Learning Hub

Blogs

Recent Blogs

3CX V20 Upgrade department Requirements

3CX V20 Upgrade department Requirements

3CX
Hosted
3CX V20 Upgrade department Requirements In the evolving world of business communication, staying ahead means leveraging the best tools and support available. That's where Voxtelesys comes in, offering unparalleled 3CX hosting and support services. With the release of 3CX V20, navigating the complexities of inbound call management, office hours configuration, and the transition to departments requires a reliable partner. Voxtelesys ensures your transition is seamless and maximizes your system's efficiency and compliance. Learn More
 CCC EXPO - Save the date

CCC EXPO - Save the date

CCaaS
Call Center
3CX
CCC EXPO - Save the dateWe’re excited to announce that Voxtelesys will participate in the upcoming Call and Contact Center Expo, set to take place at the iconic Las Vegas Convention Center on April 24th and 25th, 2024! This premier event is a must-attend for call and contact center professionals, offering unparalleled opportunities to network, learn about the latest trends and technologies, and gain insights from industry leaders. Learn More
Host Your 3CX with Voxtelesys

Host Your 3CX with Voxtelesys

Business Solutions
Call Center
Hosted
Host Your 3CX with VoxtelesysEffective communication is the cornerstone of success in today's fast-paced business environment. As organizations strive to enhance their telecommunication infrastructure, 3CX emerges as a leading CCaaS solution, offering flexibility, scalability, and powerful features. Partnering with Voxtelesys, a renowned name in telecommunications, provides premium hosting and support for your 3CX setup, ensuring seamless, secure, and superior business communication. Why Choose 3CX? 3CX is an open-platform, software-based PBX system that delivers voice calls, video conferencing, live chat, and SMS. It's designed for businesses of all sizes, helping to reduce communication costs, improve customer experience, and boost productivity. The Voxtelesys Advantage offers unmatched reliability, optimized performance, enhanced security, scalable solutions, and expert support, ensuring your 3CX system effectively addresses voice communications' unique demands effectively. With Voxtelesys, transitioning to or upgrading your 3CX system is seamless, providing a robust, reliable, and efficient communication system that is essential in the digital age. Hosting your 3CX with Voxtelesys gives your business a competitive edge, transforming how your organization connects, collaborates, and thrives. Learn More

Popular Blogs

 CCC EXPO - Save the date

CCC EXPO - Save the date

CCaaS
Call Center
3CX
CCC EXPO - Save the dateWe’re excited to announce that Voxtelesys will participate in the upcoming Call and Contact Center Expo, set to take place at the iconic Las Vegas Convention Center on April 24th and 25th, 2024! This premier event is a must-attend for call and contact center professionals, offering unparalleled opportunities to network, learn about the latest trends and technologies, and gain insights from industry leaders. Learn More
2023: Year in Review

2023: Year in Review

3CX
Call Center
Business Solutions
2023: Year in ReviewAs we transition into the new year, Voxtelesys is proud to share some of this past year’s accomplishments that helped define our path toward continued innovation. We look to carry the same level of growth, innovation, and advancement into 2024. Let’s dive into some of this past year’s exciting developments that have shaped Voxtelesys’ commitment to providing cutting-edge solutions. Learn More
3CX Version 20

3CX Version 20

Call Center
SMB
PBX
3CX Version 20Take advantage of our offer: No setup fees will be charged for upgrading to 3CX V20 with Hosting by Voxtelesys until March 2024! - 2 Core, 2 GB All 3CX's hosted by Voxtelesys come standard with a minimum of 2vCore and 4GB's of memory, so no worries here. - Sufficient Disk Space needed. Ensure a minimum of 5 GB of free disk space - The source list must remain unaltered for a successful upgrade; any modifications will result in failure Remove any additional source lists. If you are utilizing Microsoft Azure, verify by checking "cat /etc/apt/sources.list.d/microsoft-prod.list." Learn More
Learning Hub / Blogs / Increase in DDoS Attacks on VoIP Carrier FAQs
Increase in DDoS Attacks on VoIP Carrier
SMB
Ask the Experts
SIP/VoIP
Customer Experience
Explain It
IT Integration
Business Solutions
3CX

Attacks against VoIP services have been growing since 2013. In September 2021, DDoS attacks were launched against VoIPms, Bandwidth, Twilio, and Telnyx. A few months later, an attack was launched against UK-based VoIP service provider VoIP Unlimited. The attackers used the same malware in all these attacks. Threat actors' aim seems to be to extort money from companies. Attacks seem to be coordinated internationally.

VoIP service providers are being targeted by cybercriminals who use DDoS attacks to disrupt business by causing outages of the VoIP, Cloud, and IP Infrastructure. The signs that your Provider may be experiencing such an event; are failed calls, API and Portal latency/time-outs, and/or delayed messages until the attack stops. These attacks are more sophisticated than ever, using reflection/amplification, layering, and adaptation or "Volumetric Attack." Additionally, threat actors use of bot networks in conjunction with unsecured Services like DNS and spoofed IP addresses making the attack appear as if it came from many different locations and attack vectors. A truly global event.

A successful DDoS attack against a VoIP provider's services can significantly affect the ability to provide critical products and services, such as emergency response, medical care and other essential functions.

High-volume DDoS attacks can disrupt the entire network. Collateral damage includes shared resources such as servers, routers, switches, and other equipment. Compounding this is that many providers host their infrastructure with companies like Amazon AWS and Google GCP, which contracts allow them to blackhole the offending services and protect the network. We saw this with companies like VoIPms and Telnyx.

