<?xml version="1.0" encoding="UTF-8" standalone="no"?><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:blogger="http://schemas.google.com/blogger/2008" xmlns:gd="http://schemas.google.com/g/2005" xmlns:georss="http://www.georss.org/georss" xmlns:openSearch="http://a9.com/-/spec/opensearchrss/1.0/" xmlns:thr="http://purl.org/syndication/thread/1.0" version="2.0"><channel><atom:id>tag:blogger.com,1999:blog-2068955506287606253</atom:id><lastBuildDate>Wed, 06 Nov 2024 03:09:54 +0000</lastBuildDate><category>news</category><category>Compliance</category><category>Malware</category><category>Authentication</category><category>Data Loss Prevention</category><category>Data Protection</category><category>encryption</category><category>Anti Malware</category><category>BYOD</category><category>Data Backup</category><category>MDM</category><category>Patch News</category><category>SIEM</category><category>SharePoint security</category><category>data encryption</category><category>DDoS</category><category>Data Replication</category><category>Email Security</category><category>Forensics</category><category>Incident Response</category><category>Log Management</category><category>Mobile Device Management</category><category>Office 365</category><category>Password Management</category><category>Sandboxing</category><category>Secure Access</category><category>Vulnerability</category><category>disaster recovery</category><category>eDiscovery</category><category>wireless security</category><category>Access Control</category><category>Application Security</category><category>Audit</category><category>Cloud Security</category><category>CryptoMiner</category><category>Cybersecurity</category><category>Data Storage</category><category>EndPoint</category><category>Firewall</category><category>Hot News</category><category>Intrusion Prevention</category><category>It security Policy</category><category>Load Balancing</category><category>Microsoft</category><category>Mobile Security</category><category>Network Security</category><category>Oracle</category><category>PCI DSS</category><category>Penetrating Testing</category><category>Penetration Testing Services</category><category>Ransomware</category><category>Risk Management</category><category>SSD</category><category>Training</category><category>WAN optimisation</category><category>access management</category><category>backup and recovery</category><category>bring your own device</category><category>cryptocurrency</category><category>data archiving</category><category>identity security</category><category>network access control</category><category>policy</category><category>security</category><category>security testing</category><category>solid state</category><category>storage device</category><category>wireless network planning</category><category>wireless networks</category><category>2.4GHz</category><category>2013 SharePoint</category><category>5GHz</category><category>AI</category><category>Advanced Threats</category><category>Analytics</category><category>Anti Phishing</category><category>Application Control</category><category>Artificial Intelligence</category><category>Audio Visual</category><category>Auto-Tiering</category><category>BYOD Policy</category><category>Backup Data</category><category>Bandwidth Optimisation</category><category>Bash bug</category><category>Change Control</category><category>Cloud Application Control</category><category>Cloud Optimisation</category><category>Cloud Security Service</category><category>Cloud storage</category><category>Cognitive Technology</category><category>Collaboration</category><category>Consultancy</category><category>Coronavirus</category><category>DLP</category><category>DNS Firewall</category><category>DNS Services</category><category>DNSSEC</category><category>Data Backup Software</category><category>Data Discovery</category><category>Data Management</category><category>Data Protection Act</category><category>Data Sovereignty</category><category>Data Testing</category><category>Deep Pack Inspection</category><category>Disaster Recovery Policy</category><category>Disaster Recovery Testing</category><category>Drobo</category><category>EU Data Protection Regulation</category><category>Email Archiving</category><category>Email Continuity</category><category>Email Encryption</category><category>Enterprise Mobility</category><category>Exchange Security</category><category>Fibre</category><category>GDPR</category><category>Google</category><category>HCI</category><category>Hackers</category><category>Hyperconverged Infrastructure</category><category>I/O caching</category><category>Intel</category><category>Internet of Things</category><category>IoT</category><category>Legal Search</category><category>Linus</category><category>MDM Policy</category><category>Microsoft SQL</category><category>Mobile Device Manager</category><category>Mobile VPN</category><category>Mobile Workforce Management</category><category>Monero</category><category>NAC</category><category>Network DR</category><category>Network High availability</category><category>Network Segmentation</category><category>Newsletter</category><category>OS X</category><category>Oracle Application Support</category><category>Oracle Database Support</category><category>Oracle Managed Service</category><category>Oracle Security</category><category>PCI DSS 3.1</category><category>Password Security</category><category>Patch Management</category><category>Patching</category><category>Phishing</category><category>Privileged Users</category><category>Professional Services</category><category>Promotions</category><category>Proxy</category><category>QoS</category><category>Randsomware</category><category>Reporting</category><category>SAN arrays</category><category>SAS</category><category>SCSI</category><category>SP2013</category><category>SQL Security</category><category>SSL</category><category>Security Intelligence</category><category>Security Policy</category><category>Security Vulnerability</category><category>Segmentation</category><category>SharePoint 2013</category><category>SharePoint Access Control</category><category>SharePoint Document Encryption</category><category>SharePoint Privacy</category><category>SharePoint encryption</category><category>Shellshock</category><category>Small Business Data Backup</category><category>Snaphot</category><category>Software Defined Storage</category><category>Spectre</category><category>Storage