800-752-6110 facebooktwitterlinkedinyoutube

what-we-do
who-we-are
request-a-solution

Intellisys Communications :: Utah Business Phone and Communication Solutions - 4 Steps To Eliminate Toll Fraud

Friday, 14 October 2011 14:12

4 Steps To Eliminate Toll Fraud

TOLL FRAUD:  We have had several customers get hit with Toll Fraud recently and I wanted to discuss ways that you can avoid this costly event.

Hackers will enter your telephone systems typically in two ways.  First is that they enter via the Automated Attendants and users mailboxes.  They will then press # or * to get access to a mailbox just like a remote user and start trying passwords.  These systems are automatic just keep trying combinations until they get a match.  When they get access they publish this information to their networks and they can rack up tens of thousands of dollars in long distance bills that you are responsible for. 

The second way that they get access is via the Internet for systems that are VoIP, or via Voicemail computers that are on your networks.  They will set up users or mailboxes and grant them rights for external calling.

So how do you protect yourselves?

1.  Teach Your Employees The Importance Of Secure Passwords:

The best protection is a good password.  Users will often set up passwords that match their extension numbers or that are simple like 1234 or 5555.  This makes it simple for hackers to compromise your systems.  Make sure that your staff are using good passwords and that you are training them to do so!  If you don't know how to verify this information then you may want to request a Security Audit Service call where we can assess your systems and help you to secure your systems. 

Passwords on the Administration, and all of your networking equipment should also be secure.


2.  Shut Off External Access: 

Both your Phone system, and Voice Mail system have options for external calling.  Often these are required for External Notification or Call Forwarding but if you don't use these features then you should turn off these features off.

3.  Secure your Firewalls and Network Equipment: 

For VoIP systems the firewall must be secure to block access to all kinds of threats to your systems.  Make sure that your firewalls are up to date and blocking external connections.  If you don't know if you firewall is set up properly then I can guarantee that it is not.  If you just took it out of the box and plugged it in then many ports are likely open and you are not secure.  If you need assistance please request a service call.

4.   Work with your Dial Tone Carriers:

Most often the hackers are using accounts for International Long Distance.  If your company does not use International calling then ask your carrier to block international calls. 

If you do make International calls then ask the carrier to add an Account Code that is both Forced (required) and Verified(only the codes you give them will work) to add an additional level of security.  You can also have them block any countries that you do not do business with.

The bottom line is that this is a serious threat and if you are not sure that your company is secure then you should have us audit your systems and assist you in locking down access to external threats such as Toll Fraud and other network threats.  Call today so request your Security Assessment.

Please let us know how we can serve you and if you have any needs that we can assist with.

Robert Brown
President

62 comments

Leave a comment

Make sure you enter the (*) required information where indicated.
Basic HTML code is allowed.