If geeks love it, we’re on it

How not to run a PBX system

How not to run a PBX system

The USDOJ on Friday unsealed indictments filed against three Filipino residents allegedly responsible for hacking into thousands of private telephone systems in the US and around the globe.

The US government charges Manila residents Mahmoud Nusier, Paul Michael Kwan and Nancy Gomez with breaking into some 2500 PBX (Private Branch eXchange) systems — private computerized phone systems like switches and voicemail — by exploiting default factory passwords.

It is said the process went something like this:

  1. Company submits RFP for computerized phone system.
  2. Company contracts phone system deployment.
  3. Company leaves default passwords on multi-thousand dollar phone system.
  4. ???
  5. Infallible security!

Wait, no.

Comments

Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!