<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <title>Greg Galitzine&apos;s VoIP Authority Blog - Security Archives</title>
    <link rel="alternate" type="text/html" href="http://blog.tmcnet.com/blog/greg-galitzine/" />
    <link rel="self" type="application/atom+xml" href="http://blog.tmcnet.com/blog/greg-galitzine/voip/security/atom.xml" />
    <id>tag:blog.tmcnet.com,2011-06-15:/blog/greg-galitzine//6</id>
    <updated>2009-03-06T04:19:34Z</updated>
    <subtitle>VoIP and IMS News and Views</subtitle>

<entry>
    <title>Dallas Trip Winds Down; Sipera News</title>
    <link rel="alternate" type="text/html" href="http://blog.tmcnet.com/blog/greg-galitzine/voip/enterprise/dallas-trip-winds-down-sipera-news.html" />
    <id>tag:blog.tmcnet.com,2009:/blog/greg-galitzine//6.40040</id>

    <published>2009-03-06T04:11:52Z</published>
    <updated>2009-03-06T04:19:34Z</updated>

    <summary>So my week in Dallas is finally winding down. Not that it hasn&apos;t been a great week, with interesting meetings with a number of the companies who reside astride the north Dallas Telecom corridor.&#160;In the last two days I&apos;ve spent...</summary>
    <author>
        <name>Greg Galitzine</name>
        <uri>http://blog.tmcnet.com/blog/greg-galitzine/</uri>
    </author>
    
        <category term="Development tools" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Enterprise" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="IP Communications" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Open Source" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Security" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Unified Communications" scheme="http://www.sixapart.com/ns/types#category" />
    
    <category term="opensource" label="open source" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="security" label="security" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="sipera" label="Sipera" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="sourceforge" label="SourceForge" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="unifiedcommunications" label="Unified Communications" scheme="http://www.sixapart.com/ns/types#tag" />
    
    <content type="html" xml:lang="en" xml:base="http://blog.tmcnet.com/blog/greg-galitzine/">
        <![CDATA[<div style="margin: 0in 0in 0pt">So my week in Dallas is finally winding down. Not that it hasn't been a great week, with interesting meetings with a number of the companies who reside astride the north Dallas Telecom corridor.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">In the last two days I've spent time in the offices of Telstrat, NEI, NEC, Fujitsu, Texas Instruments, Excel,&#160;and Apptrigger; that's in addition to the executives I interviewed from a number of companies attending the Comptel show in Grapevine this week.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">The interviews should be online shortly, to see if they've been posted, please visit the <a href="http://www.tmcnet.com/tmc/videos/">TMCnet video library</a>.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">I'll be following up with posts and articles about all the companies I met with, but in the meantime I wanted to share a bit of news from Sipera that's not made the rounds of the mainstream media just yet.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">The company has just released an IP Video sniffer called UCSniff2.0. Until now, the information has only been posted on security boards and community sites, and on the SourceForge site at <a href="http://ucsniff.sourceforge.net/">http://ucsniff.sourceforge.net/</a></div><div style="margin: 0in 0in 0pt"><b>&#160;</b></div><div style="margin: 0in 0in 0pt">The UCSniff2.0 eavesdrops, captures and records video conferencing sessions and works on regular IP Telephony too. Using the tool, an IT manager can perform a man in the middle voice capture and can reconstruct the voice call, shows holes in a security policy, and enable those responsible for a site's security to fix the application.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">The timing is good, as many industry pundits are hailing 2009-10 as the timeframe when IP video comes into its own; the solution allows an IT manager to test their environment and move quickly to address issues.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Sipera also told me about VideoJak, an application designed to allow an IT manager to examine any vulnerabilities with regard to system availability.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">According to a <a href="http://videojak.sourceforge.net/">description</a> on the SourceForge site:</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt 0.5in"><i>VideoJak is an IP Video security assessment tool that can simulate a proof of concept DoS against a targeted, user-selected video session and IP video phone. VideoJak is the first of its kind security tool that analyzes video codec standards such as H.264. VideoJak works by first capturing the RTP port used in a video conversation and analyzing the RTP packets, collecting the RTP sequence numbers and timestamp values used between the phones. Then VideoJak creates a custom video payload by changing the sequence numbers and timestamp values used in the original RTP packets between the two phones. After the user selects a targeted phone to attack in an ongoing video session, VideoJak delivers the payload over the learned RTP port against the target. This attack results in severely degraded video and audio quality.</i></div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">I want to thank Sipera VP of Marketing Adam Boone for spending some time with me and for walking me through the new apps.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Watch for more exciting stuff from this Richardson-based security firm in the coming weeks.</div>]]>
        
