Abusing SIP Authentication - Inria - Institut national de recherche en sciences et technologies du numérique Access content directly
Conference Papers IEEE Computer Society Year : 2008

Abusing SIP Authentication

Abstract

The recent and massive deployment of Voice over IP infrastructures had raised the importance of the VoIP security and more precisely of the underlying signalization protocol SIP. In this paper, we will present a new attack against the authentication mechanism of SIP. This attack allows to perform toll fraud and call hijacking. We will detail the formal specification method that allowed to detect this vulnerability, highlight a simple usage case and propose a mitigation technique.
Fichier principal
Vignette du fichier
Abusing_SIP_Authentication.pdf (62.51 Ko) Télécharger le fichier
Origin : Files produced by the author(s)
Loading...

Dates and versions

inria-00326077 , version 1 (01-10-2008)

Identifiers

Cite

Humberto Abdelnur, Tigran Avanesov, Michaël Rusinowitch, Radu State. Abusing SIP Authentication. Information Assurance and Security ( ISIAS), Sep 2008, Naples, Italy. pp.237-242, ⟨10.1109/IAS.2008.29⟩. ⟨inria-00326077⟩
93 View
517 Download

Altmetric

Share

Gmail Facebook X LinkedIn More