<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.fiercevoip.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Vulnerabilities</title>
 <link>http://www.fiercevoip.com/tags/vulnerabilities-0</link>
 <description></description>
 <language>en</language>
<item>
 <title>VoIPShield says Microsoft OCS vulnerable to attacks</title>
 <link>http://www.fiercevoip.com/story/voipshield-says-microsoft-ocs-vulnerable-attacks/2008-11-14?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FV0</link>
 <description>&lt;p&gt;Media stream attacks could affect Micrsofot Office Communications Server (OCS) as well as Office Communicator and Windows Messenger, says VoIPshield Systems. Microsoft is looking into the report.&lt;/p&gt;
&lt;p&gt;VoIPshield says the vulnerabilities affect applications using protocols like RTP and, if exploited, could cause a denial of service (DOS) attack against not only the stated applications, but against the whole desktop. The company is not publicly disclosing details of the vulnerabilities, but says it confidentially discloses full details to affected vendors.&lt;/p&gt;
&lt;p&gt;A spokesperson for VoIPshield Labs said the company is currently validating new research that shows an attacker can gain unauthorized access to an unsuspecting user&#039;s laptop by manipulating the packets of a VoIP phone call - an attack that might even be able to traverse a PSTN gateway. If possible, this attack would be a far more subtle and serious threat than a DoS attack since there would be no warning.&lt;/p&gt;
&lt;p&gt;Microsoft is&amp;nbsp;investigating the finding and recommends both&amp;nbsp;managing patches and keeping all software up to date.&lt;/p&gt;
&lt;p&gt;For more:&lt;br /&gt;- Read the details of the alleged vulnerability.&amp;nbsp; &lt;a href=&quot;http://www.itworldcanada.com/a/News/3304fbfc-492f-42ca-b1a5-080833c1c96b.html&quot;&gt;Article&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Related articles&lt;/strong&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercevoip.com/story/arbor-networks-voip-ipv6-emerging-security-threats/2008-11-11?utm_medium=rss&amp;amp;utm_source=rss&amp;amp;cmp-id=OTC-RSS-FV0&quot;&gt;Arbor Networks: VoIP, IPv6 emerging security threats - FierceVoIP&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.fiercevoip.com/story/voip-security-and-circle-trust/2008-05-06&quot;&gt;VoIP Security and the Circle of Trust - FierceVoIP&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercevoip.com/story/voipshield-says-microsoft-ocs-vulnerable-attacks/2008-11-14#comments</comments>
 <category domain="http://www.fiercevoip.com/tags/denial-service">Denial Of Service</category>
 <category domain="http://www.fiercevoip.com/tags/denial-service-dos">Denial Of Service Dos</category>
 <category domain="http://www.fiercevoip.com/tags/rtp">Rtp</category>
 <category domain="http://www.fiercevoip.com/tags/security-threats">Security Threats</category>
 <category domain="http://www.fiercevoip.com/tags/unauthorized-access">Unauthorized Access</category>
 <category domain="http://www.fiercevoip.com/tags/voip-0">VoIP</category>
 <category domain="http://www.fiercevoip.com/tags/voip-security">VoIP Security</category>
 <category domain="http://www.fiercevoip.com/tags/voipshield">VoIPShield</category>
 <category domain="http://www.fiercevoip.com/tags/vulnerabilities-0">Vulnerabilities</category>
 <category domain="http://www.fiercevoip.com/tags/vulnerability">Vulnerability</category>
 <pubDate>Fri, 14 Nov 2008 15:56:05 -0500</pubDate>
 <dc:creator>Doug Mohney</dc:creator>
 <guid isPermaLink="false">2956 at http://www.fiercevoip.com</guid>
</item>
<item>
 <title>UCSniff targets VoIP, UC, and the inside job</title>
 <link>http://www.fiercevoip.com/story/ucsniff-targets-voip-uc-and-inside-job/2008-09-28?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FV0</link>
 <description>&lt;p&gt;Over the weekend, the Toorcon security conference in San Diego showcased a next-generation VoIP sniffer. Trust no one, and that goes double if they are on your side of the firewall.&lt;/p&gt;
