Thanks to our reader Glenn for alerting us of this scheme: He received an automated phone call, telling him that his ATM card has been deactivated. The system then offered him to re-activate it. He didn't fall for it, and instead called his bank. His bank told him that they had multiple reports like that, and the calls are false. Lessons learned:
This event reminds me of one result our web-application honeypot project yielded so far: Attackers are actively looking for open VoIP web based admin interfaces like asterisk/trixbox/freepbx. Don't forget to secure them with passwords AND limit admin access to machines from your IP address space. It is likely that compromissed VoIP systems are used to launch these attacks.
------ |
Johannes 4045 Posts ISC Handler Oct 21st 2008 |
Thread locked Subscribe |
Oct 21st 2008 1 decade ago |
Sign Up for Free or Log In to start participating in the conversation!