Clever hack for compromised voicemail boxen

This is a pretty clever hack: get a couple of voicemail boxes from SBC and figure out what the algorithm is for assigning default passwords. Now, start war-dialing SBC customers looking for phone numbers with the default password in place. Now, change the outgoing message on those voicemail boxes to "[pause] Yes [pause] Yes."

And here's the clever bit: now place a call to Saudi Arabia or Costa Rica or whatever and use the automated system for third-party billing to your compromised number. When the computer calls your 0wned number, it will pick up and, if your pauses are just right, say "Yes" when the voice-recognition-enabled-software says, "Will you accept the charges?"

Link

Discuss