Technology by Design

Technology news, reviews, and how to keep your technology running fast and smooth!

  • Home
  • About TbyD
    • Who is TbyD
    • Why Choose TbyD?
    • 16 Things
    • Your Computer Guy
  • Products and Services
    • Business Services
      • Monthly Service Plans
        • Enterprise Service Plan
        • Business Service Plan
        • Personal Service Plan
      • Performance Analysis
      • Optimization
      • Core Security Solution
      • Managed Backups
      • Computer and Network Systems
      • Computer Setup
      • Domain Names
      • Email Services
      • Extended Warranties
      • Network Cabling Services
      • Security Camera Systems
      • Managed Spam Filters
      • VoIp Phone Systems
      • Websites
    • Services
      • Monthly Service Plans
        • Enterprise Service Plan
        • Business Service Plan
        • Personal Service Plan
        • Computer Setup
      • Core Security Solution
      • Managed Backups
      • Extended Warranties
      • Performance Analysis
      • Optimization
      • Network Cabling Services
      • Security Camera Systems
      • Managed Spam Filters
      • VoIp Phone Systems
    • Products
      • Computers
      • Servers
  • Testimonials
    • What Our Clients Say About Us
  • Blogs
    • ALERTS
    • FAQ
    • How To Videos
  • Newsletters
    • TechTips Newsletters
  • Reviews
  • Media
    • Email Red Flags
    • E-Books
    • Disaster Prevention Planning Kit
    • Free Reports
  • Contact Us
    • Contact Us
    • Quick Support

ALERT: Phone System Hackers

April 16, 2013 by The T By D Team Leave a Comment

PasswordALERT:  Phone System Hackers

Everyone knows (or should know by now) that if someone calls, and asks for personal information, credit card numbers, etc you shouldn’t provide this over the phone.  However, the newest hackers hack your phone lines…when no one is there.

Toll fraud is the theft of long distance charges services by an unknown third party.  It is not limited to the unauthorized entry into a business’ phone system or equipment.  Toll fraud occurs worldwide, and has devastating effects on businesses, often causing tens of thousand of dollars worth of long distance charges to a single business.

Unfair as it is, if a call has originated with, or passed through your phone system or equipment, you are responsible for the charges associated with the call, whether the call is authorized or not.  This means, even though you are a victim of fraud, you are liable for the costs.

Hackers can enter your phone system through the voicemail boxes.  The hackers call the business, and when no one answers the phone, all calls are put through to a voicemail box.  The hackers then bombard the system with a series of numbers to attempt to get the right code for the administration side of the voicemail.  Once they find the right code, they are able to make outbound calls to foreign places.  Some foreign countries have extremely high long distance rates (13-29 cents per minute), and are good targets for toll fraud.  This means the security of your phone system is up to you.

How do you ensure your phone system’s security?  Call your Private Branch Exchange provider for specifics, but the following steps are a good start:

  • Never publish a Direct Inward System Access (DISA) telephone number.
  • Change the DISA access number regularly
  • Use longer DISA authorization codes.  9 digits are ideal.  Never use less than 7.
  • Issue a different DISA authorization code for all users.
  • Warn DISA users not to write down authorization codes.
  • Restrict DISA access at night, weekends, and holidays.  This is a low usage time, but prime time for fraud.
  • Block or restrict overseas access.  If your company requires employees to call overseas, restrict calls to only the countries that you need to make calls to.
  • Program your system to answer with silence after 5 or 6 rings.  Most systems are programmed to answer with a steady tone after two rings, and this is what hackers look for.
  • Route invalid access attempts to your operator, if possible.
  • Program your Private Branch Exchange (PBX) to generate an alarm if an unusual number of invalid attempts are made.
  • Program your PBX so that the port will disable itself after a set number of invalid attempts.
  • Disconnect all telephone extensions that are not in use.
  • Block access to remote maintenance/administration ports, or use maximum length passwords.  Change the passwords frequently, use maximum password length, and don’t use easy or sequential numbers.  Ensure you change the passwords from factory settings.
  • Disconnect modems that are not in use.
  • Prohibit the sharing or posting of passwords, or entering them into programmable keys or speed dial buttons.
  • Block collect call options
  • Restrict access to directories that give directions on how to get into the voicemail system.
  • If your system allows callers to transfer to other extensions, block any digits that hackers could use to get outside lines.
  • Delete all inactive voicemail boxes.
Not sure if your company is safe?  Ask us for a FREE Network Security Assessment!

Check out our “Email Red Flags”  for what to watch for, in suspicious emails. 

Ask us about our “Core Security Solutions” package!
You can’t stop CyberCriminals from targeting your company or employees.
But you can be prepared for their arrival, and have full shields up.

Got CyberBugs?

Call 1-204-800-3166

For Cyber-Extermination!

#itthatworks

Filed Under: ALERTS, Featured

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Sign Up For The Monthly TechTips Newsletter!

* = required field
unsubscribe from list

powered by MailChimp!

Recent Posts

  • ALERT: Celebrity Death Scams
  • ALERT: Uber Hacked
  • ALERT: Netflix Email Scam
  • ALERT: Bad Rabbit
  • Scam – Reset Password Alert

Recent Comments

  • ALERT: New Ransomware Targets MS Office 365 Users - Technology by Design on Managed Backups
  • ALERT: FBI Warns Email Extortion Heating Up for Summer! - Technology by Design on ALERT: AshleyMadison Hack Blows Up
  • ALERT: Evil Android Trojan Empties Your Bank Account - Technology by Design on Definition: Phishing
  • ALERT: HTML Attachments - Technology by Design on Definition: Phishing
  • ALERT: New Ransomware Also Steals Your Bitcoins - Technology by Design on Managed Backups

Copyright © 2025 · Dynamik Website Builder on Genesis Framework · WordPress · Log in