Menu
Browse

Sangoma Technologies

Aliases: 3 aliases
Primary URL Location Industry
sangoma[.]com
Country Canada
Technology Icon
Technology
Profile

Sangoma Technologies, also known under the aliases Asterisk FreePBX and FreePBX, is a Canadian organization that develops and maintains the FreePBX open‑source PBX platform. The FreePBX system is built on the Asterisk framework and provides a web‑based interface for managing IP‑based telephone systems. Sangoma’s work focuses on delivering open‑source voice over IP software that organizations can use to build their own telephony solutions. The company’s software is used by a range of entities seeking flexible, customizable communications infrastructure. By maintaining an open‑source codebase, Sangoma supports a collaborative environment where developers can create additional modules and integrations. Its headquarters are located in Canada.

In December 2020, Sangoma experienced a Conti ransomware attack that resulted in the theft and online publication of over 26 GB of sensitive corporate data, including financial records, acquisition details, employee compensation information and legal documents. The breach involved unauthorized access to internal servers, although investigators found no evidence that customer accounts or the integrity of the FreePBX product were compromised. Conti, a ransomware group associated with Ryuk and typically distributed via TrickBot malware, exfiltrated the data before encrypting systems and later leaked the stolen material. The company advised users to change passwords as a precautionary measure despite confirming that no direct impact on customer systems had been detected. Earlier, in February 2018, a hacking campaign targeted the widely‑used FreePBX VoIP platform, exploiting vulnerabilities to install a custom web shell that gave attackers remote control of affected servers. The campaign allowed intruders to harvest call metadata, access recorded conversations and spoof calls, enabling extensive surveillance while obscuring their activities, and the exploited vulnerabilities were patched before the incident was publicly disclosed.

Incidents
Linked incidents available to members
2 incidents