Page 1 of 1

Interesting read about Asterisk being targetted

PostPosted: Mon Nov 09, 2020 7:29 am
by carpenox

Re: Interesting read about Asterisk being targetted

PostPosted: Sun Nov 15, 2020 3:25 pm
by williamconley
This has been happening for 15 years. It's also the reason Dynamic Good Guys was created and published for free. We prefer to make $ from providing services to happy clients, rather than getting new clients because they got hacked and come to us in a panic. So ... "Whitelist All Vicidial Servers" became our mantra, and DGG was published. To date, no server with DGG has been hacked from the outside (one was intruded upon from within by a rogue telemarketer).

And FYI: We even had a major client using VPN get hacked through ... their VPN service! The technician traced the hack from the DB server, out through the VPN router to a call center with a "double VPN router". They then found that only one port of the double router was in use and the other port had been hacked from an IP address that was registered to ... a professional VPN servicing agency representative. At this point we didn't investigate whether that facility had also been infected or if they were the origin of the intrusion. The client was happy (vpn router's second port secured), the server in question cleaned off, and a watchdog app set up to check for future similar intrusions (still running, still not happening), and the client was "off to discuss this with the FBI" as the intrusion originated from a Canadian source. That was about eight years ago.