The FBI Accidentally Drizzles on Digium's Parade

There has been some recent madness in the open source communications world and I thought I had to get involved to get the matter settled properly. Some media outlets reported on the fact that the FBI put out a vague statement via the IC3 regarding how Asterisk may be susceptible to vishing attacks or caller ID spoofing via VoIP.

Before commenting I waited to hear back from Digium's John Todd who explained that there were some methodology and editorial process issues in this alert - basically no one checked with Digium before going public. As it turns out, after checking with Digium, the FBI quickly revised their statement and everything is fine.

The details are that there was a bug which Digium found in March of 2008 and subsequently patched in version 1.2 and 1.4. Version 1.6 is not affected. Besides, according to Todd, the security issue would arise if system administrators basically disregarded logical security measures like using numerals in passwords.

For your reference you may want to check out the blog entry from Todd titled SIP Security and Asterisk as well as the updated IC3 warning from the FBI.

I am sure by the time Asterisk World rolls around in a few months in Miami, we will all be laughing about this incident and marveling at the opportunity that is open source communications.

The opinions and views expressed in comments, blogs, etc. are those of the authors alone and not necessarily those of TMC, TMCnet, or its editors. TMCnet reserves the right to edit, delete, or otherwise make changes to the content that appears on these pages at its own discretion and as it deems necessary.
| 0 Comments | 0 TrackBacks

Listed below are links to sites that reference The FBI Accidentally Drizzles on Digium's Parade:

The FBI Accidentally Drizzles on Digium's Parade TrackBack URL : http://blog.tmcnet.com/mt/mt-tb.cgi/38406

Leave a comment

Recent Activity

Thursday

More...

Recent Comments

  • Third Eye: Looking at mere percentages of growth with a blooming technology read more
  • dereici: Thank You read more
  • klip: Thank you so much for content, you would track;) read more
  • Yemek tarifleri: thats it nice , thanks read more
  • Daniel Anadio: Amazon inspires me to read , it's better than a read more
  • dizi izle: US: It's quite obvious that it doesn't contribute one bit read more
  • dizi izle: This just really seems to be another case where patents read more
  • mobil: Thanks beautiful been read more
  • medyum: There is another patent out there that could potential help read more
  • vimalan: sir, am in vellore at tamilnadu. recently in vellore read more

Subscribe to Blog

Blogroll

Recent Entry Images

  • hungry.jpg
  • chris-barton-wcs.jpg
  • iphone-sirius-xm.jpg
  • 12420506412[1].jpg
  • iphone-3g-s.jpg

Archives

Around TMCnet Blogs

  • Communications and Technology Blog - Tehrani.com:
    Problems at Joost
  • On Rad's Radar?:
    USF and Rural Reform
  • VoIP & Gadgets Blog:
    Worst Google News Headline Ever! - No public viewing
  • Communications and Technology Blog - Tehrani.com:
    Heading to Rhode Island
  • First Coffee:
    SugarCRM Studied, Broadband 'Crucial,' EGain, OOCOSPI, NetSuite's Zander
  • On Rad's Radar?:
    Bells Giving Up on Landlines?
  • The Readerboard:
    Tougher Actions To Save Telemarketing
  • VoIP & Gadgets Blog:
    eBuddy for iPhone Supports Push Notifications
  • Latest Whitepapers

    TMCnet Videos