300-070 · Question #50
Which of these methods can be used to implement toll-fraud prevention?
The correct answer is D. drop conferences when no on-net party remains. Toll fraud via conferencing occurs when an external PSTN caller joins a conference bridge and then uses transfer or feature exploitation to bridge to another external expensive number - effectively using the company's conferencing resources and PSTN trunks to make free calls…
Question
Which of these methods can be used to implement toll-fraud prevention?
Options
- Adrop conferences when only two attendees remain
- Bblock on-net to on-net calls
- Cdeploy conferencing resources to only those employees that require the service
- Ddrop conferences when no on-net party remains
How the community answered
(39 responses)- A5% (2)
- B3% (1)
- C13% (5)
- D79% (31)
Explanation
Toll fraud via conferencing occurs when an external PSTN caller joins a conference bridge and then uses transfer or feature exploitation to bridge to another external expensive number - effectively using the company's conferencing resources and PSTN trunks to make free calls. Dropping a conference when no on-net (internal) party remains (D) directly mitigates this attack vector: if all internal participants leave, the conference is torn down, preventing external callers from continuing to use the bridge. Option A (drop when two attendees remain) does not address the fraud scenario. Option B (block on-net to on-net) would be disruptive. Option C (limit conferencing resources) is an access-control measure but does not prevent toll fraud from authorized users.
Topics
Community Discussion
No community discussion yet for this question.