Controllers</category><category>Storage Load-Balancing</category><category>Storage System</category><category>TLS</category><category>Testing</category><category>Thin Provisioning</category><category>Threat Detection</category><category>Threat Modelling</category><category>VMware Protection</category><category>Volume Mirroring</category><category>Vulnerability Assessment</category><category>Vulnerability Assessment Services</category><category>Vulnerability Management</category><category>WAN optimization</category><category>WAN redundancy</category><category>Workforce Mobility</category><category>Workload Mobikity</category><category>amazon S3</category><category>anti virus</category><category>application monitoring</category><category>bBotnet</category><category>botnet</category><category>centralised storage</category><category>cloud backup</category><category>cloud wifi</category><category>data access monitoring</category><category>enterprise storage</category><category>event viewer</category><category>events</category><category>file encryption</category><category>flash drives</category><category>full disk encryption</category><category>guest wifi</category><category>hacking</category><category>identity</category><category>information security</category><category>information security management</category><category>juniper firewall</category><category>juniper networks</category><category>juniper router</category><category>juniper security</category><category>juniper solutions</category><category>juniper srx</category><category>juniper training</category><category>junos pulse</category><category>mail encryption</category><category>mobile device security</category><category>recovery strategies</category><category>secure documents</category><category>social networks</category><category>social wifi</category><category>storage capacity</category><category>storage hypervisor</category><category>storage hypervizor</category><category>storage performance</category><category>unified data protection</category><category>virtual backup</category><category>what is file encryption</category><category>wireless managed service</category><category>wireless networking</category><title>SecureNet Consulting</title><description>BLOG: IT Infrastructure | Cyber Security  &amp;amp; Data Protection |
Disaster Recovery |
Data Management | 
Data Storage
</description><link>http://www.securenetconsulting.co.uk/</link><managingEditor>noreply@blogger.com (Unknown)</managingEditor><generator>Blogger</generator><openSearch:totalResults>79</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><xhtml:meta content="noindex" name="robots" xmlns:xhtml="http://www.w3.org/1999/xhtml"/><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-9051919406174159458</guid><pubDate>Tue, 13 Dec 2022 12:20:00 +0000</pubDate><atom:updated>2022-12-13T12:20:58.033+00:00</atom:updated><title>How mobile 4G LTE internet can provide your Wi-Fi solution</title><description>&lt;h2 class="heading heading--secondary" style="text-align: left;"&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjgoR8-EBwQHh8nROBai-0wEsqD0m5ReWsUIJeEUVBdzUg7Nq5jKMOFY6-8eQgpjxA4Q_K7Y9Bq3SvPGcbHwuC8RbxmvTmhG2cpouh15jiGREXdg-zocKDG0LOrkfMsxkkusS4Yr-RfEh6wFD2qc38FPwdUsBXlChN39KhjEACVWYnDDpitoWnrSfk5dA/s500/4G%20LTE.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="278" data-original-width="500" height="178" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjgoR8-EBwQHh8nROBai-0wEsqD0m5ReWsUIJeEUVBdzUg7Nq5jKMOFY6-8eQgpjxA4Q_K7Y9Bq3SvPGcbHwuC8RbxmvTmhG2cpouh15jiGREXdg-zocKDG0LOrkfMsxkkusS4Yr-RfEh6wFD2qc38FPwdUsBXlChN39KhjEACVWYnDDpitoWnrSfk5dA/s320/4G%20LTE.png" width="320"&gt;&lt;/a&gt;How mobile 4G LTE internet can provide your Wi‑Fi solution&lt;/div&gt;&lt;/h2&gt;&lt;p&gt;Internet Service Provider (ISP) speed too low? Don’t worry you can still get online – 4G or 5G can be the answer&lt;/p&gt;&lt;div class="section-title"&gt;
&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;a href="http://www.securenetconsulting.co.uk/2022/12/how-mobile-4g-lte-internet-can-provide.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2022/12/how-mobile-4g-lte-internet-can-provide.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjgoR8-EBwQHh8nROBai-0wEsqD0m5ReWsUIJeEUVBdzUg7Nq5jKMOFY6-8eQgpjxA4Q_K7Y9Bq3SvPGcbHwuC8RbxmvTmhG2cpouh15jiGREXdg-zocKDG0LOrkfMsxkkusS4Yr-RfEh6wFD2qc38FPwdUsBXlChN39KhjEACVWYnDDpitoWnrSfk5dA/s72-c/4G%20LTE.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-111148047509396862</guid><pubDate>Tue, 13 Dec 2022 12:12:00 +0000</pubDate><atom:updated>2022-12-13T12:12:21.226+00:00</atom:updated><title>Upgrading to managed switches will give you the network you want</title><description>
&lt;section class="section section--mid" id="Case-Study-Intro"&gt;&lt;div class="container container--narrow"&gt;&lt;div class="grid"&gt;&lt;div class="module"&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;&lt;h1 style="text-align: left;"&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEijORUx3HP44GN-SnQZ15BX6kepA4bFHDRkacbaWsKj_t1oJaecbfZC5Ym6ixfTIujgxbhouCRZaqlft0paULbHsb1hpW7wEaWcGvGgoFxjQ303_B5BCXhEgUMAW3jmYortyM7zAgO7yzHFCRK4jdHGXKF1a7QgnTJvFeUJs4MZBGXIPqCf7b3fkRgCrA/s617/managed%20switch.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="129" data-original-width="617" height="67" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEijORUx3HP44GN-SnQZ15BX6kepA4bFHDRkacbaWsKj_t1oJaecbfZC5Ym6ixfTIujgxbhouCRZaqlft0paULbHsb1hpW7wEaWcGvGgoFxjQ303_B5BCXhEgUMAW3jmYortyM7zAgO7yzHFCRK4jdHGXKF1a7QgnTJvFeUJs4MZBGXIPqCf7b3fkRgCrA/s320/managed%20switch.png" width="320"&gt;&lt;/a&gt;Upgrading to managed switches will give you the network you want &lt;/div&gt;&lt;/h1&gt;&lt;h1 style="text-align: left;"&gt;&lt;span&gt;&lt;/span&gt;&lt;/h1&gt;&lt;/section&gt;&lt;a href="http://www.securenetconsulting.co.uk/2022/12/upgrading-to-managed-switches-will-give.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2022/12/upgrading-to-managed-switches-will-give.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEijORUx3HP44GN-SnQZ15BX6kepA4bFHDRkacbaWsKj_t1oJaecbfZC5Ym6ixfTIujgxbhouCRZaqlft0paULbHsb1hpW7wEaWcGvGgoFxjQ303_B5BCXhEgUMAW3jmYortyM7zAgO7yzHFCRK4jdHGXKF1a7QgnTJvFeUJs4MZBGXIPqCf7b3fkRgCrA/s72-c/managed%20switch.