Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 33 guests online
 
Advertisement

You are here: Home arrow Columnsarrow Wilsonarrow [Article]-Fun with Online VoIP Hacking
EH-Net
May 25, 2013, 08:40:26 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: [Article]-Fun with Online VoIP Hacking  (Read 348661 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4169


Editor-In-Chief


View Profile WWW
« on: April 03, 2007, 12:46:29 AM »

Brian Wilson's love of the telecom field as well as hacking is showcased in this fun article. Have a good time but please be careful.

Permanent Link: [Article]-Fun with Online VoIP Hacking

Quote
By Brian Wilson, CCNA, CCSE, CCAI, MCP, Network+, Security+, JNCIA

Disclaimer: This paper and the topics covered in the paper are just for educational purposes and should not be tried on a network without permission from owner of the network/service you plan on testing. I hold no responsibility for any actions or damage that might accrue if you try anything explained in this paper.

Ok... We all have heard of Vonage and the other VoIP providers that will give you unlimited phone services over your broadband connection using your regular old phone. But there are other services that are similar but have a few extra fun options. Let's take a look.

Leave your comments or suggestions for other topics you'd like to see Brian cover.

Don
Logged

CISSP, MCSE, CSTA, Security+ SME
LSOChris
Guest
« Reply #1 on: April 03, 2007, 11:52:49 AM »

ok i want to see part 2! it was just getting good!

good article though.

are there any good software VoIP programs or any cheap hardware VoIP phones so we can go play?  can you sniff VoIP in a switched environment without doing anything evil?
Logged
slimjim100
EH-Net Columnist
Sr. Member
*****
Offline Offline

Posts: 385



View Profile WWW
« Reply #2 on: April 03, 2007, 02:12:44 PM »

ok i want to see part 2! it was just getting good!

>> Part 2 might be on it's way Smiley

good article though.

are there any good software VoIP programs or any cheap hardware VoIP phones so we can go play?  can you sniff VoIP in a switched environment without doing anything evil?

>>Software Programs: I know of alot of Clones similer to www.VoIPBuster.com (you can call bridge from there website free without downloading any software too).

>> Cheap Hardware: I have been told you can used most of the Vonage/Skype Phones. With VoIPBuster you do not get a real number but you can use a ATA or IP Phone to make outbound calls.

>> SNiffer software: To record VoIP Calls. I have not tried with VoIPBuster and I have had no luck sniffing Skype, but I have been able to successfully Sniff the Cisco Unity IP Phone networks with Cain & Able. Some times with the Cisco IP Telephony you have to spoof your MAC to get the correct VLAN depending on how the network is etup but I have been able to sniff over 30 calls at one time with Cain and record them with out affecting the network and the end users never see it. You have to perform a "Man in The Middle Attach (MITM)" to get the traffic running though your NIC. When running a MITM attack with Cain always look to the lower left of the window and watch for data/packet loss. If you see any packet loss when running a MITM attack stop the attach or your LAN switch might lock-up.

Good luck and have fun Tongue

Brian
Logged

CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4169


Editor-In-Chief


View Profile WWW
« Reply #3 on: April 03, 2007, 04:53:07 PM »

Submitted to digg:

http://www.digg.com/security/Fun_with_Online_VoIP_Hacking

If you're fans of this type of content from Brian, digg this story to get him some well-deserved attention. Who knows, it might be incentive enough for him to finish Part 2!

Don
Logged

CISSP, MCSE, CSTA, Security+ SME
bobbywhite77
Newbie
*
Offline Offline

Posts: 2


View Profile
« Reply #4 on: February 17, 2009, 08:41:32 PM »

Voipuser.org has a lot of good phones for Voip and I think Skype has its own program built in to record calls.

Bobby W
Business Phones
VOIP PBX
Logged
inindix
Newbie
*
Offline Offline

Posts: 1


View Profile
« Reply #5 on: March 18, 2009, 02:38:10 AM »

ok i want to see part 2! it was just getting good!

good article though.

are there any good software VoIP programs or any cheap hardware VoIP phones so we can go play?  can you sniff VoIP in a switched environment without doing anything evil?

I think that is a good article to read, i think there are many resources that maybe available to us but it is hard to find though... hope that sometimes their will get introduce things like that to us.






__________________
Call Center Software
Logged
g00d_4sh
Sr. Member
****
Offline Offline

Posts: 394



View Profile
« Reply #6 on: March 18, 2009, 11:48:59 AM »

I found this out recently as I was preparing for a class I was teaching on Wireshark for a region workshop.  It turns out you can now sniff/record/play back voip calls with Wireshark. Pretty nifty. You know... it's sad, I still have never used Cain and Abel really. I've downloaded it, installed it... just never gotten around to using it.  I remember it had that voip play back ability though... I will have to compare how easy it is compared to Wireshark for that.
Logged

"Bad.. Good?  I'm the guy with the gun"
blue.angel
Newbie
*
Offline Offline

Posts: 1


View Profile
« Reply #7 on: March 19, 2009, 03:07:42 AM »

Most VoIP devices (phones, servers, etc.) also run Web servers for remote management. • Find them with Google. • VoIP Google Hacking Database,











______________________________________________________________________
IP PBX
« Last Edit: March 19, 2009, 03:11:31 AM by blue.angel » Logged
bobbywhite77
Newbie
*
Offline Offline

Posts: 2


View Profile
« Reply #8 on: March 24, 2009, 05:25:30 PM »

Blue Angel

do you have an example of an exact site. I couldnt find one on google.

Bobby W
Small Business Voip
Voip
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.105 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.