Results 1 to 9 of 9

Thread: Skype - exposed

  1. #1

    Lightbulb Skype - exposed

    Hey guys as the popularity of this messenger-voip communication software, grows I was thinking to investigate the security side of this software:

    -Communication security
    -Local security
    -overall security issues

    Please post any information u came across (security related) in regarding to this software!

  2. #2
    Parth Maniar,
    CISSP, CISM, CISA, SSCP

    *Thank you GOD*

    Greater the Difficulty, SWEETER the Victory.

    Believe in yourself.

  3. #3
    Senior Member
    Join Date
    Jul 2004
    Posts
    548
    Skype's own Security Bulletins might be handy too. Don't forget to check out SecurityFocus either.

    Cheers,

    -jk

  4. #4

  5. #5
    Just Another Geek
    Join Date
    Jul 2002
    Location
    Rotterdam, Netherlands
    Posts
    3,401
    Oliver's Law:
    Experience is something you don't get until just after you need it.

  6. #6
    Senior Member
    Join Date
    Jul 2003
    Posts
    114
    Skype claims to have a 128bits encryption, but there's p.o.c. that existing programs (like Cain&Abel - www.oxid.it ) can tap and intercept VoIP conversations.
    This is an automated process done by the program, the user has to have no ability at all, no knowledge in spoofing and alikes to hijack and record the conversation...you can see how this could compromise a company on many aspects.

    I would use it in day to day calls (their charge rates are really worth it), but never on a corporate enviroment.

  7. #7
    it uses RC5 to chiper its text chat communication but the key can be recoverd from outgoing UDP datagam... whats the point !! script kiddie protection

  8. #8
    how about local security where does it store passwords / conversation history / crypted or not?

  9. #9

    Re: Skype - exposed

    Originally posted here by karavay
    Hey guys as the popularity of this messenger-voip communication software, grows I was thinking to investigate the security side of this software:

    -Communication security
    -Local security
    -overall security issues

    Please post any information u came across (security related) in regarding to this software!

    heres what i found:

    http://articles.news.aol.com/busines...16153509990024

    http://www.ctv.ca/servlet/ArticleNew...16?hub=SciTech

    http://www.networkworld.com/community/?q=node/3375

    http://www.strike-the-root.com/3/blow/blow6.html

    http://www.smh.com.au/news/breaking/...151801336.html

    http://www.skype.com/security/files/...evaluation.pdf

    http://www.usatoday.com/printedition...kype17.art.htm

    http://blogs.zdnet.com/ip-telephony/index.php?p=919

    http://arik.baratz.org/wordpress/200...es-encryption/

    http://www.voipplanet.com/trends/article.php/3567391

    if you ask me this program probably have a much strong encryption
    http://www.famatech.com/products/radmincs/ (not free)
    but it doesnt use public servers like skype

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •