Guest User

Ebuisiness BPO (Cult) Internal Network Specs

a guest
Oct 4th, 2015
341
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 14.00 KB | None | 0 0
  1. (This Business is a Cult - like No Other:)
  2.  
  3. Ebusinessbpo.com also known as Azspired
  4. Address: 15th Floor Cebu,
  5. I.T. Tower Cebu Business Park,
  6. Mindanao Ave, Cebu City,
  7. Cebu, Philippines 6000
  8. Phone:+1 866-583-2811
  9.  
  10.  
  11. Front End Business:
  12. Call Center BPO
  13. Customer Contact Center
  14. Host Services
  15. BPO Call Center & Consulting
  16. Real Estate Rentals & Sales
  17. 2 Resturants
  18. 4 Hotels
  19.  
  20. Back End Businesses:
  21. Human Trafficking (US,UAE, Philippines, Korea, Japan, Thailand, etc.)
  22. Prostitution
  23. Bribery of Public Officials
  24. Extortion
  25. Drug Smuggling & Trafficking (Marijuana, Meth, Hashese)
  26. Blackmail
  27. Paligamy
  28. Bootlegging Alcohol
  29. Gun Running
  30.  
  31. **********************************************************************************************
  32.  
  33.  
  34. Scott Johnson (American)
  35. President at Beachside Asia Limited.
  36. President EBUSINESS BPO -Cebu
  37. Region VII - Central Visayas, Philippines
  38. Personal Cell Phone Number:
  39. +639173015061
  40.  
  41.  
  42. Mark Johnson American-(son of Scott)
  43. Vice President of Ebusiness BPO-Cebu
  44. Personal Cell Phone Number:
  45. +639173109568
  46.  
  47. Almira Absin Cebu- Fipina (wife of Scott Johnson)
  48. Chief Operating Officer at Ebusiness EBPO -Cebu
  49. Personal Cell Phone Number:
  50. +639173083868
  51.  
  52. YouTube
  53. https://www.youtube.com/watch?v=Vnn_Sc804rw
  54.  
  55.  
  56. **************************************************************************************************
  57.  
  58. Network Notes:
  59.  
  60. Cebu Network is directly connected to Los Angelas, California via 2 MPLS Links. The 2 MPLS Links are in Redundant
  61. Fail-over mode. Both Links are Connected to 2 Cisco ASA on the Cebu, Philippines side. The current Cisco ASA configs has vulnerability issues.
  62. The Cebu Network is only protected by the external Cisco ASA devices.
  63.  
  64. The internal Network is sliced up in multiple flat space networks. (ie: 192.168.7.0/24 Network is all IT Equipment, 192.168.2.0 /24 is Call Center
  65.  
  66. Production, 192.168.8.0 /24 is Credit Card Processing Center, 192.168.4.0/ 24 is Call Center Representatives)
  67.  
  68. Cedit Card Processing is only protected by an open source "PFSense Firewall".
  69. All other flat space networks are only protected by kaspersky endpoint security 8.
  70.  
  71. Nessus Scan Report
  72. Thu, 13 Aug 2015 18:10:45 GMT
  73. Ebuisness EBPO Cisco ASA IOS Vulnerability Issues:
  74. ASA # 1: 103.231.134.5
  75. ASA # 2: 103.231.134.10
  76. ASA Software Version 9.1(2)
  77.  
  78. Object (7) - Crafted ICMP Packet Denial of Service Vulnerability CSCui77398
  79. Threat Level : EXTREME HIGH Current Workaround: None.
  80.  
  81.  
  82.  
  83. SSLv3 Padding Oracle On Downgraded Legacy Encryption in Cisco ASA Software
  84. (cisco-sa-20141015-poodle) (POODLE)
  85. Symptom: The Cisco ASA (Adaptive Security Appliance) includes a version of OpenSSL.
  86. Conditions:The default SSL configuration on all ASA software trains enables SSLv3.
  87. (reference Cisco.com bugs)
  88. https://tools.cisco.com/bugsearch/bug/CSCur23709
  89.  
  90.  
  91.  
  92. Cisco ASA TLS CBC Information Disclosure (CSCus08101)
  93. Symptom: Cisco ASA includes a version of TLS that is affected by the vulnerabilities.
  94. ALL Cisco ASA Software releases running on Cisco ASA 5500 and 5500-X Series are affected.
  95. Conditions: The Cisco ASA Software is affected by this vulnerability if a feature which use TLS is enabled.
  96. The exposure will be confined to that feature only.
  97. https://tools.cisco.com/bugsearch/bug/CSCus08101/?referring_site=bugquickviewredir
  98.  
  99.  
