VoIP

Potentially serious vulnerability in a number of SIP endpoints

Sjur Usken and San­dro Gauci have dis­cov­ered a major flaw in the SIP imple­men­ta­tions on a wide range of IP phones. The short expla­na­tion is that the phones do not ver­ify where a proxy authen­ti­ca­tion request is com­ing from and hap­pily return the SIP authen­ti­ca­tion infor­ma­tion. It is hashed and salted, but the […]


Damn, it’s been a while…

It’s been quite some time since I last posted…
Here’s a quick sum­mary of what’s gone on in my life:

The bas­tard Probe is still in the garage, sta­tus really unchanged since August.
I got bored after doing an install in Colum­bus and wan­dered in to a used car dealer.  Some­how I drove home in a 2002 BMW 325i…
Char­lie and […]