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-3480788332020137139</guid><pubDate>Tue, 29 Mar 2022 14:11:00 +0000</pubDate><atom:updated>2022-03-29T15:13:05.014+01:00</atom:updated><title>Best mobile hotspot &amp; usb c multiport adapter - essential mobile warrior kit</title><description>&lt;p style="text-align: left;"&gt;&lt;/p&gt;&lt;h1 style="text-align: justify;"&gt;&lt;span style="font-size: small;"&gt;&lt;span style="color: #0b5394;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: small;"&gt;&lt;span style="color: #0b5394;"&gt;&lt;b&gt;Essential mobile warrior kit - we look at some of the best and much needed mobile hotspot &amp;amp; usb-c multiport adapter gadgets to keep you connected.&lt;br&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;div style="text-align: justify;"&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiqvm4o_EVEc8_m6p7lIbz7Zb6EA99mzr7UTECAzBfP0eDt7DjlWxElfMVIY2GJxTWkYTVo1GmcTClwPzMEafWqv0zEtx-AuMgbjd3nz63GpOvd89cPVj5EakxCF4L1jAXlw0Vq907lNQUwi13njPbNpk9YorGc4xE7Xqa2rSA9wRizg1MjgwGNddliUw/s1873/D-link%20DUB-M610%20and%20DWR-932.jpg" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="1305" data-original-width="1873" height="223" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiqvm4o_EVEc8_m6p7lIbz7Zb6EA99mzr7UTECAzBfP0eDt7DjlWxElfMVIY2GJxTWkYTVo1GmcTClwPzMEafWqv0zEtx-AuMgbjd3nz63GpOvd89cPVj5EakxCF4L1jAXlw0Vq907lNQUwi13njPbNpk9YorGc4xE7Xqa2rSA9wRizg1MjgwGNddliUw/s320/D-link%20DUB-M610%20and%20DWR-932.jpg" width="320"&gt;&lt;/a&gt;&lt;span style="font-weight: normal;"&gt;&lt;span style="font-size: small;"&gt;&lt;span style="color: #0b5394;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: justify;"&gt;&lt;span style="font-size: small;"&gt;Back on the road again - indispensable mobile hotspot &amp;amp; multi-hub
port adaptor&lt;/span&gt;&lt;span style="font-size: small;"&gt;. Never be disconnected, ever again.&lt;/span&gt;&lt;br&gt;&lt;/div&gt;&lt;/h1&gt;&lt;div style="text-align: justify;"&gt;&lt;span style="color: #0b5394;"&gt;&lt;/span&gt;
&lt;/div&gt;&lt;span&gt;&lt;/span&gt;&lt;a href="http://www.securenetconsulting.co.uk/2022/03/best-mobile-hotspot-usb-c-multiport.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2022/03/best-mobile-hotspot-usb-c-multiport.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiqvm4o_EVEc8_m6p7lIbz7Zb6EA99mzr7UTECAzBfP0eDt7DjlWxElfMVIY2GJxTWkYTVo1GmcTClwPzMEafWqv0zEtx-AuMgbjd3nz63GpOvd89cPVj5EakxCF4L1jAXlw0Vq907lNQUwi13njPbNpk9YorGc4xE7Xqa2rSA9wRizg1MjgwGNddliUw/s72-c/D-link%20DUB-M610%20and%20DWR-932.jpg" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-4798885578894000244</guid><pubDate>Tue, 06 Oct 2020 12:01:00 +0000</pubDate><atom:updated>2020-10-06T13:11:27.752+01:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Cybersecurity</category><category domain="http://www.blogger.com/atom/ns#">HCI</category><category domain="http://www.blogger.com/atom/ns#">Hyperconverged Infrastructure</category><category domain="http://www.blogger.com/atom/ns#">Workload Mobikity</category><title>Hyperconverged Infrastructure: HCI benefits for workload mobility</title><description>&lt;p style="line-height: 115%; margin-bottom: 0.35cm;"&gt;
&lt;/p&gt;&lt;p style="line-height: 115%; margin-bottom: 0.35cm;"&gt;&lt;span style="font-family: Calibri, serif;"&gt;&lt;span style="font-size: x-small;"&gt;&lt;span lang="en"&gt;&lt;b&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;span style="font-family: Calibri, serif;"&gt;&lt;span style="font-size: x-small;"&gt;&lt;span lang="en"&gt;&lt;b&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiZsx-kwHbC0iYsmeLZD9sTzDrvOOFlYS5MhYB8xOPUkI-hHJBTmQNFNd5hB0kOvutyanxLl8rAnAsulxs6DPMMSTjC5FLjxqe4G71-bbzp6rLSzw2UmeZ46dhzhhwxPRZsxvhDKLDQfYph/s700/Hyper-Converged+Infrastructure.png" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="400" data-original-width="700" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiZsx-kwHbC0iYsmeLZD9sTzDrvOOFlYS5MhYB8xOPUkI-hHJBTmQNFNd5hB0kOvutyanxLl8rAnAsulxs6DPMMSTjC5FLjxqe4G71-bbzp6rLSzw2UmeZ46dhzhhwxPRZsxvhDKLDQfYph/s320/Hyper-Converged+Infrastructure.png" width="320"&gt;&lt;/a&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style="font-family: Calibri, serif;"&gt;&lt;span style="font-size: x-small;"&gt;&lt;span lang="en"&gt;&lt;b&gt;&lt;span style="font-family: inherit;"&gt;&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;p&gt;&lt;/p&gt;&lt;h1 style="text-align: left;"&gt;&lt;span style="font-family: Calibri, serif; font-size: large;"&gt;&lt;span&gt;&lt;span lang="en"&gt;&lt;b&gt;&lt;span style="font-family: inherit;"&gt;Can
HCI ease Hybrid IT (on-premise and cloud / multi-cloud) deployments
and workload mobility&lt;/span&gt;&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/h1&gt;&lt;span style="font-family: inherit;"&gt;
&lt;/span&gt;&lt;p style="line-height: 115%; margin-bottom: 0.35cm;"&gt;&lt;span style="font-family: inherit; font-size: small;"&gt;&lt;span&gt;&lt;span&gt;&lt;span lang="en"&gt;&lt;span style="font-weight: normal;"&gt;Organisations
thinking about adopting or migrating to the cloud or are already
using cloud need to think ahead to the future - for example
optimising workloads across your hybrid environment (on-premise and
external cloud systems). Enterprises already on the cloud model cite
a number of concerns around the longevity,  for example high long
term costs of public cloud, coupled with the advancement of
technology such as cloud-as-a-services for on-premise datacentres,
have triggered strong interest in traditional hybrid and multi-cloud
cloud alternatives. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="line-height: 115%; margin-bottom: 0.35cm;"&gt;&lt;span style="color: #444444; font-size: small;"&gt;&lt;span style="font-family: inherit;"&gt;&lt;span&gt;&lt;span&gt;&lt;span lang="en"&gt;&lt;span style="font-weight: normal;"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;a href="http://www.securenetconsulting.co.uk/2020/10/hyperconverged-infrastructure-hci.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2020/10/hyperconverged-infrastructure-hci.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiZsx-kwHbC0iYsmeLZD9sTzDrvOOFlYS5MhYB8xOPUkI-hHJBTmQNFNd5hB0kOvutyanxLl8rAnAsulxs6DPMMSTjC5FLjxqe4G71-bbzp6rLSzw2UmeZ46dhzhhwxPRZsxvhDKLDQfYph/s72-c/Hyper-Converged+Infrastructure.