  100. Object (7) - Crafted ICMP Packet Denial of Service Vulnerability CSCui77398
  101. Note: should be changed to "echo" only to prevent a ping travel traversal completion and inspection across the ASA.
  102. "Raj is implementing a a fix via an ASA IOS upgrade to version 9.1
  103.  
  104.  
  105.  
  106. Object (2) - (reference the ASA vunerability matrix below). Vunerablity:
  107. Remote Access VPN Authentication Bypass Vulnerability. Resolution:
  108. Currently Remote Access VPN currently denied for outside interfaces on active and standby ASA.
  109. ASA Software configured for LAN-to-LAN IPsec VPN is not affected
  110.  
  111.  
  112.  
  113. Object (1) - Vulnerability: SQL*Net Inspection Engine Denial of Service Vulnerability.
  114. Resolution: Currently used only for internal LAN-ASDM connection.
  115.  
  116.  
  117. Object (3)  - (reference the ASA vunerability matrix below). Vulnerability: Digital Certificate HTTP Authentication Bypass Vulnerability.
  118. Resolution: Per Cisco documentation, Digital certificate authentication is disabled by default for Cisco ASDM.
  119. Digital certificate authentication for Remote outsite interfaces is disabled on active and standby ASA.
  120.  
  121.  
  122. Object (4) - (reference the ASA vunerability matrix below). Vulnerability: HTTP Deep Packet Inspection Denial of Service Vulnerability. Resolution: HTTP
  123.  
  124. Deep Packet Inspection (DPI) is currently disabled. Cisco ASA Software will not inspect DNS packets over TCP by default. DNS packet inspection not enabled.
  125.  
  126.  
  127.  
  128. Object (5) - (reference the ASA vunerability matrix below).
  129. Vulnerability: AnyConnect SSL VPN Memory Exhaustion Denial of Service Vulnerability.
  130. Resolution: Webvpn currently not enabled on standby and active ASA.
  131.  
  132.  
  133. Object (6) - (reference the ASA vunerability matrix below). Vulnerability: SSL VPN Web Portal Denial of Service Vulnerability.
  134. Resolution: SSL VPN is disabled by default. SSL VPN is disabled on active and standby ASA.
  135.  
  136.  
  137.  
  138. Cisco ASA HTTP Server Information Disclosure (CSCun78551)
  139. The attacker needs to have valid credentials, however any privilege level associated with that credential can cause the issue.
  140. For example privilege 0 or 1. Current Workaround: None.
  141. Known Fixed Software Releases: 9.2(1.100)
  142. https://tools.cisco.com/bugsearch/bug/CSCun78551/?referring_site=ss
  143.  
  144.  
  145. Cisco ASA Software SharePoint RAMFS Integrity and Lua Injection Vulnerabilities (CSCup54208 and CSCup54184)
  146. To exploit this vulnerability, an attacker must authenticate to the targeted device.
  147. This access requirement may reduce the likelihood of a successful exploit.
  148. Upgrade ASA to software version 9.3(2.6) - No other known patches or Fixes to date.
  149. https://tools.cisco.com/bugsearch/bug/CSCup54208/?referring_site=bugquickviewclick
  150.  
  151.  
  152. Cisco ASA SSL VPN Information Disclosure (CSCuq65542)
  153. A vulnerability in the SSL VPN code of Cisco ASA Software could allow an
  154. unauthenticated, remote attacker to obtain information about the Cisco
  155. ASA Software version. Disabled SSL VPN on the ASA system. Current Workaround:
  156. None. https://tools.cisco.com/bugsearch/bug/CSCuq65542/?referring_site=ss
  157.  
  158.  
  159. Cisco ASA SSL VPN Memory Blocks Exhaustion DoS (CSCuq68888)
  160. Symptoms: Crafted HTTP request may cause the 64K Blocks depletion.
  161. Conditions: webvpn needs to be enabled.
  162. https://tools.cisco.com/bugsearch/bug/CSCuq68888/?referring_site=ss
  163.  
  164. SSH Server Type and Version Information
  165. Known Fixed Releases: None Workaround: There are no workarounds.
  166. Threat Level : Low
  167.  
  168.  
  169. Nessus SYN scanner
  170. ASA's currently configured for point to MPLS and Point to VPN operation (ie: Point to Point).
  171. Threat Level : HIGH Current Workaround: None.
  172.  
  173.  
  174.  
  175. IPSEC Internet Key Exchange (IKE) Version 1 Detection
  176. (IKE-VPN) Configured only for one BGP Neighbor Only. Incoming Trafffic Filters are in effect.
  177. Threat Level : HIGH Current Workaround: None.
  178.  
  179.  
  180. Session Initiation Protocol Detection
  181. Incoming Trafffic Filters are in effect. Used only by trusted point to point sources. Threat
  182.  
  183. Level : HIGH Current Workaround: None.
  184.  
