@kwriley87 wrote:
Hi all
I just stood up a new FreePBX instance and there are only 2 extensions connected to it (which are coming from the same legitimate IP) as of this moment but there are numerous entries in the CDRs that look suspicious to me and there are no "real" calls going on. I have attached a screenshot, can anyone provide any input as to what may be going on? A quick Google of ‘hi'or‘x’='x' pops up a bunch of results for a SQL injection. IPTables and Fail2Ban are currently running.
Also I've disabled my trunks for the mean time, but these entries still are popping up in my CDR logs it looks like.
Posts: 10
Participants: 4