Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

28c3: Ooops I hacked my PBX

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
3,110
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Dec 29, 2011

Download high quality version: http://bit.ly/s7sFBA
Description: http://events.ccc.de/congress/2011/Fahrplan/events/4656.en.html

pt: Ooops I hacked my PBX
Why auditing proprietary protocols matters

This talk is cautionary tale about developers forgetting to remove debug interfaces from finished products and the need of repetitive system reviews. A midrange PBX systems (non web) configuration interface is used as an example of what flaws you can actually find in commercial systems.

The Idea behind this talk is to give you an idea what can happen when developers do not audit their code on regular basis. It is not meant to make anybody laugh at another ones stupidity but as a reminder what could happen to YOU if you're a developer.
As an example of what could possibly go wrong, a problem in the way the configuration interface is authenticating its administrators on a PBX is used. It is about dissecting a proprietary TCP/IP based protocol used to configure telephones with system integration through the PBX and unexpectedly finding a flaw which not only allows to modify configuration of phones but also manipulate the PBX. The even bigger oversight was that all communication is possible without using any authentication. It is also a little bit about protocol design and some (false) assumptions still made when when preparing an impending product launch.

But for the sake of honesty: No names and no brands will be given, the talk is based upon a true example but because of responsible disclosure procedures not all information will be released to the public.

  • likes, 2 dislikes

Link to this comment:

Share to:
see all

All Comments (1)

Sign In or Sign Up now to post a comment!
  • 25:10 Speaker: "I'm about to talk to them when they release the patch[...] but until that happens there is no chance of releasing the details"

    25:25 Question: "So is it patched yet?"

    -_- Stop wasting Q/A time if you don't comprehend english.

Loading...
Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more