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-577159549665279391</guid><pubDate>Tue, 29 Sep 2020 14:45:00 +0000</pubDate><atom:updated>2020-09-29T16:31:41.174+01:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">AI</category><category domain="http://www.blogger.com/atom/ns#">Artificial Intelligence</category><category domain="http://www.blogger.com/atom/ns#">Cybersecurity</category><title>The need for speed: why you need to arm your teams with AI now</title><description>&lt;p&gt;&lt;/p&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjei3EKYd0qhleZ3jBhficEUXVnrngyg0ZlDsy_4w9_BvO1YZ0_CbXpPovUxSgQc9sZtIfAUP9s9H3-p7z594jBC3AJEpcCJE5IsWRcF78rKEhMsPiOuUCzQk3oO6uuIVpRcYV7qu_WlgOB/s640/AI+cyber+security.png" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;span style="font-size: large;"&gt;&lt;img border="0" data-original-height="360" data-original-width="640" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjei3EKYd0qhleZ3jBhficEUXVnrngyg0ZlDsy_4w9_BvO1YZ0_CbXpPovUxSgQc9sZtIfAUP9s9H3-p7z594jBC3AJEpcCJE5IsWRcF78rKEhMsPiOuUCzQk3oO6uuIVpRcYV7qu_WlgOB/s320/AI+cyber+security.png" width="320"&gt;&lt;/span&gt;&lt;/a&gt;&lt;span style="color: #38761d; font-size: large;"&gt;&lt;a href="https://insight.scmagazineuk.com/the-need-for-speed-why-you-need-to-arm-your-teams-with-ai-now" target="_blank"&gt;Artificial Intelligence as part of your cyber-security strategy&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;p&gt;&lt;br&gt;&lt;/p&gt;&lt;span&gt;&lt;/span&gt;&lt;a href="http://www.securenetconsulting.co.uk/2020/09/the-need-for-speed-why-you-need-to-arm.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2020/09/the-need-for-speed-why-you-need-to-arm.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjei3EKYd0qhleZ3jBhficEUXVnrngyg0ZlDsy_4w9_BvO1YZ0_CbXpPovUxSgQc9sZtIfAUP9s9H3-p7z594jBC3AJEpcCJE5IsWRcF78rKEhMsPiOuUCzQk3oO6uuIVpRcYV7qu_WlgOB/s72-c/AI+cyber+security.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-8990638593003632560</guid><pubDate>Thu, 05 Mar 2020 14:29:00 +0000</pubDate><atom:updated>2020-09-29T15:39:39.340+01:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">disaster recovery</category><title>Choosing the right disaster recovery for your business</title><description>&lt;div class="separator" style="clear: both; text-align: left;"&gt;
&lt;a href="https://www.computerweekly.com/feature/Choosing-the-right-disaster-recovery-for-your-business" target="_blank"&gt;&lt;img border="0" data-original-height="400" data-original-width="1200" height="212" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjAnSfbi5R3roRKR8Ow_cIi7nZIPNzo5xJARyHiZMReFziIf5Z5cDAjR6th3_ZKDtN6f8MEmD4Camq4iLJjAkP5C6cdZwPPQXapn5mewAP7cH6CVdVr-h5KyaVpn2cTQpsl0H4Fdd9TZ2Uf/s640/disasterrecovery.jpg" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;h1 class="main-article-title" style="text-align: left;"&gt;
&lt;span style="font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif;"&gt;&lt;a href="https://www.computerweekly.com/feature/Choosing-the-right-disaster-recovery-for-your-business" target="_blank"&gt;Choosing the right disaster recovery for your business&lt;/a&gt;&lt;/span&gt;&lt;/h1&gt;
Follow link to Computer Weekly article&lt;br /&gt;
&lt;a href="https://www.computerweekly.com/feature/Choosing-the-right-disaster-recovery-for-your-business"&gt;https://www.computerweekly.com/feature/Choosing-the-right-disaster-recovery-for-your-business&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;h1 class="main-article-title" style="text-align: left;"&gt;
&lt;span style="background-color: white; color: #999999; font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif; font-size: 16px; font-weight: 400;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;By&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="background-color: white; color: #999999; font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif; font-size: 16px; font-weight: 400;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;&lt;a href="https://plus.google.com/u/0/116898209106255177774/posts" style="background: transparent; color: #729c0b; text-decoration-line: none;" target="_blank"&gt;Paul Rummery&lt;/a&gt;, Securenet Consulting&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/h1&gt;
</description><link>http://www.securenetconsulting.co.uk/2020/02/choosing-right-disaster-recovery-for.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjAnSfbi5R3roRKR8Ow_cIi7nZIPNzo5xJARyHiZMReFziIf5Z5cDAjR6th3_ZKDtN6f8MEmD4Camq4iLJjAkP5C6cdZwPPQXapn5mewAP7cH6CVdVr-h5KyaVpn2cTQpsl0H4Fdd9TZ2Uf/s72-c/disasterrecovery.jpg" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-8191446954641945559</guid><pubDate>Thu, 05 Mar 2020 14:22:00 +0000</pubDate><atom:updated>2020-03-05T14:27:01.429+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Anti Malware</category><category domain="http://www.blogger.com/atom/ns#">Authentication</category><category domain="http://www.blogger.com/atom/ns#">Collaboration</category><category domain="http://www.blogger.com/atom/ns#">Coronavirus</category><category domain="http://www.blogger.com/atom/ns#">Data Backup</category><category domain="http://www.blogger.com/atom/ns#">EndPoint</category><category domain="http://www.blogger.com/atom/ns#">MDM</category><category domain="http://www.blogger.com/atom/ns#">Mobile Device Management</category><category domain="http://www.blogger.com/atom/ns#">Secure Access</category><title>Coronavirus: Remote Working</title><description>COVID-19 is a new virus that has not previously been observed in humans. According to data compiled by &lt;a href="https://systems.jhu.edu/"&gt;Johns Hopkins CSSE&lt;/a&gt;, there are currently &lt;a href="https://www.arcgis.com/apps/opsdashboard/index.html#/bda7594740fd40299423467b48e9ecf6"&gt;over 91,000 confirmed cases across the globe&lt;/a&gt;.&lt;br /&gt;
The virus is now also disrupting businesses, who are reconsidering how they do business and the increasing value of remote work. &lt;br /&gt;
&lt;br /&gt;
&lt;a href="https://www.businessinsider.com/google-dublin-coronavirus-work-from-home-twitter-coinbase-2020-3?op=1"&gt;Google and Twitter&lt;/a&gt; told thousands of their employees to work from home as a precautionary measure to help stop the spread of the virus. Analysts believe that the &lt;a href="https://www.wsj.com/articles/covid-19-may-have-you-working-at-home-11583279399"&gt;coronavirus&lt;/a&gt; could lead to employee absenteeism as high as 40 percent, with severe operational consequences. In heavily infected areas, numerous workplaces have shut down altogether and public transportation is being avoided. &lt;br /&gt;
&lt;br /&gt;
IT leaders must seriously think about the ability of their employees to productively work from home during an emergency. &lt;br /&gt;
&lt;br /&gt;
