Join 3,557 readers in helping fund MetaFilter (Hide)


Security and authentication on the telephone
May 10, 2010 1:30 PM   Subscribe

Two prominent, famous or 'important' people talk on the telephone. How does either the caller or recipient know they're actually speaking to the real person ?

For instance: Suppose the Prime Minister of Greece needs to speak to the Chancellor of Germany urgently. How would it be ensured that the person finally picking up the phone was really the Chancellor ? How could the Chancellor know it's really the Prime Minister on the other end ?

Would there be code words used between their personal assistants when the call is placed and received ? How would the authentication be done ?

Substitute those two with different people who may have had even less of a connection previously: maybe the CEO of BP taking a call from the Governor of one of the areas threatened by the recent oil spill ? Or Warren Buffett and the director of a company he's been rumoured to be considering buying a stake in ?

Impersonating someone's voice (especially someone in the public eye), rerouting landline phone numbers, stealing someone's mobile phone (or at least the sim) etc. don't seem insurmountable hurdles if someone was determined.

Obviously as a prank it might just be a waste of a few minutes, but in delicate discussions it could be much more than that.
posted by selton to Grab Bag (9 answers total) 6 users marked this as a favorite
 
I have worked in the past with people who worked for an A-list name. Basically, these people answered all of his calls and screened the calls for him.

When another A-lister wanted to get in touch with this A-lister, my understanding was that the second A-lister's personal assistant/secretary would contact the first A-lister's personal assistant/secretary and say, essentially, "A-lister #2 is on the line for A-lister #1."

Etc.

This was in the business/political world. It may be different in the celebrity world.
posted by dfriedman at 1:35 PM on May 10, 2010


There have been a few cases where pranks have occurred. Sarah Palin took a prank call. I think George Bush was a victim once, too...?

In reality, calls like these are arranged by subordinates on both sides, who can authenticate by pre-arranged ID systems, like Caller ID on steroids. There could also be dedicated lines involved.
posted by Cool Papa Bell at 1:37 PM on May 10, 2010


who can authenticate by pre-arranged ID systems, like Caller ID on steroids.

This is what the OP is asking about, I think. Can you elaborate?
posted by phrontist at 3:24 PM on May 10, 2010


At some point it will boil down to a public listing of some sort, like the toll-free telephone number to the corporate headquarters that's then transferred from secretaries up the chain of command.

Kind-of like, I call your public number and tell you my public number's CEO wants to talk to your public number's Governor. Would you please call me back at my publicly-listed number to confirm? It is an interesting question of distributed trust.
posted by Civil_Disobedient at 3:28 PM on May 10, 2010


Slate's Explainer explains.
posted by Xalf at 3:31 PM on May 10, 2010 [2 favorites]


It is an interesting question of distributed trust.

It's boggling how many large, reputable organizations don't have this basic security hole figured out. I have brushed off calls that, I suppose, might have been from my bank or credit card company because they phoned me and then asked me to verify my identity.

"Ma'am, you called me. I don't know who you are. I'm not giving you personal information."

As Civil says, public numbers are very useful in fixing this trust problem, and are certainly used as a single-party piece of the solution. The fact caller ID is so easily spoofed still makes this inadequate for both parties, though, which is why the call me back at this other public/verifiable number is the easiest route.

See also, seriously, Kevin Smith calls Prince.
posted by rokusan at 3:52 PM on May 10, 2010 [1 favorite]


Certain people are instantly recognizable on the phone. Once, Dan Rather called my direct line (trying to reach someone else; I don't know why he called me) and it was ABUNDANTLY CLEAR that it was actually Dan Rather. There was just no mistaking his voice, and an imitator couldn't have gotten that close. I think there are probably several public figures like that.
posted by ocherdraco at 5:19 PM on May 10, 2010 [2 favorites]


This person got Chris Rock's old cell phone number. Spike Lee and Adam Sandler called her directly; Jerry Seinfeld and Jack Nicholson had assistants do the dialing.
posted by Oriole Adams at 8:07 PM on May 10, 2010 [1 favorite]


Been there, done that. The subordinates (PAs, Principal Private Secretaries, etc.) of A-class people already know each other, at least by phone if not personally, and will chat briefly for a moment before passing the call "up" to the boss. If they're calling someone to whom they have no personal contact (say, a newly-elected prime minister), they'll first go to somebody they know personally, who will pass the call on with a confirmation that it's kosher.
posted by aqsakal at 1:14 AM on May 11, 2010 [1 favorite]


« Older Any way to open a file with ex...   |  do canadian gays get commitmen... Newer »
This thread is closed to new comments.