[asterisk-biz] PBX got Hacked
Kevin P. Fleming
kpfleming at digium.com
Sat Feb 7 20:57:11 CST 2009
VIP Carrier wrote:
> Here is a sample of passwords for sip phone
> *yEphe4A56U
> * but for voice mails there was a simple passwords*
In Switchvox, the voicemail and web GUI passwords are one and the same,
as far as I am aware. If they had 'simple' passwords, and the GUI was
accessible from the Internet as you have posted that it was, then the
hackers could have logged in an any user. Depending on the permissions
those users had, who knows what they could have accomplished.
--
Kevin P. Fleming
Digium, Inc. | Director of Software Technologies
445 Jan Davis Drive NW - Huntsville, AL 35806 - USA
skype: kpfleming | jabber: kpfleming at digium.com
Check us out at www.digium.com & www.asterisk.org
More information about the asterisk-biz
mailing list