IMS Brings VoIP into Mobile Telephony - and with It All the Security Risks

Updated: January 07, 2011

OULU, Finland & CUPERTINO, Calif.--(BUSINESS WIRE)--Codenomicon, a leading vendor of security testing solutions, announced today that Ari Takanen, CTO of Codenomicon, will give a presentation on threat assessment and proactive defense against VoIP vulnerabilities at the 3GPP ETSI Release 8 IMS Implementation Workshop. The event will take place 24-25 November 2010, at the Sophia Antipolis technology park, in southern France.

Ari Takanen will give his presentation "Recommendations for VoIP and IMS Security" on Thursday, November 25th. He will talk about Voice over IP (VoIP) security threats, focusing on the attack surface analysis and threat assessment of IMS Release 8 architecture. The presentation is based on research and numerous audits on live IMS deployments across Europe performed during early 2010. Presentation also reviews results of selected security tests using test automation technique called fuzzing, which finds and identifies both known and unknown vulnerabilities in communication technologies. The presentation is partially based on the Securing VoIP Networks book Ari Takanen wrote together with Peter Thermos.

"Modern telecommunication networks are not bug free, but as the legacy mobile networks were mostly closed, nobody could access the vulnerabilities," says Ari Takanen.

"With the introduction of IMS and VoIP, these networks are suddenly connected to the Internet and exposed to all the same threats that the open Internet is known for, and all those hacking tools that are widely available there."

Involvement with standards bodies is critical for Codenomicon, who works with 200+ communication technologies across industries. The ETSI 3GPP conference gathers leading software testing experts, and both vendor and operator executives together to share experiences and best practices around IMS implementations and deployments. The purpose for Codenomicon is to share its insight for future needs for IMS network testing, and to demonstrate the strength of its model-based testing and security validation techniques.

About Codenomicon Ltd

Codenomicon develops security and quality testing software, which allows users to quickly find and identify both known and previously unknown flaws before business-critical products or services are deployed. Their unique, targeted approach to the fuzz testing of networked and mobile applications exposes more flaws and weaknesses than any other testing platform or methodology. Companies rely on Codenomicon's solutions to mitigate threats, like Denial of Service (DoS) situations and Zero Day Attacks, which could increase liability, damage business reputation and cripple sales. Codenomicon is a member of the SDL Pro Network. For more information, visit

Featured Research
  • How UC Can Help Your Business Survive the Holidays

    The holiday season is filled with frenzy and excitement for businesses and consumers alike. Consumers prepare gift lists, compare brands and prices, and begin shopping with a vigor that is not present most other times of the year. For many businesses, the holiday season accounts for a large profit bump at the end of each year, and companies strive to exceed their goals and keep customers happy during this rush late in the year. more

  • [Infographic] Switching Phone Systems

    There are a lot of possible reasons you might want to switch to a new phone system. The old one might cost too much or be too troublesome to operate and maintain. It might not be flexible enough. It might not be reliable enough. Or it just might not have the kinds of features and capabilities that you need in today’s competitive business climate. more

  • Business VoIP on a Budget

    Voice over Internet Protocol (VoIP) phone systems represent the next innovation of telephone connection and communication by making it possible to conduct calls over a broadband internet connection, rather than an analog phone line. more

  • [Infographic] The Advantages of Unified Communications

    Did you know that according to 8x8, the tangible ROI of a unified communications solution for a 10,000-person enterprise is approximately $15.5 million? This isn't the only way unified communications can improve your business. more

  • The New 2016 Phone Systems Comparison Chart

    Check out our latest Q4 Phone Systems Comparison Chart complete with new vendors, products, and features! Our free chart compares over 40 business phone solution providers, including PBX and business VoIP systems, on over 20 performance metrics. more

Related Articles