VoIPsa, an organization which I’ve previously accused of being more of a pretty face for VoIP equipment makers than a real agent of positive change, today called attention to a handful of security hacks targeted at Asterisk. Notice the apparent reluctance to say anything good about the IAX protocol, which is arguably Asterisk’s single-best feature. Anyway, check em out here.

16 Responses to “How to rootcrack an Asterisk box”

  1. Dan York says:

    Ted,
    Being one of those folks trying to make VOIPSA be ‘a real agent of positive change’, I’d just make the comment that the point of Martyn’s post was that other VoIP protocols beyond SIP can also be attacked. Within the VoIPSA weblog as well as the Blue Box podcast, we spend probably the majority of the time talking about attacks against SIP. So much so that one might conclude that SIP is the problem and all other VoIP protocols are okay. Martyn’s point was that at Black Hat, researchers unveiled tools to attack *two* other protocols, one being IAX and the other being H.323.

    The mention was not a reflection on IAX but really to the broader point that just because we don’t necessarily talk about various protocols it doesn’t mean there aren’t security issues with them.

    Dan

    P.S. Guest posts about VoIP security on the VOIPSA weblog are always welcome. Drop me a note if you are interested.

  2. Ted, I think you’re reading more into it than I intended. For the record, I’m not having a go at Asterisk, just talking about what I thought was an interesting story from Black Hat. You will see that I’ve written about the security aspects of many protocols: SIP, H323, MGCP, Sigtran and now, yes, IAX. And didn’t I say something good about IAX? It tunnels through firewalls? Thanks for your comments anyway. Regards, Martyn

  3. Anonymous says:

    {Dreary|Tiresome|Comfortless|Tedious} {Day|Time|Moment|Evening|Morning|Working day}…

    It was a comfortless day here today, so I just took to messing around on the internet and realized…

  4. … [Trackback]…

    [...] Read More here: macvoip.com/stn/2007/08/15/how-to-rootcrack-an-asterisk-box/ [...]…

  5. Check These Out…

    [...]check below, are some totally unrelated websites to ours, however, they are most trustworthy sources that we use[...]…

  6. amateur porn says:

    … [Trackback]…

    [...] Find More Informations here: macvoip.com/stn/2007/08/15/how-to-rootcrack-an-asterisk-box/ [...]…

  7. How do you do? I simply love your nice blog thanks and please keep it up…

    This will be a fantastic website, might you be involved in doing an interview regarding just how you developed it? If so e-mail me!…

  8. How to rootcrack an Asterisk box | Signal to Noise…

    How do you do? I simply love your gorgeous write-up thank you and pls keep the ball rolling…

  9. … [Trackback]…

    [...] Find More Informations here: macvoip.com/stn/2007/08/15/how-to-rootcrack-an-asterisk-box/ [...]…

  10. Superb website…

    [...]always a big fan of linking to bloggers that I love but don’t get a lot of link love from[...]……

  11. [...]Sites of interest we have a link to[...]……

    [...]usually posts some very interesting stuff like this. If you’re new to this site[...]……

  12. [...]The information mentioned in the article are some of the best available [...]……

    [...]below you’ll find the link to some sites that we think you should visit[...]……

  13. Read was interesting, stay in touch……

    [...]please visit the sites we follow, including this one, as it represents our picks from the web[...]……

  14. [...]always a big fan of linking to bloggers that I love but don’t get a lot of link love from[...]……

    [...]just beneath, are numerous totally not related sites to ours, however, they are surely worth going over[...]……

  15. Visitor recommendations…

    [...]one of our visitors recently recommended the following website[...]……

  16. Sites we Like……

    [...] Every once in a while we choose blogs that we read. Listed below are the latest sites that we choose [...]……

Leave a Reply

You must be logged in to post a comment.