&lt;p&gt;The UCSniff tool, created by VoIP Hopper author and director of Sipera&#039;s VIPER VoIP vulnerabilities lab Jason Ostrom, has two settings for mischief. One is a learning mode that sniffs IP traffic and maps phone extensions to specific IP addresses. By default, it captures all the calls and saves them to .WAV files, says CNET news.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Once you have a map of phones to IP addresses, an attacker could use UCSniff to listen to all the VoIP conversations made by a specific mode.&amp;nbsp; If that&#039;s not exciting enough, a second model allows for monitoring calls made exclusively between two extensions.&lt;/p&gt;
&lt;p&gt;Readers should note that Ostrom&#039;s presentation outlines scenarios for the &quot;trusted insider&quot; within the corporation that has access to an organization&#039;s VoIP infrastructure and calls for consideration of internal controls and best practices to prevent VoIP eavesdropping.&lt;/p&gt;
&lt;p&gt;For more:&lt;br /&gt;- CNet blogs about Toorcon VoIP security session. &lt;a href=&quot;http://news.cnet.com/8301-1009_3-10052393-83.html&quot;&gt;Posting&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Related articles&lt;/strong&gt;&lt;a href=&quot;http://www.fiercevoip.com/story/voip-security-and-circle-trust/2008-05-06&quot;&gt;&lt;br /&gt;VoIP Security and the Circle of Trust&lt;/a&gt;&lt;a href=&quot;http://www.fiercevoip.com/story/last-hope-launches-security-season/2008-07-20?utm_medium=rss&amp;amp;utm_source=rss&amp;amp;cmp-id=OTC-RSS-FV0&quot;&gt;&lt;br /&gt;Last Hope Launches Security Season&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercevoip.com/story/ucsniff-targets-voip-uc-and-inside-job/2008-09-28#comments</comments>
 <category domain="http://www.fiercevoip.com/tags/best-practices">Best Practices</category>
 <category domain="http://www.fiercevoip.com/tags/security-conference">Security Conference</category>
 <category domain="http://www.fiercevoip.com/tags/sipera">Sipera</category>
 <category domain="http://www.fiercevoip.com/tags/toorcon">toorcon</category>
 <category domain="http://www.fiercevoip.com/tags/viper-lab">VIPER lab</category>
 <category domain="http://www.fiercevoip.com/tags/voip-0">VoIP</category>
 <category domain="http://www.fiercevoip.com/tags/voip-security">VoIP Security</category>
 <category domain="http://www.fiercevoip.com/tags/voip-technology">VoIP Technology</category>
 <category domain="http://www.fiercevoip.com/tags/vulnerabilities-0">Vulnerabilities</category>
 <pubDate>Sun, 28 Sep 2008 22:16:27 -0400</pubDate>
 <dc:creator>Doug Mohney</dc:creator>
 <guid isPermaLink="false">2803 at http://www.fiercevoip.com</guid>
</item>
<item>
 <title>The Ease of Hacking VoIP</title>
 <link>http://www.fiercevoip.com/story/ease-hacking-voip/2008-08-03?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FV0</link>
 <description>&lt;p&gt;Most of the 300,000 privately owned IP PBX systems throughout the U.S. are &quot;wide open&quot; to anyone that wants to hack them, says ChannelWeb. Compounding matters are a lack of regulatory interest and failure of vendors to disclose vulnerabilities.&lt;/p&gt;
&lt;p&gt;With VoIP systems being implemented on data LANs and blended with other software for unified communications solutions, the potential for mischief can get very large very quickly. VoIPshield has been posting and demonstrating publicly documented (i.e. available through The Google) hacks. While Cisco Call Manager gets a workout on how easy it is to exploit, the real problem lies in companies not updating their VoIP and IP PBX software with the latest security patches and fixes like they do all with all their other software.&lt;/p&gt;
&lt;p&gt;If you&#039;re not worried yet, there&#039;s a free utility called VoIPhopper to jump between voice and data VLANs so one can easily bypass firewalls and nearly all the IDS software for sale today.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;For more:&lt;br /&gt;- &lt;a href=&quot;http://www.crn.com/security/209900949&quot;&gt;Hacking VoIP is easy&lt;/a&gt;, reports ChannelWeb&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Related articles:&lt;/strong&gt;&lt;br /&gt; Last HOPE Launches &lt;a href=&quot;http://www.fiercevoip.com/story/last-hope-launches-security-season/2008-07-20?utm_medium=rss&amp;amp;utm_source=rss&amp;amp;cmp-id=OTC-RSS-FV0&quot;&gt;Security Season&lt;/a&gt;&lt;br /&gt; SPOTLIGHT: Survey: &lt;a href=&quot;http://www.fiercetelecom.com/story/spotlight-survey-u.s.-firms-lax-about-voip-security/2008-03-27&quot;&gt;U.S. firms lax&lt;/a&gt; about VoIP security&lt;/p&gt;</description>
