"Calling it a 0-Day - Hacking at PBX/UC Systems" good_pseudonym

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • number6
    404 Image not found
    • Apr 2019
    • 2172

    #1

    "Calling it a 0-Day - Hacking at PBX/UC Systems" good_pseudonym

    Calling it a 0-Day - Hacking at PBX/UC Systems
    good_pseudonym, Hacker
    | Demo, Exploit | 45

    PBX (Private Branch Exchange) and UC (Unified Communications) servers are the big communication brokers in enterprise environments where they love on-prem. They do everything to enable internal and external communications including voice, video, conferencing and messaging. But a broader scope also means a broader attack surface.

    In this talk, we'll give an overview PBX/UC systems, what kind of attack surface they have, as well as several bugs that we recently found in two popular PBX/UC products. The journey includes deep-diving Java's Runtime.exec(), decrypting encrypted PHP, bypassing license restrictions, pretending to be a phone, and (of course) getting some shells.

    REFERENCES:
    VoIP Wars: Attack of the Cisco Phones (DEF CON 22, Fatih Ozavci)
    Hacking VoIP Exposed (Black Hat USA 2006, David Endler, Mark Collier)​
  • TNR
    Attending since #18
    • Aug 2014
    • 2

    #2
    Does anyone know if the slides are available? I searched on the Media Server (as of Saturday morning).

    Comment


    • number6
      number6 commented
      Editing a comment
      I do not see this on https://media.defcon.org/DEF%20CON%2...presentations/ either.
      If you are at DEF CON 31 using the DEF CON WiFi, and not using a VPN, would you try checking https://dc31-media.defcon.org/ for an in-Las-Vegas media Server on the local DEF CON network and see if the presentation slides you want are on there?

      Beyond that, I have no information on if/when slides might be available.

      I did hear changes to existing slides on our media server will not change until after DEF CON, but I have not answer to address new additions during DEF CON. I would assume new additions won't be added until after DEF CON 31, too.

      HTH
Working...