  185.  
  186. IPSEC Internet Key Exchange (IKE) Version 2 Detection
  187. (IKE-VPN) Configured only for one BGP Neighbor Only. Incoming Trafffic Filters are in effect.
  188. Level : HIGH Current Workaround: None.
  189.  
  190.  
  191. AS59366
  192. eBusinessBPO Inc.
  193. IP Addresses 256
  194. 103.231.134.0/24
  195. eBusinessBPO, Inc.
  196.  
  197.  
  198.  
  199. aut-num: AS59366
  200. as-name: EBUSINESSBPOINC-AS-AP
  201. descr: eBusinessBPO Inc.
  202. country: PH
  203. admin-c: EIA3-AP
  204. tech-c: EIA3-AP
  205. mnt-by: MAINT-EBUSINESSBPOINC-PH
  206. mnt-irt: IRT-EBUSINESSBPOINC-PH
  207. mnt-routes: MAINT-EBUSINESSBPOINC-PH
  208. changed: [email protected] 20140520
  209. source: APNIC
  210.  
  211.  
  212. mntner: MAINT-EBUSINESSBPOINC-PH
  213. descr: eBusinessBPO Inc.
  214. country: PH
  215. admin-c: EIA3-AP
  216. mnt-by: MAINT-EBUSINESSBPOINC-PH
  217. referral-by: APNIC-HM
  218. changed: [email protected] 20140513
  219. source: APNIC
  220.  
  221. 103.231.134.0/24
  222.  
  223. ASN
  224. AS59366
  225. eBusinessBPO Inc.
  226. ID: EBUSINESSBPOINC-PH
  227.  
  228. Description: eBusinessBPO, Inc.
  229. Country Philippines
  230.  
  231. Registry apnic
  232. IP Addresses in this block
  233.  
  234. 103.231.134.1
  235. 103.231.134.2
  236. 103.231.134.3
  237. 103.231.134.4
  238. 103.231.134.5
  239. 103.231.134.6
  240. 103.231.134.7
  241. 103.231.134.8
  242. 103.231.134.9
  243. 103.231.134.10
  244. 103.231.134.11
  245. 103.231.134.12
  246. 103.231.134.13
  247. 103.231.134.14
  248. 103.231.134.15
  249. 103.231.134.16
  250. 103.231.134.17
  251. 103.231.134.18
  252. 103.231.134.19
  253. 103.231.134.20
  254. 103.231.134.21
  255. 103.231.134.22
  256. 103.231.134.23
  257. 103.231.134.24
  258. 103.231.134.25
  259. 103.231.134.26
  260. 103.231.134.27
  261. 103.231.134.28
  262. 103.231.134.29
  263. 103.231.134.30
  264. 103.231.134.31
  265. 103.231.134.32
  266. 103.231.134.33
  267. 103.231.134.34
  268. 103.231.134.35
  269. 103.231.134.36
  270. 103.231.134.37
  271. 103.231.134.38
  272. 103.231.134.39
  273. 103.231.134.40
  274. 103.231.134.41
  275. 103.231.134.42
  276. 103.231.134.43
  277. 103.231.134.44
  278. 103.231.134.45
  279. 103.231.134.46
  280. 103.231.134.47
  281. 103.231.134.48
  282. 103.231.134.49
  283. 103.231.134.50
  284. 103.231.134.51
  285. 103.231.134.52
  286. 103.231.134.53
  287. 103.231.134.54
  288. 103.231.134.55
  289. 103.231.134.56
  290. 103.231.134.57
  291. 103.231.134.58
  292. 103.231.134.59
  293. 103.231.134.60
  294. 103.231.134.61
  295. 103.231.134.62
  296. 103.231.134.63
  297. 103.231.134.64
  298. 103.231.134.65
  299. 103.231.134.66
  300. 103.231.134.67
  301. 103.231.134.68
  302. 103.231.134.69
  303. 103.231.134.70
  304. 103.231.134.71
  305. 103.231.134.72
  306. 103.231.134.73
  307. 103.231.134.74
  308. 103.231.134.75
  309. 103.231.134.76
  310. 103.231.134.77
  311. 103.231.134.78
  312. 103.231.134.79
  313. 103.231.134.80
  314. 103.231.134.81
  315. 103.231.134.82
  316. 103.231.134.83
  317. 103.231.134.84
  318. 103.231.134.85
  319. 103.231.134.86
  320. 103.231.134.87
  321. 103.231.134.88
  322. 103.231.134.89
  323. 103.231.134.90
  324. 103.231.134.91
  325. 103.231.134.92
  326. 103.231.134.93
  327. 103.231.134.94
  328. 103.231.134.95
  329. 103.231.134.96
  330. 103.231.134.97
  331. 103.231.134.98
  332. 103.231.134.99
  333. 103.231.134.100
  334. 103.231.134.101
  335. 103.231.134.102
  336. 103.231.134.103
  337. 103.231.134.104
  338. 103.231.134.105
  339. 103.231.134.106
  340. 103.231.134.107
  341. 103.231.134.108
  342. 103.231.134.109
  343. 103.231.134.110
  344. 103.231.134.111
  345. 103.231.134.112
  346. 103.231.134.113
  347. 103.231.134.114
  348. 103.231.134.115
  349. 103.231.134.116
  350. 103.231.134.117
  351. 103.231.134.118
  352. 103.231.134.119
  353. 103.231.134.120
  354. 103.231.134.121
  355. 103.231.134.122
  356. 103.231.134.123
  357. 103.231.134.124
  358. 103.231.134.125
  359. 103.231.134.126
  360. 103.231.134.127
  361. 103.231.134.128
  362. 103.231.134.129
  363. 103.231.134.130
  364. 103.231.134.131
  365. 103.231.134.132
  366. 103.231.134.133
  367. 103.231.134.134
  368. 103.231.134.135
  369. 103.231.134.136
  370. 103.231.134.137
  371. 103.231.134.138
  372. 103.231.134.139
  373. 103.231.134.140
  374. 103.231.134.141
  375. 103.231.134.142
  376. 103.231.134.143
  377. 103.231.134.144
  378. 103.231.134.145
  379. 103.231.134.146
  380. 103.231.134.147
  381. 103.231.134.148
  382. 103.231.134.149
  383. 103.231.134.150
  384. 103.231.134.151
  385. 103.231.134.152
  386. 103.231.134.153
  387. 103.231.134.154
  388. 103.231.134.155
  389. 103.231.134.156
  390. 103.231.134.157
  391. 103.231.134.158
  392. 103.231.134.159
  393. 103.231.134.160
  394. 103.231.134.161
  395. 103.231.134.162
  396. 103.231.134.163
  397. 103.231.134.164
  398. 103.231.134.165
  399. 103.231.134.166
  400. 103.231.134.167
  401. 103.231.134.168
  402. 103.231.134.169
  403. 103.231.134.170
  404. 103.231.134.171
  405. 103.231.134.172
  406. 103.231.134.173
  407. 103.231.134.174
  408. 103.231.134.175
  409. 103.231.134.176
  410. 103.231.134.177
  411. 103.231.134.178
  412. 103.231.134.179
  413. 103.231.134.180
  414. 103.231.134.181
  415. 103.231.134.182
  416. 103.231.134.183
  417. 103.231.134.184
  418. 103.231.134.185
  419. 103.231.134.186
  420. 103.231.134.187
  421. 103.231.134.188
  422. 103.231.134.189
  423. 103.231.134.190
  424. 103.231.134.191
  425. 103.231.134.192
  426. 103.231.134.193
  427. 103.231.134.194
  428. 103.231.134.195
  429. 103.231.134.196
  430. 103.231.134.197
  431. 103.231.134.198
  432. 103.231.134.199
  433. 103.231.134.200
  434. 103.231.134.201
  435. 103.231.134.202
  436. 103.231.134.203
  437. 103.231.134.204
  438. 103.231.134.205
  439. 103.231.134.206
  440. 103.231.134.207
  441. 103.231.134.208
  442. 103.231.134.209
  443. 103.231.134.210
  444. 103.231.134.211
  445. 103.231.134.212
  446. 103.231.134.213
  447. 103.231.134.214
  448. 103.231.134.215
  449. 103.231.134.216
  450. 103.231.134.217
  451. 103.231.134.218
  452. 103.231.134.219
  453. 103.231.134.220
  454. 103.231.134.221
  455. 103.231.134.222
  456. 103.231.134.223
  457. 103.231.134.224
  458. 103.231.134.225
  459. 103.231.134.226
  460. 103.231.134.227
  461. 103.231.134.228
  462. 103.231.134.229
  463. 103.231.134.230
  464. 103.231.134.231
  465. 103.231.134.232
  466. 103.231.134.233
  467. 103.231.134.234
  468. 103.231.134.235
  469. 103.231.134.236
  470. 103.231.134.237
  471. 103.231.134.238
  472. 103.231.134.239
  473. 103.231.134.240
  474. 103.231.134.241
  475. 103.231.134.242
  476. 103.231.134.243
  477. 103.231.134.244
  478. 103.231.134.245
  479. 103.231.134.246
  480. 103.231.134.247
  481. 103.231.134.248
  482. 103.231.134.249
  483. 103.231.134.250
  484. 103.231.134.251
  485. 103.231.134.252
  486. 103.231.134.253
  487. 103.231.134.254
Advertisement
Add Comment
Please, Sign In to add comment