Sipera Viper Lab Identifies SIP Vulnerabilities That Threaten VoIP

After two years in stealth mode, reviewing, cataloging and analyzing VoIP and SIP vulnerabilities, Sipera VIPER Lab (cool name by the way, since I drive a Viper myself - photo to rightwink ) today released at CTIA several threat advisories for WiFi/dual mode telephones from vendors including RIM, HTC, Samsung, Dell and D-Link. Sipera VIPER Lab also released information about a number of SIP vulnerabilities. These vulnerabilities can disable phones calling features, disconnect calls, and freeze phones, causing significant enterprise communications disruptions.

According to Sipera, they proactively identify VoIP threats through its Sipera VIPER Lab, which is comprised of experienced VoIP application developers, architects, and engineers, operating 24/7/365 from Richardson, Texas, and Hyderabad, India. The VIPER Lab researchers identify new vulnerabilities and potential exploits in VoIP protocols, VoIP equipment and phones. They also scan web sites, blogs, discussion groups, and media outlets for evidence of known, suspected and new VoIP vulnerabilities and attacks. These vulnerabilities are posted at http://www.sipera.com/viper as a service to Sipera's customers and the general public. Sipera VIPER Lab follows a disclosure policy which notifies equipment vendors, in advance, of the potential vulnerabilities and works with each of these vendors to publish a response/fix or identify other solutions to these security issues.

"VoIP security is just beginning to get more attention now that VoIP adoption has reached a tipping point in the last year. It is refreshing to see Sipera's launch of VIPER Lab that will assuredly help promote and advance the state of VoIP security research and help raise the overall awareness of VoIP threats and corresponding best practices," said David Endler, chairman of the Voice over IP Security Alliance (VOIPSA), an industry consortium created to drive adoption of VoIP by promoting the current state of VoIP security research, VoIP security education and awareness, and free VoIP testing methodologies and tools.

The major threat advisories issued today that affect WiFi/dual-mode phones include:
-- A format string vulnerability in RIM Blackberry 7270 SIP stack may
allow a remote attacker to disable the phone's calling features (VIPER-
2007-023).
-- HTC HyTN using AGEPhone is vulnerable to malformed SIP messages sent
over WLAN connections, which may cause active calls to disconnect
(VIPER-2007-0026).
-- A buffer overflow vulnerability in Samsung SCH-i730 phones running
SJPhone SIP Client may allow an attacker to disable the phone and slow
down the operating system (VIPER-2007-0029).
-- Dell Axim running SJPhone SIP soft phone is vulnerable to denial of
service attacks, which can freeze the phone and drain the battery
(VIPER-2007-0030).
-- A vulnerability in the SDP parsing module of D-Link DPH-540/DPH-541
WiFi phones may allow remote attackers to disable the phone's calling
features (VIPER-2007-031).

For additional details on these vulnerabilities or to see the complete list, visit http://www.sipera.com/viper.
| 2 Comments | 0 TrackBacks

Listed below are links to sites that reference Sipera Viper Lab Identifies SIP Vulnerabilities That Threaten VoIP:

Sipera Viper Lab Identifies SIP Vulnerabilities That Threaten VoIP TrackBack URL : http://blog.tmcnet.com/mt/mt-tb.cgi/32140

2 Comments

what a great article.. its real helpful thax so much

| Reply

hi sir, i want vipe project details......and its basic concepts....

Leave a comment

Recent Activity

Today

  • Tom Keating queued The Blind Side

Sunday

Sunday

  • Tom Keating tweeted, "Moving a Data Center: Moving a data center can be fun. Yes, if you enjoy being up from 6am (Friday) to 2am (Satur... http://bit.ly/cX6L0j"
  • Tom Keating posted Moving a Data Center

Friday

  • Tom Keating tweeted, "Tearing down TMC's entire network infrastructure. My sweet beautiful network! [sniff] [sniff]"

Thursday

  • Tom Keating tweeted, "why the heck am I still awake when I have an all-nighter tomorrow moving the entire #TMCNet data center? (www.tmcnet.com) fun fun!"
  • Tom Keating tweeted, "No, Gremlins Didn't Eat TMCNet's Web Servers: Starting tomorrow around 7am, TMC will be shutting down its entire d... http://bit.ly/bS3OOn"

More...

Recent Comments

  • Peter Radizeski: I'm not certain that is accurate. The staff for VON read more
  • טכנאי מחשבים: Fast, organized, thorough, non-intrusive, and free! THANKS AVG. read more
  • SomeGuy: I've had sipgate setup for less than 24 hours on read more
  • Uverse instaler: Being a uverse installer in the StL area, I can read more
  • Roger: Dan did you find out what the music is?? I read more
  • VoIP Spear: I don't think this site is active anymore. You can read more
  • Mamrez: Hi guys , I'm looking for cracked MOBILELOG for iphone read more
  • Symplicity: Works amazing thanks :) read more
  • wirefly customer: I got my phone from wirefly and it turned out read more
  • Maher: Dear Sir, I am looking for a slim credit card read more

Subscribe to Blog

Recent Entry Images

  • apple-ipad.jpg
  • google-nexus-one.jpg
  • freetalk-connect.jpg
  • freetalk-connect.jpg
  • calliflower-skype.jpg
  • itexpo-logo.jpg

Entry Archives

Around TMCnet Blogs

  • Communications and Technology Blog - Tehrani.com:
    Apple Antitrust Issues
  • On Rad's Radar?:
    Endstream Plans
  • VoIP & Gadgets Blog:
    Moving a Data Center
  • Communications and Technology Blog - Tehrani.com:
    IfByPhone Interview ITEXPO East 2010 Miami
  • First Coffee:
    Frost & Sullivan Webcast, LCEC and ENERGYprism, IDC for
  • On Rad's Radar?:
    Freeside's new CEO
  • The Readerboard:
    Tune In, Call in (And Donate), 'Hope for Haiti
  • VoIP & Gadgets Blog:
    No, Gremlins Didn't Eat TMCNet's Web Servers
  • Latest Whitepapers

    TMCnet Videos