FBI investigates hacked FEMA phones

advertisement

The FBI is investigating more than $12,000 in calls to the Middle East and Asia that were made when a hacker broke into the Federal Emergency Management Agency's phone system 10 days ago.

The hacker made more than 400 calls on a FEMA voice-mail system in Emmitsburg, Md., on Aug. 16 and 17. FEMA said it appears that a "hole" was left open by the contractor when the voice-mail system was being upgraded. A FEMA spokesman said the gap in the system has since been closed.

"We are investigating it," FBI spokesman Jason Pack said Tuesday. "We are working with FEMA to get to the bottom of it."

One security expert called this type of hacking low-tech and "old school" — something that was popular 10 to 15 years ago.

Afghanistan, Saudi Arabia, India and Yemen are among the countries that calls were made to. Most of the calls were about three minutes long, but some were as long as 10 minutes.

Sprint caught the fraud and halted all outgoing long-distance calls from FEMA's National Emergency Training Center in Emmitsburg.

FEMA is part of the Homeland Security Department, which in 2003 put out a warning about this very vulnerability.

The voice-mail system that was hacked is new and recently was installed. It is a Private Branch Exchange, or PBX, a traditional corporate phone network that is used in thousands of companies and government offices. Many companies are moving to a higher tech version.

"In this case it's sort of embarrassing that it happened to FEMA themselves — FEMA being a child of DHS, with calls going to the Middle East," John Jackson, a St. Louis-based security consultant, said last week when he learned of the hacked system.

In 2003, Homeland Security and the FBI investigated multiple reports about private industry being breached by these types of hackers.

"This illegal activity enables unauthorized individuals anywhere in the world to communicate via compromised U.S. phone systems in a way that is difficult to trace," according to a Homeland Security Department information bulletin from June 3, 2003.

___

Associated Press writer Lara Jakes Jordan contributed to this report.

  • 1 Vote
  • Enjoy this article? Help vote it up the 'Vine.

Back To Top

Published to:

What's this?
Who's leading the conversation?
This visualization below allows you to see the impact that each user has on the current conversation. The top row contains the group of users who have had the most impact, the 2nd row the group of users who have had the 2nd most impact (et cetera). Users with similar impact are grouped together, and the average score of the group is shown to the left of the group. The author of the article is also shown on the left, in their corresponding group. Each user's score is based on the number of comments the user has made plus the number of votes their comments have received. The scores are calculated relative one another, so while their absolute value is not particularly important, their relative difference does indicate a larger difference in impact on the conversation.
0.5
{"commentId":2522377,"authorDomain":"5pq--f47-8i-spqd"}

What telephone provider is DHS using that charges $3-10 / min? VOIP is at the most $0.30 / min for consumers. An organization that makes thousands of calls per day should be way cheaper than that.

(3 min * 400 calls)/$12,000 = $10 per minute
(10 min * 400 calls)/$12,000 = $3 per minute

{"commentId":2522377,"threadId":"335953","contentId":"1767523","authorDomain":"5pq--f47-8i-spqd"}
    Reply#1 - Wed Aug 20, 2008 8:55 PM EDT
    {"commentId":2526140,"authorDomain":"MRZK"}

    Why, it's YOUR tax dollars at work, why should they care? It's just another action of this huge boondoggle of a "security" agency. The hallmark of a Republican Administration; Uncompeted services, outdated technologies, overpaid contractors, rampant cronyism, no accountability, no performance. Are you there, Brownie?

    {"commentId":2526140,"threadId":"335953","contentId":"1767523","authorDomain":"MRZK"}
      Reply#2 - Thu Aug 21, 2008 9:33 AM EDT
      {"canLink":false,"threadId":"335953","isPrivate":false}
      Leave a Comment:
      You're in Easy Mode. If you prefer, you can use XHTML Mode instead.
      As a new user, you may notice a few temporary content restrictions. Click here for more info.
      {"threadId":"335953","contentId":"1767523"}
      Start TrackingStart Tracking
      Stop TrackingStop Tracking