    </content>
</entry>

<entry>
    <title>Sipera, RSA in Secure VoIP Deal</title>
    <link rel="alternate" type="text/html" href="http://blog.tmcnet.com/blog/greg-galitzine/voip/enterprise/sipera-rsa-in-secure-voip-deal.html" />
    <id>tag:blog.tmcnet.com,2009:/blog/greg-galitzine//6.39880</id>

    <published>2009-02-23T16:39:02Z</published>
    <updated>2009-02-23T16:40:13Z</updated>

    <summary>Sipera Systems says it&apos;s joined the RSA Secured Partner Program and RSA, The Security Division of EMC, said that it has certified interoperability between the Sipera IPCS UC security product family and the RSA SecurID two-factor authentication solution.&#160;The result is...</summary>
    <author>
        <name>Greg Galitzine</name>
        <uri>http://blog.tmcnet.com/blog/greg-galitzine/</uri>
    </author>
    
        <category term="Enterprise" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="IP Communications" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Security" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Technology" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Unified Communications" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="VoIP" scheme="http://www.sixapart.com/ns/types#category" />
    
    <category term="kevincoleman" label="Kevin Coleman" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="rsa" label="RSA" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="security" label="security" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="sipera" label="Sipera" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="tmcnet" label="TMCnet" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="voip" label="VoIP" scheme="http://www.sixapart.com/ns/types#tag" />
    
    <content type="html" xml:lang="en" xml:base="http://blog.tmcnet.com/blog/greg-galitzine/">
        <![CDATA[<div style="margin: 0in 0in 0pt"><a href="http://www.sipera.com/"><font color="#0000ff" size="2">Sipera Systems</font></a><font size="2"> says it's joined the RSA Secured Partner Program and RSA, The Security Division of EMC, said that it has certified interoperability between the Sipera IPCS UC security product family and the </font><a href="http://www.rsa.com/node.aspx?id=1156"><font size="2">RSA SecurID</font></a><font size="2"> two-factor authentication solution.</font></div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt"><font size="2">The result is a simple way for users to secure their VoIP phones without the need to use any special clients or phone configuration.&#160;All users need to do is enter the RSA SecurID one-time secure password and their PIN.</font></div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt"><font size="2">In an era where security and privacy compliance in industries such as healthcare, financial services and others is becoming critical, this solution helps an organization achieve its overall secure information goals.</font></div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt"><font size="2">Just today, TMCnet columnist Kevin Coleman published his most recent column, titled </font><a href="http://sip-trunking.tmcnet.com/topics/security/articles/50990-1-trillion.htm"><font size="2">$1Trillion</font></a><font size="2">. In his note to me he wrote: "It's bigger than the bailout!" and when you stop to think about it, it's a scary thought.</font></div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt"><font size="2">The trillion that Coleman is referring to is not a US Government sponsored handout, it's the estimated dollar loss for intellectual property and data theft in 2008 for businesses globally. Coleman gets his numbers from Dennis C. Blair, the Director of National Intelligence, in his Annual Threat Assessment of the Intelligence Community for the Senate Select Committee on Intelligence.&#160;To learn more, </font><a href="http://sip-trunking.tmcnet.com/topics/security/articles/50990-1-trillion.htm"><font size="2">read the entire article</font></a><font size="2">.</font></div>]]>
        
    </content>
</entry>

<entry>
    <title>Panda Warns on High School Musical Borne Viruses</title>
    <link rel="alternate" type="text/html" href="http://blog.tmcnet.com/blog/greg-galitzine/voip/ip_communications/panda-warns-on-high-school-musical-borne-viruses.html" />
    <id>tag:blog.tmcnet.com,2008:/blog/greg-galitzine//6.38449</id>