Attack Vectors

Mitigating DDoS attacks is not a simple accomplishment. Adding a simple filter or rate limit to your firewall won't cut it. SIP floods are usually the first attack vector used by attackers. SIP flood attacks are very effective because they overwhelm the target system without requiring much effort or money. Due to bottlenecks in databases, complex systems authentication mechanisms, media servers "running out of ports," CPUs and/or memory used to handle SIP sessions exceed available resources. Malformed SIP messages cause errors, filling up logs, or logging servers. SIP over TCP or SSL vulnerable file descriptor exhaustion attacks and rate limiting does not prevent these attacks. If you survive the SIP flood, there is a second vector. Volumetric Attacks are effective simply due to the nature of VoIP and its reliance on UDP. The Volumetric Attack reported by Bandwidth reported trillions of packets per second and bandwidth requirements above 200Gbps. Even if you can handle this, your edge upstream will have issues causing them to blackhole the destination network to protect the overall health of the upstream network.

Mitigation

The solution is simply Cloudflare, to be more specific, their Magic Transit product. Voxtelesys has no inside knowledge of what was done by the affected carriers; we can only surmise based on the effect and resolution. During the attacks in 2021, it started with VoIPms, which spoke about using an entirely cloud-based solution. We love the premise and commitment their development makes to the solution. Unfortunately, during the multiple weeks of that event, we saw epic trolling by competitors that were less than gracious to their toil. VoIPms was at a disadvantage for three reasons. First, every cloud hosting vendor has a clause that allows them to blackhole any traffic it deems destructive; unfortunately, that meant UDP. Second, any shared resource within a cloud solution is only profitable if its means of consumption can be leveraged, leaving little to no incentive for the cloud hosting provider to fix. Third, they may not have been the first, but they were the most public; carriers after them could learn from their success and failures. We then saw Bandwidth get hit. Bandwidth was the most successful mitigating out of the gate; they were prepared with DDoS Mitigation Multiple IP peerings. But in the end, they fell to the attack. The effect on Bandwidth was not a complete outage as in the case VoIPms the 200Gbps at the upstream IP peering took them down. A few weeks later, it was Telnyx's turn. Telnyx utilizes AWS anyCast network for its front-end services. As noted with VoIPms cloud provider will blackhole any traffic considered detrimental to the stability of the network. Cloudflare was the solution in all three cases; the issue lies in the vast amount of traffic sent and the saturation of their IP networks. Cloudflare mitigated the attack at the edge of their network, blocking traffic as close to the source as possible.

Conclusion

It is evident that during the attacks, carriers that relied heavily on 3rd party cloud hosting to deliver services and did not have DDOS mitigation through Cloudflare magic transit were at a disadvantage in resolving issues. It is fortunate that Bandwidth and VoIPms worked as diligently as they did to resolve the DDoS event. Due to their efforts, the rest of our industry saw our path forward. As a Carrier, we always fear the failure of our infrastructure. We never like to see others struggle, and when we see a large Carrier like Bandwidth go down, it affects more than Bandwidth customers; our customers cannot reach businesses that rely on Bandwidth. Voxtelesys never wants to earn a customer because of a DDoS attack; we want to earn a customer because we provide superior service and support.

Sources

https://www.cloudflare.com/learning/video/what-is-voip/ https://www.cisa.gov/uscert/ncas/alerts/TA13-088A https://nerdvittles.com/is-sip-trunking-safe-reliable-in-the-ddos-world/ https://blog.cloudflare.com/attacks-on-voip-providers/

VoipMS

https://www.reddit.com/r/VOIP/comments/pqwl14/what_we_know_so_far_about_the_voipms_outage_keep/ https://www.reddit.com/r/VOIP/comments/ppgdtb/is_voipms_down/ https://www.reddit.com/r/VOIP/comments/pq4c6v/voipms_down_again/ https://www.reddit.com/r/VOIP/comments/ppnuro/voipms_are_down_and_it_looks_like_it_could_be_a/ https://www.reddit.com/r/VOIP/comments/qnakmg/ddos_attacks_continue_in_november/

Bandwidth

https://www.bandwidth.com/blog/a-message-to-our-customers-and-partners/ https://www.reddit.com/r/VOIP/comments/pwhsjg/bandwidthcom_outage_3rd_day_in_a_row_927/ https://www.reddit.com/r/VOIP/comments/py0hgd/what_we_know_so_far_about_the_bandwidthcom_outage/ https://www.reddit.com/r/VOIP/comments/px7cl0/new_thread_for_another_day_of_bandwidth/ https://www.reddit.com/r/VOIP/comments/pvegbf/anyone_else_having_issues_with_bandwidthcom/

Bandwidth Resellers

US and Canadian carriers such as Crosstalk SIP, ClearlyIP, voipms, Accent, RingCentral, Twilio, DialPad, and Phone.com to name a few.

Telnyx

https://www.reddit.com/r/VOIP/comments/qw2csk/telnyx_under_continued_ddos_attacks/ https://www.reddit.com/r/VOIP/comments/qqae9x/is_telnyx_down/ https://www.reddit.com/r/VOIP/comments/qu6vp9/ugent_telnyx_update_action_required/ https://www.reddit.com/r/VOIP/comments/qrstsa/massive_props_to_telnyx/

Iristel

https://www.reddit.com/r/VOIP/comments/qumknt/iristel_major_canadian_outage/ https://www.iristel.com/news/iristel-ceo-addresses-the-cyber-attack