<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>VoIP Tech Chat &#187; VoIPshield</title>
	<atom:link href="http://www.voiptechchat.com/tag/voipshield/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.voiptechchat.com</link>
	<description>Patrick and Fred Chat... sometimes about VoIP</description>
	<lastBuildDate>Fri, 03 Sep 2010 10:37:41 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>New Security Issues for Microsoft VoIP</title>
		<link>http://www.voiptechchat.com/voip/111/new-security-issues-for-microsoft-voip/</link>
		<comments>http://www.voiptechchat.com/voip/111/new-security-issues-for-microsoft-voip/#comments</comments>
		<pubDate>Wed, 12 Nov 2008 15:13:53 +0000</pubDate>
		<dc:creator>Fred</dc:creator>
				<category><![CDATA[VoIP]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[RTP]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[VoIPshield]]></category>

		<guid isPermaLink="false">http://www.voiptechchat.com/?p=111</guid>
		<description><![CDATA[topsyWidgetPreload({ "url": "http%3A%2F%2Fwww.voiptechchat.com%2Fvoip%2F111%2Fnew-security-issues-for-microsoft-voip%2F", "style": "big", "title": "New Security Issues for Microsoft VoIP" }); VoIPShield, a VoIP security solutions company, announced new security vulnerabilities affecting Microsoft VoIP Products. The vulnerabilities affect applications using media stream protocols, such as RTP (Real-time Transport Protocol). The products affected: Office Communications Server 2007 Office Communicator Windows Live Messenger These products [...]]]></description>
			<content:encoded><![CDATA[
<div class="topsy_widget_data topsy_theme_blue" style="float: right;margin-left: 0.75em; background: url(data:,%7B%20%22url%22%3A%20%22http%253A%252F%252Fwww.voiptechchat.com%252Fvoip%252F111%252Fnew-security-issues-for-microsoft-voip%252F%22%2C%20%22style%22%3A%20%22big%22%2C%20%22title%22%3A%20%22New%20Security%20Issues%20for%20Microsoft%20VoIP%22%20%7D);"><script type="text/javascript">topsyWidgetPreload({ "url": "http%3A%2F%2Fwww.voiptechchat.com%2Fvoip%2F111%2Fnew-security-issues-for-microsoft-voip%2F", "style": "big", "title": "New Security Issues for Microsoft VoIP" });</script></div>
<p><a href="http://www.voipshield.com" onclick="pageTracker._trackPageview('/outgoing/www.voipshield.com?referer=');">VoIPShield</a>, a VoIP security solutions company, <a href="http://voipshield.com/news/press-releases-details.php?year=2008&amp;id=20" onclick="pageTracker._trackPageview('/outgoing/voipshield.com/news/press-releases-details.php?year=2008_amp_id=20&amp;referer=');">announced new security vulnerabilities</a> affecting Microsoft VoIP Products. The vulnerabilities affect applications using media stream protocols, such as RTP (Real-time Transport Protocol).</p>
<p>The products affected:</p>
<ul>
<li>Office Communications Server 2007</li>
<li>Office Communicator</li>
<li>Windows Live Messenger</li>
</ul>
<p>These products deliver software-powered VoIP, presence, instant messaging and audio/video/Web conferencing functionality to end users. Microsoft estimates that over 250 million computers worldwide run these applications. All use RTP to deliver the content of the message; therefore all are vulnerable to this class of attack.</p>
<blockquote><p>“Most of the attention in enterprise VoIP/UC security has been paid to the control channel, where SIP and other signalling protocols are used,” said Ken Kousky, CEO of CISSP certification training company IP3 Inc. and advisor to the VoIP Lab at Illinois Institute of Technology. “Until now, the media stream has been largely ignored by the security community as a source of malicious activity.  But attacks from these vectors have the potential to be dangerously persistent and widespread.”</p></blockquote>
<p>The Microsoft vulnerabilities announced today, if exploited, cause a Denial of Service (DoS) condition against not only the stated applications but the entire desktop environment.</p>
<blockquote><p>“Today’s announcements are just the tip of the iceberg,” said Andriy Markov, director of VoIPshield Labs. “Although they are specific to Microsoft’s applications, similar flaws exist in other VoIP vendors’ products. And many other media stream attacks exist that have more severe implications than service availability. We’re presently validating new research that shows an attacker can gain unauthorized access to an unsuspecting user’s laptop by manipulating the packets of a VoIP phone call. We believe that these attacks can even be made to traverse a PSTN gateway.”</p></blockquote>
<p>VoIPshield has not publicly released the “full details” of the Microsoft VoIP vulnerabilities. VoIPshield, through it’s standard operating procedure, will first confidentially disclose the details to Microsoft and work with them to fix the applications.</p>
<p><a href=" http://www.voipshield.com">VoIPshield Systems</a> is a VoIP security solutions company founded in early 2005.  Headquartered in Ottawa, Canada, VoIPshield develops and markets the VoIPshield Security Suite, a set of security applications purpose-built to protect VoIP networks.</p>

]]></content:encoded>
			<wfw:commentRss>http://www.voiptechchat.com/voip/111/new-security-issues-for-microsoft-voip/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.446 seconds -->
