Phishing with Asterisk PBX presented at BlackhatUSA 2006

by Jay Schulman,

Summary : As many people are becoming more accustom to phishing attacks, standard website and e-mail phishing schemes are becoming harder to accomplish. This presentation breaks all of the phishing norms to present an effective, alternative phishing method from start to finish in 75 minutes using Linux and Asterisk, the open-source PBX platform. With an Asterisk installation, well setup an account and build a telephone phishing platform most banks would fear. Well also show targeting techniques specific to large corporate environments and demonstrate basic Asterisk deception techniques. Well also discuss ways we can prepare for and potentially prevent these types of attacks.