VoIP: Security Threat #5

Dan York has written a lengthy post on how SANS (SysAdmin, Audit, Network, Security) Insitute has identified VoIP among their top 20 Internet Security Threats for 2006.  They’ve identified six major trends in Internet security attacks, and VoIP is one of them, primarily via vulnerabilities in systems like Asterisk and Cisco Call Manager. 

It’s a first, apparently. 

  • Dan York November 16, 2006, 4:40 am


    Thanks for the mention. The "first" is that the SANS Institute has been publishing this "Top 20 Internet Security Attack Targets" list for several years, but this is the first time that VoIP has been on the list. In previous years, it was more about the underlying network, the operating systems, etc. But now it is their opinion that VoIP is a significant enough presence on the Internet that it *will* be attacked… and therefore it is worthwhile to call attention to that fact so that security professionals can ensure they are protecting it.


    P.S. The list was previously called the "Top 20 Critical Internet Security Vulnerabilities", but I guess that name didn't sound as aggressive as "Attack Targets".

    P.P.S. Love your blog, BTW!

  • Alec November 16, 2006, 5:12 am

    Thanks Dan :)

