5953lc Posted February 19, 2016 Report Posted February 19, 2016 www.onthewire.io/owning-voip-phones-with-zero-clicks/ So what can be done from the PBX side to address this issue ?
Vodia PBX Posted February 21, 2016 Report Posted February 21, 2016 If you leave the default password on phones, well don't be surprised if someone takes them over. We get criticized for provisioning long passwords, but articles as the one you mention make again clear that this is necessary.
5953lc Posted August 25, 2016 Author Report Posted August 25, 2016 This is what I use ... https://www.grc.com/ppp.htm Each time you load the page, a new, unique, high-quality, pseudo-random 256-bit PPP "Sequence Key" whenever this page is displayed or refreshed thus generating another set of random passwords (Using 4-characters per passcode, 16,777,216 passcodes are possible, but you can, and should use 6 or 8 characters for even better security). You can then print out a list of random easily readable passwords ... Just set the password length to less than the maximum password length your using and "voila"
Recommended Posts