Hacking Exposed VoIP: Voice Over IP Security Secrets & Solutions

  • Authors:
  • David Endler;Mark Collier

  • Affiliations:
  • -;-

  • Venue:
  • Hacking Exposed VoIP: Voice Over IP Security Secrets & Solutions
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Sidestep VoIP Catastrophe the Foolproof Hacking Exposed Way"This book illuminates how remote users can probe, sniff, and modify your phones, phone switches, and networks that offer VoIP services. Most importantly, the authors offer solutions to mitigate the risk of deploying VoIP technologies." --Ron Gula, CTO of Tenable Network SecurityBlock debilitating VoIP attacks by learning how to look at your network and devices through the eyes of the malicious intruder. Hacking Exposed VoIP shows you, step-by-step, how online criminals perform reconnaissance, gain access, steal data, and penetrate vulnerable systems. All hardware-specific and network-centered security issues are covered alongside detailed countermeasures, in-depth examples, and hands-on implementation techniques. Inside, you'll learn how to defend against the latest DoS, man-in-the-middle, call flooding, eavesdropping, VoIP fuzzing, signaling and audio manipulation, Voice SPAM/SPIT, and voice phishing attacks.Find out how hackers footprint, scan, enumerate, and pilfer VoIP networks and hardwareFortify Cisco, Avaya, and Asterisk systemsPrevent DNS poisoning, DHCP exhaustion, and ARP table manipulationThwart number harvesting, call pattern tracking, and conversation eavesdroppingMeasure and maintain VoIP network quality of service and VoIP conversation qualityStop DoS and packet flood-based attacks from disrupting SIP proxies and phones Counter REGISTER hijacking, INVITE flooding, and BYE call teardown attacksAvoid insertion/mixing of malicious audioLearn about voice SPAM/SPIT and how to prevent itDefend against voice phishing and identity theft scamsTable of contentsPart I: Casing the EstablishmentChapter 1: Footprinting a VoIP NetworkChapter 2: Scanning a VoIP NetworkChapter 3: Enumerating a VoIP NetworkPart II: Exploiting the VoIP Underlying PlatformsChapter 4: VoIP Network Infrastructure Denial of Service (DoS)Chapter 5: VoIP Network EavesdroppingChapter 6: VoIP Interception and ModificationPart III: Exploiting Specific VoIP PlatformsChapter 7: Cisco Unified CallManagerChapter 8: Avaya Communication ManagerChapter 9: AsteriskChapter 10: Emerging Softphone TechnologiesPart IV : VoIP Session and Application HackingChapter 11: VoIP FuzzingChapter 12: Flood-based Disruption of ServiceChapter 13: Signaling and Media ManipulationPart V: Social ThreatsChapter 14: SPAM over Internet Technology (SPIT)Chapter 15: Voice PhishingIndex