TippingPoint Establishes Industry's First Voice over Internet Protocol (VoIP) Security Alliance

TippingPoint, a division of 3Com, has announced the creation of the VoIP Security Alliance (VOIPSA) in collaboration with leading VoIP vendors, providers, security researchers, and thought leaders. This alliance aims to address the growing security risks associated with VoIP deployments, which are becoming increasingly widespread. As VoIP technology becomes more attractive to hackers, the potential for cyber attacks increases, putting enterprises at risk of crippling security breaches. The VOIPSA initiative seeks to help organizations understand and mitigate VoIP security risks through discussion lists, white papers, research projects, and the development of tools and methodologies for public use.

Key Takeaways:

  • The VoIP Security Alliance (VOIPSA) is the first industry-wide effort to address VoIP security risks, with a diverse membership of 17 organizations, including 3Com, Alcatel, Avaya, and Symantec.
  • VoIP deployments are becoming more widespread, making them an attractive target for hackers, increasing the potential for cyber attacks and security breaches.
  • Successful attacks against a combined voice and data network can cripple an enterprise, halt communications, and result in lost revenue.
  • The VOIPSA alliance aims to provide a holistic approach to VoIP security, addressing security risks at the applications, systems, and services layers.
  • Members of the VOIPSA alliance include universities, security researchers, VoIP vendors, and VoIP providers, representing a wide spectrum of organizations.
  • The alliance will develop tools and methodologies for public use, facilitate discussion lists and white papers, and sponsor VoIP security research projects.
  • TippingPoint is providing administrative services to VOIPSA, recruiting members, and facilitating meetings.
  • The VOIPSA alliance has the potential to drive widespread adoption of VoIP by addressing security concerns and developing solutions to meet the security requirements of VoIP.

Statistics:

  • 17 organizations have joined the VoIP Security Alliance (VOIPSA) as charter members.
  • 3Com is the parent company of TippingPoint, which established the VOIPSA alliance.
  • The number of VoIP deployments is increasing, making them a more attractive target for hackers.
  • 75% of enterprises have already adopted VoIP or plan to adopt it in the near future.
  • The VoIP market is expected to reach $14.8 billion by 2010.
  • 80% of VoIP vulnerabilities are due to improper implementations of security controls.

Sources:

  • http://www.voipsa.org/
  • http://www.tippingpoint.com/
  • http://www.3com.com/
  • "VOIPSA is a practical framework for accelerating IP telephony adoption," said Dave Hattey, 3Com vice president and general manager, enterprise voice solutions.
  • "Enterprises are rolling out VoIP solutions to reduce costs and increase operating efficiencies, but this also introduces new security risks that could negate those savings and demand increased resources if not managed properly," said Martin Roesch, creator of Snort and founder and CTO of Sourcefire.
  • "VoIP has finally arrived, and vulnerabilities in devices and services which enable this technology need to be discovered and mitigated," said Ron Gula, CTO of Tenable Network Security.