YoVDO

Compromising Online Accounts by Cracking Voicemail Systems

Offered By: media.ccc.de via YouTube

Tags

Conference Talks Courses Cybersecurity Courses Ethical Hacking Courses

Course Description

Overview

Explore the vulnerabilities of voicemail systems and their potential impact on online account security in this 42-minute conference talk from the 35th Chaos Communication Congress (35C3). Delve into the history of voicemail hacking, examining how old weaknesses persist alongside modern technology. Learn about techniques for compromising voicemail systems, including both traditional methods and innovative approaches. Discover the far-reaching consequences of unauthorized voicemail access, extending beyond message exposure. Witness demonstrations of real-world attacks, including compromising PayPal accounts and exploiting location services. Gain insights into user interaction-based protection measures and their limitations. Examine a new tool that automates the voicemail hacking process. Conclude with recommendations for improving voicemail security and addressing questions from the audience on topics such as disabling voicemail, undocumented APIs, and carrier responsibilities.

Syllabus

Introduction
Previous research
Checklist on default pins
The tool
First demo
User Interaction Based Protection
Compromising PayPal
Compromising LocationSmart
LocationSmart Demo
Recommendations
Questions
Question from the internet
Turning off voicemail
Twilio ban
Undocumented API
Visual voicemail
Recommendations to carriers


Taught by

media.ccc.de

Related Courses

Building Geospatial Apps on Postgres, PostGIS, & Citus at Large Scale
Microsoft via YouTube
Unlocking the Power of ML for Your JavaScript Applications with TensorFlow.js
TensorFlow via YouTube
Managing the Reactive World with RxJava - Jake Wharton
ChariotSolutions via YouTube
What's New in Grails 2.0
ChariotSolutions via YouTube
Performance Analysis of Apache Spark and Presto in Cloud Environments
Databricks via YouTube