    <published>2008-11-24T17:52:12Z</published>
    <updated>2008-11-24T17:53:48Z</updated>

    <summary>Attention parents: In case you weren&apos;t aware, there are bad people online. Bad people who would disguise viruses, worms, and Trojans as innocent-looking files such as songs and videos related to Disney&apos;s popular movie franchise High School Musical.&#160;According to officials...</summary>
    <author>
        <name>Greg Galitzine</name>
        <uri>http://blog.tmcnet.com/blog/greg-galitzine/</uri>
    </author>
    
        <category term="IP Communications" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Security" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Technology" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Video" scheme="http://www.sixapart.com/ns/types#category" />
    
    <category term="highschoolmusical" label="High School Musical" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="malware" label="malware" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="pandalabs" label="PandaLabs" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="security" label="security" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="virus" label="virus" scheme="http://www.sixapart.com/ns/types#tag" />
    
    <content type="html" xml:lang="en" xml:base="http://blog.tmcnet.com/blog/greg-galitzine/">
        <![CDATA[<div style="margin: 0in 0in 0pt">Attention parents: In case you weren't aware, there are bad people online. Bad people who would disguise viruses, worms, and Trojans as innocent-looking files such as songs and videos related to Disney's popular movie franchise <a href="http://tv.disney.go.com/disneychannel/originalmovies/highschoolmusical/">High School Musical</a>.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">According to officials at PandaLabs, the research division of Panda Security, there's a growing rash of infected files being distributed through peer-to-peer file sharing networks such as eMule and eDonkey.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Luis Corrons, technical director of PandaLabs said:</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt 0.5in"><i>"Cyber-crooks are exploiting the interest of the numerous fans of these films, by hiding their creations in files with names related to High School Musical. An added danger is that many of these fans are very young and as such are more likely to fall into the trap. It is therefore a good idea to give young children a basic grounding in IT security."</i></div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">When users run these infected files their computers can be affected by malicious code such as VB.ADQ, the Agent.KGR Trojan, the adware Koolbar, and other nasty stuff.</div>]]>
        
    </content>
</entry>

<entry>
    <title>Enterprise SIP Security - Free Webinar!</title>
    <link rel="alternate" type="text/html" href="http://blog.tmcnet.com/blog/greg-galitzine/voip/ip_communications/enterprise-sip-security---free-webinar.html" />
    <id>tag:blog.tmcnet.com,2008:/blog/greg-galitzine//6.37505</id>

    <published>2008-09-08T21:24:57Z</published>
    <updated>2008-09-08T21:26:18Z</updated>

    <summary>One of the most serious subjects in all of telecom is security. It&apos;s something that is on the mind of everyone who is considering deploying next-generation SIP-based telecommunications solutions in their enterprise. And often times, there&apos;s just not enough firsthand...</summary>
    <author>
        <name>Greg Galitzine</name>
        <uri>http://blog.tmcnet.com/blog/greg-galitzine/</uri>
    </author>
    
        <category term="Enterprise" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="IP Communications" scheme="http://www.sixapart.com/ns/types#category" />
    
        <category term="Security" scheme="http://www.sixapart.com/ns/types#category" />
    
    <category term="audiocodes" label="audiocodes" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="enterprise" label="enterprise" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="free" label="free" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="interactiveintelligence" label="interactive intelligence" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="security" label="security" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="sip" label="SIP" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="webinar" label="webinar" scheme="http://www.sixapart.com/ns/types#tag" />
    
