[VoiceOps] Just got hit with a new attack vector

Gabriel Gunderson gabe at gundy.org
Sat Nov 17 23:32:29 EST 2012


On Sat, Nov 17, 2012 at 9:23 PM, Robert Dawson
<RDawson at alliedtelecom.net> wrote:
> User mailbox was compromised. The attacker called into the extension and
> left a voicemail while spoofing the number they wanted to call,  then called
> back, logged into the mailbox, retrieved the message, and used the "Callback
> Caller" option from the playback menu to originate a call back to the
> spoofed number.

So much effort and smarts wasted trying to steal services. It's a
shame really. Thanks for sharing. Interesting approach.

Best,
Gabe


More information about the VoiceOps mailing list