Many will already have a business continuity plan in place, with tried and tested technologies and processes in place for just such an event. If not, its not too late to act and implement a working solution. Below we will cover some of these proven solutions, taking into account data security and systems that actual help improve business efficiency and savings on the long term bottom line.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjrbGqBR_2hdjIaVPd3usLQj-V1wcAz1-HbWY8YulLfWkf0IU84sVSt6xOSwKBpxZElpkDbVrj8CD71CdXidwpJ0KBrbqJMvlTUzgZQJNN48cHt4Ci107togunfeqH-jsBUfvJ8rLxvsKwO/s1600/home+working.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="668" data-original-width="1000" height="266" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjrbGqBR_2hdjIaVPd3usLQj-V1wcAz1-HbWY8YulLfWkf0IU84sVSt6xOSwKBpxZElpkDbVrj8CD71CdXidwpJ0KBrbqJMvlTUzgZQJNN48cHt4Ci107togunfeqH-jsBUfvJ8rLxvsKwO/s400/home+working.png" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
Many of these solutions are not new, in fact you can provide your employees with secure access to their work files from home through a simple, familiar experience from their laptops, mobile devices, or a web interface using home internet access – mimicking the experience they have in the office.&lt;br /&gt;
&lt;br /&gt;
Secure enterprise solutions make users more productive and gives IT complete control over business content to ensure security, maintain compliance, and enable BYOD. &lt;br /&gt;
&lt;br /&gt;
Many of the solutions can be deployed and managed centrally either on-premise or private cloud.&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Collaboration &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;b&gt;&lt;br /&gt;&lt;/b&gt;
&lt;b&gt;File sharing&lt;/b&gt; - Your users want to access their data from wherever they are and they want to share that data with their peers in a simple manner. This is causing many organisations to struggle with security and IT compliance challenges as multi-device users are turning to consumer file sync services (Google, Box, DropBox...). Additionally, the move to flexible working is causing users to become frustrated with the complexity of accessing existing file storage locations from tablets, smartphones, and Macs.&lt;br /&gt;
The problem is, how do you deliver highly flexible, secure data access and sharing in a cost effective way? &lt;br /&gt;
File sync and share services are adapting to not only protect company data but to aid in remote workplace collaboration. Some file sync and share tools now provide users with tools to preview and edit files in-browser, search and find specific company documents and versions, and keep all employees on the same version of a document. &lt;br /&gt;
&lt;br /&gt;
File sync and share features are now part of many cloud-based endpoint data backup solutions.&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt; Endpoint backup &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
Centrally control the of backup data on endpoint devices (or laptops, smart phones and tablets). Access file, data storage and business applications either residing on your on-premise or cloud-based platforms.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;File services anywhere&lt;/b&gt; – Organisations are beginning to see the workday less as a clock-in/clock-out office environment, and have adopted an environment that supports the various schedules and lifestyles of their employees. With secure file-sync and share, employees are no longer constrained to a single corporate-owned device to be productive. Files can be accessed and shared with anyone from any Windows, iOS, or Linux device. Users enjoy desktop access to any number of cloud-based folders and files, helping enterprises maximise productivity regardless of the physical storage on users’ laptops.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Secure file backup&lt;/b&gt; – File transfer with password, expiry times, download limits, and tracking. Data is backed up / replicated using built-in VPN, providing AES-256 encrypted access to the enterprise’s private cloud that no third party can access. Work from home or from the coffee shop: your files are protected, to address governance and compliance requirements.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Data loss prevention and disaster recovery&lt;/b&gt; – When corporate data is centrally stored, it’s better protected against data leakage. This includes data lost to a cyber attack, employee error, or a lost or stolen device. With an enterprise-grade file sync and share solution, sensitive corporate data is kept secure and protected.&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Secure access &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt; Remote work devices -&amp;nbsp;&lt;/b&gt;There are two major considerations when it comes to devices. Either a) workers can use their own, which is a bigger security risk, but quite a bit cheaper and faster to deploy if their devices are up to the task, or b) a company can provide the devices that are needed. Given that the prevalence of Shadow IT (workers using unsanctioned, unofficial apps to get their work done) is generally higher than most enterprise IT departments are willing to admit -- meaning that company data is already on many personal devices anyway. &lt;br /&gt;
&lt;br /&gt;
Many IT solutions will have inherent data security features built-in, which will actually serve to improve and mitigate otherwise risky traditional or legacy systems that in-office systems might still be using. The solutions we cover can either act as a secure layer over existing systems or once implemented, serve to replace and lend to a better, more efficient and secure way of working. &lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: Courier New, Courier, monospace; font-size: large;"&gt;&amp;gt; Manage endpoint compliance &lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Courier New, Courier, monospace; font-size: large;"&gt;&amp;gt; Provide a seamless user experience and reduce user support &lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: Courier New, Courier, monospace; font-size: large;"&gt;&amp;gt; Contextual Security and zero trust&lt;/span&gt;&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;b&gt;Secure access control –&lt;/b&gt; In general, the worker should never do any work for the organization without the VPN on their device(s) being turned on. Typically this is provided by a &lt;a href="https://www.zdnet.com/article/vpn-services-the-ultimate-guide-to-protecting-your-data-on-the-internet/"&gt;virtual private network (VPN)&lt;/a&gt; solution, which sits on the PC, laptop, or mobile device and creates an encrypted network connection that makes it safe for the worker to access IT resources within the organisation and elsewhere on the Internet or other networks. To protect application servers and other resources from unauthorised access, organisations turn to strong authentication and authorisation. This requires the implementation of identity-based access controls.&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
