发明名称 Telephony extension attack detection, recording, and intelligent prevention
摘要 A system and method are provided for detecting extension attacks made to a communication enterprise, and taking appropriate remedial action to prevent ongoing attacks and future attacks. One or more attributes of a suspect call are analyzed, and a risk is associated with each analyzed attribute. An overall risk or assessment is then made of the analyzed attributes, attack attributes are logged, and one or more remedial actions may be triggered as a result of the analyzed call attributes. The remedial actions may include recording the call, notifying an administrator of a suspect call, or isolating the communication enterprise from the attack by terminating the call or shutting down selected communication endpoints to prevent calls being made to those extensions. Rules may be applied to the analyzed attributes in order to trigger the appropriate remedial action. The call attributes analyzed may include call destination, call direction, call type, time of day of the call, call duration, whether a call source is spoofed, call volume from a particular call source, and hash values created for a suspect media stream.
申请公布号 US7653188(B2) 申请公布日期 2010.01.26
申请号 US20050243753 申请日期 2005.10.04
申请人 AVAYA INC. 发明人 KLOBERDANS MICHAEL JAMES;WALTON JOHN MICHAEL
分类号 H04L29/06;H04M3/00;H04M3/436;H04M7/00;H04M15/00;H04M17/00 主分类号 H04L29/06
代理机构 代理人
主权项
地址