Podcast - SIP/VoIP Attacks
TMCnet
TMC Launches New Sites: Cable 4G Wireless Evolution  |  Satellite  |  Green Tech  | IT | IVR |  ITEXPO East begins in:   REGISTER NOW!
  INDUSTRIES
  PUBLICATIONS
  FREE RESOURCES
  INTERNATIONAL
  EVENTS
  ABOUT TMC
  COMMUNITIES
E-mail this page to a friend Order reprints online Print this page Bookmark this page Free magazines Free newsletters RSS-XML alerts
TMCnews
[June 09, 2008]

Podcast - SIP/VoIP Attacks

Technology Columnist
 
Most importantly, understand your opponent has more time, is more focused and is more eager to attack you. While SIP brings advancement in VoIP call connections, SIP faces the same security attacks as other IP protocols like HTTP and SMTP such as:


 


  • Malformed message attacks
  • SPIT (SPam over Internet Telephony (News - Alert))
  • Buffer overflow attacks
  • VOMIT (Voice Over Misconfigured Telephony)
  • DOS attacks (overload, part SYN, FIN)
  • Eavesdropping
  • Masquerading (Trojan Horses) as a phone, user, server, as a customer
  • Calljacking/hijacking
  • RTP/RTCP session teardown attacks
  • RTP/RTCP malformed messages
  • RTP/RTCP buffer overflow attaches
  • RTP play-out or Media spamming
  • X-rated voice and video “crosstalk”
  • SDP changing CODECs attacks
  • Injection of malicious RTP packets into existing RTP flows…
…and other known and yet to be created attacks.
 
The animated tutorial helps explain how the process works. More in-depth discussion and analysis can be found in the course. Hacker comes from the term hack, which is slang that software programmers use to describe writing computer programs. Cracker comes from safe/vault crackers to break/crack into a vault safe. White Hat Hacker is a good or trusted programmer and Black Hat is a bad or untrusted disgruntled person whose desire is to cause injury or disrupt computer systems. Grey Hat is a programmer of uncertain intent.
 
This free presentation is produced and presented by TECHtionary.com and is available in Adobe Flash (.swf), Quicktime (.mov), audio-only (.mp3) and iPod/iPhone (News - Alert) (.mv4) formats for download at: http://www.bizcastingonline.com/educate/media/podcasts/security for the next week when it will be removed unless you are part of the TECHtionary dealer program where there is no expiration. Podcast tutorials, animations and online courses are free to channel partners — see terms and conditions at http://www.techtionary.com/techu/.
 
This is also included in TMC (News - Alert) University special course on Microsoft OCS at ITEXPO.com. For more go here: http://www.tmcnet.com/voip/conference/west-08/tmc-university-microsoft-ocs.htm
 

[ Back To TMCnet.com's Homepage ]


Discussions:
Be the first to post a comment on this page!
 
By  
TMCnet
Featured White Papers
Top Stories
Related VoIP News

Today @ TMC
Upcoming Events
19th INTERNET TELEPHONY Conference & EXPO East
February 2-4, 2009 — Miami Beach Convention Center, Miami, FL
Digium Asterisk World Conference
February 2-4, 2009 — Miami Beach Convention Center, Miami, FL
4G Wireless Evolution Conference
February 2-4, 2009 — Miami Beach Convention Center, Miami, FL
6th Annual Communications Developer Conference
February 2-4, 2009 — Miami Beach Convention Center, Miami, FL
20th INTERNET TELEPHONY Conference & EXPO West
October 27-29, 2009 — Los Angeles Convention Center, Los Angeles, CA
Subscribe FREE to all of TMC's monthly magazines. Click here now.