Identity and Access Management (IAM) solutions help ensure this necessary asset protection while certifying regulatory compliance. This key technique is used to determine whether access should be granted to each individual client. These solutions must also support custom and standardised internal applications as well as Software-as-a-Service (SaaS) applications. &lt;br /&gt;
&lt;br /&gt;
With built-in features like VPN, single sign-on and two factor authentication. Gateways can provide secure access to Virtual Apps and Desktops applications, giving users access to all applications and virtual desktops through a single URL. Many gateway solutions can be integrated with combined MDM solutions (Mobile Device Management) which allow a certain level of access to data from mobile devices (see below). IT administrators can apply contextual security policies to control access to applications based on the state and posture of the end user device, to strengthen access before the user reaches the backend resource.&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Two Factor / Mutli Factor Authentication&lt;/b&gt; - Single factor authentication such as password authentication is in many cases no longer considered as secure, as users like to use "easy-to-remember" and hence "easy-to-guess" passwords.&lt;br /&gt;
&lt;br /&gt;
Cyber attackers use countless techniques to get the information they need to hack into your enterprise applications. But nearly all of them ultimately break in using the same method – they take over legitimate user accounts using stolen or cracked user IDs and passwords.&lt;br /&gt;
&lt;br /&gt;
Provide transparent two / multi factor authentication to keep hackers out while granting easy, friction-less access to legitimate users. 2FA fobs (hardware devices that provide PINs to further authenticate users) are inexpensive now. Workers can also use their mobile devices as a 2FA authenticator.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Mobile access&lt;/b&gt; – Secure Mobile app completes the continuum of simple user access, with full data control from any Android, iOS or Windows mobile device. Even if users use personal smartphones to work, the centralised Mobile Device Management (MDM) platform ensures complete data privacy. Access gateway and MDM solutions deliver data protection features; &lt;br /&gt;
&lt;br /&gt;
* &lt;b&gt;Enable easy on-boarding of devices&lt;/b&gt;, but granular control of access &lt;br /&gt;
* &lt;b&gt;Prevent unauthorised devices&lt;/b&gt; connecting and copying data &lt;br /&gt;
* &lt;b&gt;Control the use of corporate and non-corporate apps&lt;/b&gt; (shadow IT) &lt;br /&gt;
* &lt;b&gt;Containerise &lt;/b&gt;corporate apps and data, &lt;br /&gt;
* &lt;b&gt;Controls and blocks types of files,&lt;/b&gt; of a certain size or content. Assigns limits copying data, print, screen shot etc. &lt;br /&gt;
* &lt;b&gt;Remote wipe &lt;/b&gt;can selectively delete only corporate app data (users personal data not touched). &lt;br /&gt;
* &lt;b&gt;Troubleshoot&lt;/b&gt; device and app issues. &lt;br /&gt;
* &lt;b&gt;Kill Pill&lt;/b&gt;: Built-in option 'Kill Pill' allows remote clearing of entire contents of device disk / container and block or change the password. &lt;br /&gt;
* &lt;b&gt;DCR &lt;/b&gt;- Data Content Reporting gives you the ability to remotely inventory and make a detailed verification of the contents of USB drives.&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Network efficiency and uptime &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
Many enterprise organisations will have global office with thousands of employees. Moving a large volume of people to remote working and access will present performance challenges to backend systems serving the applications and data in an efficient and user friendly manner. For example Video traffic is accelerating, and for home working, video meetings are key within team, suppliers, partners and customers. You must ensure seamless, high-quality delivery. Scale globally, but optimise to ensure the highest possible customer satisfaction.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Load-balancing and deduplication/network optimisation&lt;/b&gt;&amp;nbsp;- technologies, which means your users don’t need high-powered home modems and internet connections to work productively. &lt;br /&gt;
&lt;br /&gt;
Whether you host your applications and content on premises, in the cloud or in content delivery networks (CDNs), Intelligent Traffic Management allows you to globally load balance all traffic, dynamically optimizing the user experience and lowering service costs. Using real-time machine learning to direct user requests to the most suitable content source.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Deliver VDI (Virtual Desk Top) experience &lt;/b&gt;- Instead of building and operating your own infrastructure, you can simply deploy desktops on demand with a DaaS solution (Desktop-As-a-service). With DaaS, you manage your images and users, while the infrastructure is managed for you by a service provider, on a pay-as-you-go basis. &lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Anti scam, malware and phising attacks &lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
Coronavirus scams are popping up everywhere. As you can imagine, there are a lot of email messages and websites sharing information about COVID-19. Because of this overwhelming amount of information that you will be getting through email and other channels, it’s a good time to brush up on phishing and malware attacks. Criminals always find opportunity in tragedy, and this is no different. So far, we've seen a handful of attackers posing as authorities and using the Coronavirus as the basis of a scam. &lt;br /&gt;
&lt;br /&gt;
