Skip to Content

Berks Technology Solutions Announces a Permanent Ban on Cybersecurity Platform Todyl

August 23, 2026 by
Matthew Heckman


Trust, integrity, and verified identity form the foundational core of effective cybersecurity. As an infrastructure and technology consultant, Berks Technology Solutions enforces strict defensive standards not just within our network, but across our entire procurement supply chain.

When a technology vendor utilizes malicious social engineering, identity misrepresentation, and black-hat hacker tactics to force sales interactions, they prove themselves to be an operational liability. You cannot hire a locksmith who picks your home lock just to leave a business card on your kitchen counter. It completely destroys the foundation of trust.

🚫 Immediate Permanent Ban of Todyl

Effective immediately, Berks Technology Solutions has permanently banned Todyl, including its parent companies, subsidiaries, and affiliates, from any future vendor or partner relationships.

🔍 Chronological Case Study of Corporate Misconduct

Corporate sales representatives acting on behalf of Todyl engaged in a documented, multi-incident pattern of targeted harassment and identity manipulation against our corporate inbound lines.

Incident 1: The Initial Breach (7-27-2026)

Todyl personnel utilized unauthorized caller ID manipulation (Neighbor Spoofing) to mask their outbound transmission, deliberately mirroring the exact 10-digit telephone number of an active, trusted client of Berks Technology Solutions to trick our team into answering an unsolicited B2B solicitation.

🎙️ Verified Call Transcript: Incident 1 Our infrastructure securely captured the call routing metadata, Call Detail Records (CDR), and full audio recording catching Todyl Account Executive Cerim Palislamovic red-handed:

  • [00:02] Matt (Berks Tech): "Thank you for calling Burke's Technology Solutions. This is Matt. How may I help you today?"
  • [00:08] Cerim Palislamovic (Todyl): "Hey Matt, it's Serem calling over from Total [Todyl]. Happy Monday. How's your day going so far?"
  • [00:14] Matt (Berks Tech): "Uh, really busy. I'm about to hop into a meeting. I, this is actually one of my—whatever phone number you called me from is actually one of my client's numbers, so I was like, you spoofed my client's number."
  • [00:20] Cerim Palislamovic (Todyl): "Totally fair. Oh no way. Oh man, I'm so sorry man."

Audio File Of Incident 1:  CLICK HERE 

Incident 2: Aggravated Escalation (8-4-2026)

Demonstrating complete disregard for federal communications standards, internal corporate compliance, and the explicit on-the-record warning issued in Incident 1, Todyl personnel escalated their behavior. Todyl called our corporate lines a second time, deliberately spoofing the personal cell phone number of the business owner's wife.

🎙️ Verified Call Transcript: Incident 2

The second transcript proves absolute continuity of identity, with the representative explicitly acknowledging his previous outreach:

  • [00:01] Matt (Berks Tech): "Thank you for calling Burke's Technology Solutions. My name is Matt. How may I help you today?"
  • [00:07] Cerim Palislamovic (Todyl): "Hey Maz, it's Serem calling over from Total again. Happy Tuesday. How's your morning been going so far?"
  • [00:11] Matt (Berks Tech): "OK, I'm gonna tell you right now off the bat, we are not going to be pursuing your services, especially using spoof numbers the way you guys do in violation of federal law, OK? I mean that's like a locksmith breaking into somebody's house and leaving their business card on the kitchen countertop for somebody. So you have a good day and we will be we will be sending a complaint to the FTC. You have a good day."

Audio File Of Incident 2:  CLICK HERE

⚖️ The Legal Grounding: Complete Defeat of the "Random Software" Defense

Todyl's internal corporate defense that their dialing software "merely rotates local area codes or random DIDs to convince a prospect to pick up" is a direct admission of an illegal corporate policy.

Under the federal Truth in Caller ID Act, the use of random, unassigned, or inactive DIDs to trick a consumer does not absolve a corporation of liability. The law focuses strictly on intent and deception:

  1. Deceptive Intent: Manipulating caller ID to display a local Pennsylvania signature instead of a true corporate outbound line constitutes Pretexting.
  2. Wrongful Value: The intent is to explicitly mislead the receiver to wrongfully obtain something of value—in a B2B framework, this means hijacking an engineer's billable time, attention, and corporate access under false pretenses.

💸 Fines and Financial Penalties Facing Todyl

Because caller ID spoofing for commercial solicitation is heavily regulated, Todyl faces compounding, catastrophic statutory penalties across multiple federal and state frameworks:

  • Truth in Caller ID Act Penalties: The Federal Communications Commission (FCC) enforces strict financial punishments for illegal spoofing. Violators face civil penalties of up to $10,000 per individual violation. Because each outbound call utilizing falsified metadata is treated as an independent offense, a high-volume automated dialing stack can quickly rack up millions of dollars in federal liability.
  • TCPA Robocall/Robotext Violations: Under the Telephone Consumer Protection Act (TCPA), using automated dialing platforms to target corporate lines or personal cell phones without explicit prior consent carries statutory damages ranging from $500 to $1,500 per call.
  • FTC Telemarketing Sales Rule (TSR) Fines: The Federal Trade Commission penalizes deceptive marketing practices heavily. Corporate entities utilizing abusive telemarketing routing tricks can be fined up to $51,744 per violation by the FTC.
  • State-Level Action: The Pennsylvania Office of Attorney General enforces strict Telemarketing Fraud Prevention acts. State attorneys general frequently file multi-million dollar corporate lawsuits against firms utilizing neighbor spoofing to intrude on local citizens and business owners.

🚨 Critical Compliance Risks for the MSP Ecosystem

If a cybersecurity company relies on targeted identity fraud and illegal transmission masking to hit internal sales quotas, they present a massive threat to the IT channel:

  • HIPAA & Administrative Safeguards: Under HIPAA Security Rules (45 CFR § 164.308), MSPs must continuously analyze supply chain risks. A security vendor executing social engineering attacks proves they lack internal administrative safeguards, threatening an MSP's Business Associate Agreements (BAA).
  • The Death of Trust: Trust is the only currency that matters in cybersecurity. Entrusting a client's root-level network infrastructure to a vendor that mimics black-hat hacker tactics during a routine sales pitch is a profound liability.

Evidence Preservation Notice

Berks Technology Solutions has permanently archived all forensic call routing logs, digital metadata, and audio files associated with Cerim Palislamovic’s outreach. This multi-incident file has been officially submitted to the FCC Enforcement Bureau, the FTC Bureau of Consumer Protection, and the Pennsylvania Office of Attorney General.

Dynamacore is now Berks Technology Solutions
New Name Same Great Service