[YMCS/YDMP Free Trial Program]Yealink would like to offer Free Trial Program of Yealink device management service for our current eligible customers. You can see the details below.

Post Reply 
Thread Rating:
  • 0 Votes - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Hacked phones: IP access control / pubkey auth?
Author Message
jpoppenk Offline
Junior Member

Posts: 4
Joined: Feb 2016
Reputation: 0
Post: #1
Hacked phones: IP access control / pubkey auth?
Dear Yealink,

I have three Yealink phones (T32, T46). I changed the password as soon as I received the phones (to an eight random character value), patched to the latest firmware and adjusted the setting to block IP calls, so the phones at least did not spontaneously ring any more. In spite of these steps, all of the phones were hacked to redirect calls to an international number.

I logged onto all the phones and turned off the forwarding, set new 50-character passwords, uploaded my backed-up config settings, checked the autoprovisioning (nothing there) and do not see any residual evidence of tampering. I also set my logging settings to level 6. But the next day one of my phones is again compromised. So perhaps there is a backdoor in the software.

I would like to take some security precautions, but am not sure how or whether they are currently possible:

1) I would like to remedy this by simply blocking all IP's except for my voip server and subnet. This should be straightforward on a linux based sytem like the Yealink phones (modify the /etc/hosts.allow file), but I can't find any information about how to do this. I found documentation on allow lists for action USIs but I suspect it is the web interface getting cracked.

2) I would like to use pubkey authentication for making changes to the phone settings rather than password access. Is something like this possible?

Thank you in advance for your help.
02-25-2016 12:14 AM
Find all posts by this user    like0    dislike0 Quote this message in a reply
Post Reply 

Messages In This Thread
Hacked phones: IP access control / pubkey auth? - jpoppenk - 02-25-2016 12:14 AM

Possibly Related Threads...
Thread: Author Replies: Views: Last Post
  Probem with Queues and ringing phones Saccara 0 1,320 11-30-2022 05:23 PM
Last Post: Saccara
  Phones crash using VM Impress1 1 2,961 03-29-2022 09:54 PM
Last Post: Yisroel_MongoTEL
  How to access web UI from different subnet? Jeremy17 0 2,500 03-02-2022 05:32 AM
Last Post: Jeremy17
  Need to completely reset phones Chris708 1 4,309 02-26-2021 03:58 AM
Last Post: Chris708
  T46S/T46G show green icon (blf) although phones disconnected (Asterisk) jobst 0 3,710 09-16-2020 04:29 AM
Last Post: jobst
  Cannot access from Chrome gaz8080 2 6,455 01-28-2020 01:24 PM
Last Post: gaz8080
  Root access to a T46S or T48S Alith7 0 4,059 10-28-2019 05:25 PM
Last Post: Alith7
  Using a shared phonebook managed bij phones johandezwaan 1 5,302 09-30-2019 01:32 PM
Last Post: mara
Bug T41G WiFi cannot access web gui ufo 1 6,199 09-01-2019 05:13 PM
Last Post: Babylonia
  Yealink Wireless IP Phones RyanL 2 7,166 08-19-2019 03:03 PM
Last Post: jolouis

Forum Jump:

User(s) browsing this thread: 1 Guest(s)

Contact Us   Yealink   Return to Top   Return to Content   Lite (Archive) Mode   RSS Syndication