Some of the most common scams are fake cures and fake fundraising messages. &lt;a href="https://www.scmagazine.com/home/email-security/world-health-organization-warns-about-coronavirus-phishing-scams/"&gt;The World Health Organization&lt;/a&gt; and &lt;a href="http://www.chathamstartribune.com/news/article_3660b0ae-5a4b-11ea-8467-fb447391ea40.html"&gt;the Better Business Bureau&lt;/a&gt; have warned against both of these. There are currently no U.S. Food and Drug Administration-approved vaccines, and when a cure or vaccine becomes available, you probably shouldn't try to purchase it through an email link or website. &lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;On-premise and cloud managed content filtering solutions&lt;/b&gt; and services can track and block malicious content before reaching your endpoint devices, such as desktops and laptops. It is good practise to not rely on a single line of defense in these case, so implementing malware protection software on endpoint devices is advised. Protection policies can be managed centrally by your in-house IT team or trusted third party managed service security providers.&lt;br /&gt;
&lt;br /&gt;
&lt;span style="background-color: white; color: #999999; font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif; font-size: 16px;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;By&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="background-color: white; color: #999999; font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif; font-size: 16px;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;&lt;a href="https://plus.google.com/u/0/116898209106255177774/posts" style="background: transparent; color: #729c0b; text-decoration-line: none;" target="_blank"&gt;Paul Rummery&lt;/a&gt;, Securenet Consulting&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;</description><link>http://www.securenetconsulting.co.uk/2020/03/coronavirus-remote-working.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjrbGqBR_2hdjIaVPd3usLQj-V1wcAz1-HbWY8YulLfWkf0IU84sVSt6xOSwKBpxZElpkDbVrj8CD71CdXidwpJ0KBrbqJMvlTUzgZQJNN48cHt4Ci107togunfeqH-jsBUfvJ8rLxvsKwO/s72-c/home+working.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-5097091008120042179</guid><pubDate>Wed, 04 Mar 2020 16:31:00 +0000</pubDate><atom:updated>2020-03-05T14:24:32.324+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">wireless network planning</category><category domain="http://www.blogger.com/atom/ns#">wireless networks</category><category domain="http://www.blogger.com/atom/ns#">wireless security</category><title>Wireless Mobility Solutions</title><description>&lt;span style="font-size: large;"&gt;&lt;span style="background-color: white; color: #999999; font-family: arial, helvetica, sans-serif; font-size: 16px;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;By&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="background-color: white; color: #999999; font-family: arial, helvetica, sans-serif; font-size: 16px;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;&lt;a href="https://plus.google.com/u/0/116898209106255177774/posts" style="background: transparent; color: #729c0b; text-decoration-line: none;" target="_blank"&gt;Paul Rummery&lt;/a&gt;, Securenet Consulting&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-size: large;"&gt;&lt;span style="background-color: white; color: #999999; font-family: arial, helvetica, sans-serif; font-size: 16px;"&gt;&lt;span style="line-height: 18.4px;"&gt;&lt;span style="font-size: xx-small;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;
&lt;span style="font-size: large;"&gt;Wireless Network offers a way to meet new network demands&lt;br /&gt;&lt;br /&gt;Whether deployment is a campus, business, outdoor or smart cities wireless has you covered&lt;br /&gt;&lt;br /&gt;High-performance, enterprise-class WLAN capable of handling all your voice / video / data traffic needs – scalable small and large deployments&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-family: &amp;quot;courier new&amp;quot; , &amp;quot;courier&amp;quot; , monospace; font-size: large;"&gt;With the latest Wi-Fi technologies including OFDMA, MU-MIMO, and software-defined dual 5 GHz radios, WiFi access points deliver uncompromising performance in the most demanding environments.&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;The Challenges&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
The rise in popularity of smartphones and tablets, combined with enterprise Bring Your Own Device (BYOD) programs in the workplace, has seen a dramatic demand for enterprise-grade Wi-Fi connectivity.&lt;br /&gt;
&lt;br /&gt;
Broad adoption of wireless 802.11n has created a complex Wireless landscape with proliferating mobile devices and applications. It is no longer sufficient to treat all wireless users and applications alike.&lt;br /&gt;
&lt;br /&gt;
BYOD means employees and people bringing non-controlled devices onto your network, which require access to corporate resources / data. But these devices often have many non-corporate ‘mobile apps’ enable the user to access online internet spaces via wireless or 4/5G, for example web mail, file sharing sites, social media like outlook, Google, Dropbox, Facebook…&lt;br /&gt;
&lt;br /&gt;
Other consumer apps also require access to the devices contact lists, storage, pictures, files, and general device functionality. &lt;br /&gt;
&lt;br /&gt;
Therefore you are presented with the problem of what happens to your data once someone has accessed you network with one of these devices.&lt;br /&gt;
&lt;br /&gt;
Wi-Fi networks are not built the same: each wireless network has a unique set of capacity, coverage and performance requirements that grow and change with your business. Building and maintaining a high-performing, reliable network requires an understanding of the business requirements, the underlying Wi-Fi technology, as well as the overarching IT infrastructure.&lt;br /&gt;
&lt;br /&gt;
When searching for a wireless access infrastructure solution, network leaders should look for the following key attributes: &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;div class="western" style="line-height: 100%; margin-bottom: 0cm;"&gt;
&lt;span style="font-variant-east-asian: normal; font-variant-numeric: normal;"&gt;&lt;span style="color: #535a5c;"&gt;&lt;span style="font-family: inherit; font-size: 18pt;"&gt;&lt;b&gt;Features &amp;amp; Benefits&lt;/b&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="color: #535a5c; font-family: inherit;"&gt;&lt;span style="font-size: 11pt;"&gt;
