Globe7 VoIP Client does not use a secure connection, making it possible for an attacker to eavesdrop on calls, according to Sipera. The company also warned that the Globe 7 soft phone uses a weak encryption scheme that leaves the user's account information vulnerable to theft.
----

A vulnerability found in the Linksys SPA-941 (version 5.1.8) last week by security researcher Radu State allows a malicious hacker to conduct a cross-site scripting (XSS) attack using the Session Initiation Protocol (SIP), one of the major voice-over-IP (VoIP) standards.

In a post to a security e-mail list, State notes that while attacking VoIP devices over SIP tends to be difficult because the devices in question often have custom architectures and operating systems, many of them also have embedded Web servers that can be hacked using a buffer overflow exploit.

State rates the SIP vulnerability as "very high." "Most firewalls/IPS will not protect the internal network against XSS attacks delivered over SIP," he wrote. "Additionally, users will connect to these devices directly from the internal network and therefore the internal network can be compromised."

Paul Henry, VP of technology evangelism at Secure Computing, concurs and said in a phone interview that SIP represents a blind spot for most of today's computer security products. He said that this is the first time he's seen an XSS attack over VoIP.

"I consider it to be serious because it's the first of probably what will be many attacks based on the SIP protocol," said Henry.
-
He gives wisdom to the wise and knowledge to the discerning. He reveals deep and hidden things; he knows what lies in Darkness, and Light dwells with him.

Post Reply