Identifying toll fraud

The following methods will help you tell whether your system has been targeted by toll fraud hackers:

In the Global Administrator Management Console, check the Call Log in User/Group Management daily for multiple logon attempts.
A failed logon attempt will show as “logon - Abandoned”.
A successful fraudulent logon will typically show many long distance or international calls placed subsequently from that extension.

Note:  You can have Wave automatically hang up on callers and lock out accounts after multiple failed logon attempts. See Enforcing strong password security .

Check your phone bills carefully for international numbers or long distance numbers that you do not recognize.
Watch your Trunk Monitor (available on the Diagnostics tab of the Global Administrator Management Console) for sudden bursts where every line is busy with people trying to log on.

 

Securing your system against toll fraud

Responding to toll fraud attempts