Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

HACKED! LD calls made from PRI 1

Status
Not open for further replies.

jmazza

IS-IT--Management
Oct 10, 2002
119
US
Our site has a 6.1 Norstar that was hacked recently. The only thing we can tell is that the calls came from the receptionist's extension. The calls were made remotely as the building was locked at the time of the calls.

We turned off international with SBC and remote call fwding internally.

I'm thinking they made a local call to the switchboard and somehow got out through the AA. We have Call Pilot for vmail.

Anything obvious to check for and secure?
 
search the forum for hacked call pilot- it has been covered

-change all your passwords
-disallow out dial and link at all mailboxes

It is really to much of security risk to explain everything that needs to be done in order to secure your system. I recommend you get in contact with a vendor who has experience with such matters.
 
Do as stated above. However, if there is a business need to outdial from mail for any reason (notifying pagers, cell phones of new messages, etc), at the bare minimum apply restriction filters to the voicemail DN's so they can only dial area codes you approve of. If there is no need to outdial from mail, then remove the line pool access from the voicemail DN's. Your vendor should be able to do this fairly easily if you're not comfortable digging in that deep.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top