    <content type="html" xml:lang="en" xml:base="http://blog.tmcnet.com/blog/greg-galitzine/">
        <![CDATA[<div style="margin: 0in 0in 0pt">One of the most serious subjects in all of telecom is security. It's something that is on the mind of everyone who is considering deploying next-generation SIP-based telecommunications solutions in their enterprise. And often times, there's just not enough firsthand information available.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Well an upcoming Webinar featuring speakers from two of the leading companies serving the enterprise market -- AudioCodes and Interactive Intelligence -- aims to educate attendees by teaching them the various things they need to know before deploying any SIP-based solutions.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Namely, attendees will learn about:</div><ul style="margin-top: 0in" type="disc"><li style="margin: 0in 0in 0pt">SIP Security challenges</li><li style="margin: 0in 0in 0pt">Security misconceptions</li><li style="margin: 0in 0in 0pt">Tools to counter security threats</li><li style="margin: 0in 0in 0pt">Proactive monitoring; and</li><li style="margin: 0in 0in 0pt">Effective solutions that are simple to deploy, tough to break</li></ul><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">In this webinar, the speakers will address the challenges and the misconceptions surrounding SIP Security, and examine the tools available to counter them. This session will also explore robust solutions that not only tackle security threats, but also empower businesses to proactively protect their networks from current and future attacks. Included in this webinar, the speakers will examine the Interactive Intelligence suite of products as a communications platform case study that empowers businesses to tackle security threats while maintaining affordability and performance.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">The webinar, entitled <i>Do You Know Who is Listening? &#160;The Truth of Enterprise SIP Security</i> is set to take place on Thursday, September 11, 2008 12:00 PM ET / 9:00 AM PT.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">In order to register, simply <a href="http://event.on24.com/r.htm?e=117820&amp;s=1&amp;k=07BE5D28D992311448EFE23DC4AB3B64">click here</a>.</div>]]>
        
    </content>
</entry>

<entry>
    <title>Obama Cites Cyber Attack Threat</title>
    <link rel="alternate" type="text/html" href="http://blog.tmcnet.com/blog/greg-galitzine/voip/security/obama-cites-cyber-attack-threat.html" />
    <id>tag:blog.tmcnet.com,2008:/blog/greg-galitzine//6.36880</id>

    <published>2008-07-17T14:33:06Z</published>
    <updated>2008-07-17T14:41:04Z</updated>

    <summary>Kevin Coleman is a Certified Management Consultant and Strategic Advisor with the Technolytics Institute.&#160;He&apos;s also our newest columnist.&#160;Kevin&apos;s first column touches on a very important subject: the threat of cyber attacks.&#160;Spurred by a Barack Obama speech, in which the Democratic...</summary>
    <author>
        <name>Greg Galitzine</name>
        <uri>http://blog.tmcnet.com/blog/greg-galitzine/</uri>
    </author>
    
        <category term="Security" scheme="http://www.sixapart.com/ns/types#category" />
    
    <category term="cyberattack" label="Cyber attack" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="obama" label="Obama" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="security" label="Security" scheme="http://www.sixapart.com/ns/types#tag" />
    <category term="tmcnet" label="TMCnet" scheme="http://www.sixapart.com/ns/types#tag" />
    
    <content type="html" xml:lang="en" xml:base="http://blog.tmcnet.com/blog/greg-galitzine/">
        <![CDATA[<div style="margin: 0in 0in 0pt">Kevin Coleman is a Certified Management Consultant and Strategic Advisor with the <a href="http://www.technolytics.com/">Technolytics Institute</a>.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">He's also our newest <a href="http://it.tmcnet.com/columnist.aspx?id=100159&amp;nm=Kevin%20G.%20Coleman">columnist</a>.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Kevin's first <a href="http://it.tmcnet.com/topics/it/articles/34348-obama-gets-tough-cyber-attacks.htm">column</a> touches on a very important subject: the threat of cyber attacks.</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">Spurred by a Barack Obama speech, in which the Democratic candidate placed the threat of cyber attacks in the same category as nuclear and biological weapons, Coleman tackles the issue head-on and urges the powers that be to "act decisively now!"</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">As Coleman says, "The clock is ticking and there is no time for politics."</div><div style="margin: 0in 0in 0pt">&#160;</div><div style="margin: 0in 0in 0pt">To read Kevin Coleman's first column in its entirety, <a href="http://it.tmcnet.com/topics/it/articles/34348-obama-gets-tough-cyber-attacks.htm">click here</a>.</div>]]>
        
    </content>
</entry>

</feed>