 <comments>http://www.fiercevoip.com/story/ease-hacking-voip/2008-08-03#comments</comments>
 <category domain="http://www.fiercevoip.com/tags/cisco">Cisco</category>
 <category domain="http://www.fiercevoip.com/tags/security-patches">Security Patches</category>
 <category domain="http://www.fiercevoip.com/tags/voip-security">VoIP Security</category>
 <category domain="http://www.fiercevoip.com/tags/voip-technology">VoIP Technology</category>
 <category domain="http://www.fiercevoip.com/tags/voipshield">VoIPShield</category>
 <category domain="http://www.fiercevoip.com/tags/vulnerabilities-0">Vulnerabilities</category>
 <pubDate>Sun, 03 Aug 2008 21:54:14 -0400</pubDate>
 <dc:creator>Doug Mohney</dc:creator>
 <guid isPermaLink="false">2655 at http://www.fiercevoip.com</guid>
</item>
<item>
 <title>Last Hope Launches Security Season</title>
 <link>http://www.fiercevoip.com/story/last-hope-launches-security-season/2008-07-20?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FV0</link>
 <description>&lt;p&gt;Over the weekend, 2600&#039;s The Last HOPE (Hackers On Planet
Earth) conference launched what this reporter dubs &quot;Security Season.&quot;
Be prepared for an onslaught of computer security stories featuring
oh-so-clever hackers between now and the wrap-up of DEFCON 16 in mid-August.&lt;/p&gt;
&lt;p&gt;At the conference, hacker celebrity Kevin Mitnick appeared
to plug his coming tell-all book and demonstrated a script for Digium&#039;s
Asterisk IP PBX to show Caller ID information for someone calling even if the
phone&#039;s Caller ID is set to &quot;private.&quot;&lt;/p&gt;
&lt;p&gt;Other presentations at the conference went much deeper into
VoIP security. Blake Cornell and Jeremy McNamara discussed how a number of
foreign governments and ISPs are blocking VoIP services in attempt to protect a
telephone monopoly and/or to censor information. The duo will release a pair of
tools to determine if an ISP is blocking SIP and to scan entire netblocks to
determine if any Asterisk IAX2 services are available. Details were also provided as to how Asterisk
and VoIP providers who support IAX2 can provide virtually un-blockable VoIP
services in a country that is actively blocking SIP-based VoIP services.&lt;/p&gt;
&lt;p&gt;Sessions also touched upon the ability to use VoIP as a low
cost method to probe phone networks around the world and incidents last year
where a group of Italian VoIP hackers exploited VoIP vulnerabilities.&lt;/p&gt;
&lt;p&gt;For more:&lt;br /&gt;- Silicon Valley Insider spots &lt;a href=&quot;http://www.alleyinsider.com/2008/7/uber-hacker-kevin-mitnick-signs-tell-all-book-deal-&quot;&gt;Mitnick
hacking Asterisk&lt;/a&gt;&lt;br /&gt;- The &lt;a href=&quot;http://www.thelasthope.org/&quot;&gt;Last Hope&lt;/a&gt; website&lt;br /&gt;- Jeremy McNamara&#039;s &lt;a href=&quot;http://www.jeremy-mcnamara.com/&quot;&gt;VoIP/Asterisk
blog&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Related articles:&lt;/strong&gt;&lt;br /&gt; Newport
Networks Riles Up &lt;a href=&quot;http://www.fiercevoip.com/story/newport-networks-riles-voip-security-fears/2008-05-18&quot;&gt;VoIP
Security Fears&lt;/a&gt;&lt;br /&gt; VoIP Security and the &lt;a href=&quot;http://www.fiercevoip.com/story/voip-security-and-circle-trust/2008-05-06&quot;&gt;Circle
of Trust&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercevoip.com/story/last-hope-launches-security-season/2008-07-20#comments</comments>
 <category domain="http://www.fiercevoip.com/tags/asterisk">Asterisk</category>
 <category domain="http://www.fiercevoip.com/tags/computer-security">Computer Security</category>
 <category domain="http://www.fiercevoip.com/tags/defcon">Defcon</category>
 <category domain="http://www.fiercevoip.com/tags/digium">digium</category>
 <category domain="http://www.fiercevoip.com/tags/hope-website">Hope Website</category>
 <category domain="http://www.fiercevoip.com/tags/kevin-mitnick">Kevin Mitnick</category>
 <category domain="http://www.fiercevoip.com/tags/last-hope">Last Hope</category>
 <category domain="http://www.fiercevoip.com/tags/voip-security">VoIP Security</category>
 <category domain="http://www.fiercevoip.com/tags/vulnerabilities-0">Vulnerabilities</category>
 <pubDate>Sun, 20 Jul 2008 16:26:58 -0400</pubDate>
 <dc:creator>Doug Mohney</dc:creator>
 <guid isPermaLink="false">2618 at http://www.fiercevoip.com</guid>
</item>
</channel>
</rss>
