Site icon Converge Digest

Industry Alliance Focuses on VoIP Security

The Cyber Security Industry Alliance (CSIA) issued a report that recommends Congress consider cyber security issues facing VoIP as it looks to revise the Telecommunications Act of 1996. The report warns that the same qualities that make VoIP such a valuable new option for mass-market voice communications also can lead to quality of service and performance issues, including denial of service attacks, Spam over IP Telephony (SPIT), session eavesdropping and voicemail hijacking. The CSIA believes an extra layer of security infrastructure can help resolve some of these issues, but not all of them. Since voice communication is a key enabler of critical government services operated by national security and emergency preparedness providers, a VoIP cyber attack could lead to serious consequences, such as loss of public access to critical emergency services like 911.

The CSIA also warns of the fallout from a major VoIP attack on other areas of national security, emergency preparedness and Internet fraud/criminal activity. VoIP vulnerabilities could also act as entry points for attacks on the rest of the network, including non-VoIP applications, systems and infrastructures. Some potential fallout examples include:

Members of the CSIA include BindView, Check Point Software Technologies, Citadel Security Software, Citrix Systems, Computer Associates, Entrust, Internet Security Systems, iPass, Juniper Networks, McAfee, PGP Corporation, Qualys, RSA Security, Secure Computing Corporation, Symantec and TechGuard Security.
http://www.csialliance.org

Exit mobile version