Possibly the most disturbing news out of the Black Hat security conference last week was how
Asterisk, the open source PBX, is being increasingly used by hackers in a wide variety of hard to stop VoIP hacks. Everyone, from home users to corporate networks, could become a target.
Talks at the show explained just how easily an Asterisk based PBX can be used to launch attacks, notably "vishing" attacks, in which hackers use VoIP calls instead of phony Web links to steal personal and financial information.
Asterisk has become the hacker’s favored tool because it’s free, easy to use, and works with cheap, off the shelf hardware. Install Asterisk on an inexpensive PC, do a little tweaking, and you’ve got a full-blown PBX, something that previously would have been extremely expensive and time-consuming to do. Networking Pipeline | Blog
From around the Web
- Windows Vista Service Pack 2 Latest Release Schedule
- Vista SP2: What is inside?
- NetWitness releases free version of security software
- Three Reasons Why Users Won’t Buy Into Security
- Automated security testing & its limitations
- Google Wants to Preinstall Chrome Browser on PCs
- Mozilla warns of Firefox China add on
- Firefox No Longer an Automatic Defense Against Browser Drive Bys
- Google patches Chrome file stealing bug
- Apple plays catch up, adds anti fraud safeguard to Safari
- Researchers find vulnerability in Windows Vista
- How to Use Network Behavior Analysis Tools
- The insider security threat in IT and financial services
- Windows 7 security: An overall improvement?
- Windows 7 UAC could be less of a nag