Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Two attacks against VoIP
Peter Thermos

"We are more secure than a regular phone line."

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Re: Re: Two attacks against VoIP 2006-04-12
Tobias Glemser
"None of this seems to have any entropy. Which means it's vulnerable to replay attacks, just as the article states."

No. Since the nonce value is unique for each request, if you just try to replay the PBX will reject your packet requesting a new authentication with a different nonce.

So replay w...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus