I'm sure this is because of my ignorance so be easy on me.
I just installed my first IP Office 8.1 63 (aside from our shop's system) Essential Edition. Customer got an email this morning from Telco that their system got hacked. I logged in and sure enough FWD Unconditional on about 10 users was set up to international area codes (Bosnia, Serbia, Iraq, Liberia etc...). I deleted all of the forwarding. No new users were created. What I did not do in the first place was put change the Manager account and security settings default passwords. Of course they are now changed. For remote access, I set up NAT in the router so I can access the IP Office remotely.
My question is, how do you think they got in? I don't know of any way to set up forwarding on embedded mailboxes remotely. They must have logged in with Manager account?
I just installed my first IP Office 8.1 63 (aside from our shop's system) Essential Edition. Customer got an email this morning from Telco that their system got hacked. I logged in and sure enough FWD Unconditional on about 10 users was set up to international area codes (Bosnia, Serbia, Iraq, Liberia etc...). I deleted all of the forwarding. No new users were created. What I did not do in the first place was put change the Manager account and security settings default passwords. Of course they are now changed. For remote access, I set up NAT in the router so I can access the IP Office remotely.
My question is, how do you think they got in? I don't know of any way to set up forwarding on embedded mailboxes remotely. They must have logged in with Manager account?