Penetration Testing mailing list archives

VoIP Hopper 1.0 released! With Nortel support


From: Jason Ostrom <justiceguy () pobox com>
Date: Tue, 05 May 2009 11:40:05 -0500

VoIP Hopper 1.0 has been released, with several new features, and a new project website:
http://voiphopper.sf.net

What is VoIP Hopper?
VoIP Hopper is a GPLv3 licensed security tool, written in C, that rapidly runs a VLAN Hop into the Voice VLAN on specific Ethernet switches. VoIP Hopper does this by mimicking the behavior of an IP Phone, in Cisco, Avaya, and Nortel environments. VoIP Hopper is a VLAN Hop test tool but also a tool to test VoIP infrastructure security.

New Features:
* *Nortel Support:* VoIP Hopper can now automatically discover the Voice VLAN ID used in Nortel IP Phone networks and VLAN Hop! * *DHCP client:* A fully integrated DHCP client! VoIP Hopper now implements DHCP messaging as function calls instead of relying on the old 'dhcpcd' client. This opens up the door for future VLAN Discovery mechanisms for other vendors, such as Alcatel. * *New CDP mode:* A new CDP Spoof mode that uses a pre-constructed IP Phone packet of a Cisco 7971G-GE! Now you can VLAN Hop faster by spoofing CDP and don't have to construct your own CDP Packet! * *Error correction with VLAN Interfaces:* Implemented a feature that checks to see if the IP address is already configured for the voice interface before running the VLAN Hop and DHCP request * *Bug fix 1:* Fixed an important libpcap bug with pcap_next_ex read timeout when CDP sniff mode was used (-c 0)


------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
http://www.iacertification.org
------------------------------------------------------------------------


Current thread: