pen-test
[Top] [All Lists]

Re: listening to people/offices when on-hold on the phone

To: pen-test@securityfocus.com
Subject: Re: listening to people/offices when on-hold on the phone
From: ebk_lists@hotmail.com
Date: 22 Jun 2007 18:11:14 -0000
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Resent-date: Fri, 22 Jun 2007 17:33:06 -0600 (MDT)
Resent-from: pen-test-return-1078484438@securityfocus.com
Resent-message-id: <20070622233306.8DEDA237362@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
This has sorta happened to me. I was on "hold" with our higher SOC for a 
terribly long time, and I started complaining. I didn't realize that they could 
hear me/were still listening. But I didn't even have the luxury of Beethoven. :(

I agree it's an interesting concept, but I don't know how much value you would 
actually gain by doing it. You would need some sort of bait to have your mark 
call you and/or stay on the line long enough for you to collect any data that 
you might be able to get.

Another potential is using this idea:

http://www.theinternetpatrol.com/keyboard-sound-spying-gives-away-whats-being-typed

Get them on the phone, and get them to log in to their account, do something 
else that requires typing their password. Perhaps you can record the keystrokes 
and determine what it is?

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>