&lt;/span&gt;&lt;/span&gt;
&lt;br /&gt;
&lt;div&gt;
&amp;gt; Latest Wi-Fi technologies provide support for demanding voice / video / data applications to enhance mobile worker productivity and convenience&lt;br /&gt;
&lt;br /&gt;
&amp;gt; Better control over your network infrastructure, from wherever they are, at any time.&lt;br /&gt;
&lt;br /&gt;
&amp;gt; No need for a local controller, reducing cost and complexity while streamlining network infrastructure. &lt;br /&gt;
&lt;br /&gt;
&amp;gt; Increase Performance, Increase Security.&lt;span style="color: #535a5c; font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Wi-Fi 6 &amp;amp; 5G&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Both 5G and Wi-Fi 6 bring a promise of dramatically better performance to mobile workers and the enterprise. Since they are complementary technologies, they will provide higher data rates to support new applications and increases in network capacity with the ability to connect more devices.&lt;br /&gt;
&lt;br /&gt;
High efficiency, high capacity Wi-Fi that utilises the latest technologies to optimise and protect bandwidth in all environments.&lt;br /&gt;
&lt;br /&gt;
Designed to address connectivity issues for high density networks, the new 802.11ax (Wi-Fi 6) standard improves the performance of the entire network. New features allow multiple clients to transmit simultaneously, increasing network capacity by up to 4 times compared to 802.11ac. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Cloud Driven&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Combine the leading Wi-Fi hardware appliances with cloud management to simplify every aspect of IT operations from deployment to support.&lt;br /&gt;
Centralised management for multi-site and user deployments.&lt;br /&gt;
Access anywhere, configuration backup in the cloud.&lt;br /&gt;
24 / monitoring, alerts and reporting.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Machine Learning&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Make the network work for you instead of the other way around with self-driving Wi-Fi powered by millions of actionable insights to continually adapt and adjust performance.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Role based group&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Role-based grouping of users, devices, and applications to deliver priority, QoS, and security in accordance with business needs.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Unify wireless and wired&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Multi-tenant structure allows deployment across multiple sites. &lt;br /&gt;
&lt;br /&gt;
Advanced traffic reporting and data analysis tools provide business owners and IT professionals with real-time insights.&lt;br /&gt;
&lt;br /&gt;
Create policies that leverage user roles, device profiling and authentication sources across any multi-vendor wireless and wired network environment.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;WLAN (Wireless Access Points) Indoor &amp;amp; Outdoor /Industrial Access&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Centrally managed wireless network access. Deploy wireless network access points to manage security and service / network performance.&lt;br /&gt;
&lt;br /&gt;
Scan continuously for rogue sensors or unknown devices.&lt;br /&gt;
&lt;br /&gt;
Automatically find, locate, optionally triangulate and block on the wire and wirelessly.&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Quality of Service&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Consistent protection, Bandwidth management, seamless roaming for Workflows and Applications (e.g. Voice of IP)&lt;br /&gt;
&lt;br /&gt;
Identify and load-balance specific apps across access points, adjust roaming settings for latency-sensitive apps.&lt;br /&gt;
&lt;br /&gt;
OFDMA allows many low-bandwidth streams to transmit in parallel, reducing latency and jitter. Reduced latency is an important requirement for some IoT, video, and factory automation applications that 802.11ax can now address. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;div&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Deployments Made Simple&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Auto Provision, Auto Configure, Auto Optimise.&lt;br /&gt;
&lt;div class="western"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Dynamic Network Management&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Reduce load on the WAN&lt;br /&gt;
&lt;br /&gt;
Depending on the size of the WLAN deployment and how much data is carried over the network, significant congestion may result.&lt;br /&gt;
&lt;br /&gt;
Network administrators can select how traffic will be handled, so that the wireless LAN infrastructure can adapt to business requirements and applications. A fully distributed deployment eliminates backhauling traffic to a wireless appliance but increases the processing complexity for real-time mobile applications that require seamless cross-subnet roaming (e.g. VoWLAN). This can force IT managers to either create a large broadcast domain or apply many VLANs.&lt;br /&gt;
&lt;br /&gt;
Improve responsiveness and ensures that traffic does not unnecessarily traverse costly WANs or contribute to bottlenecks at aggregating switches.&lt;br /&gt;
&lt;br /&gt;
Provides role-based policies providing security, NAC, mobility, and QoS priority that can be implemented on a per user and per application basis.&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Deep network insight enabling smarter network management&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Visibility / location analytics&lt;br /&gt;
Band/client steering, load balancing &lt;br /&gt;
Multi site, tiered / multi campus&lt;br /&gt;
&lt;div class="western" style="line-height: 100%; margin-bottom: 0cm; orphans: 2; widows: 2;"&gt;
&lt;span style="font-variant: normal;"&gt;&lt;span style="color: #24202b;"&gt;&lt;span style="font-family: &amp;quot;lato&amp;quot; , sans-serif;"&gt;&lt;span style="font-size: x-small;"&gt;&lt;span style="letter-spacing: normal;"&gt;&lt;span style="font-style: normal;"&gt;&lt;span style="font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhdHRLEtJPfi8ru-ao99cz5KuYlZLI6klEbzRegcjY8p2Y_ZKkUl-vxogzdHOTs6QzRcMg5547-L_ZIMgSa9G_onLISKVyI4o4AD4ImLgHp0_RbxBsW0NgGppp2UfxMzo0LTK_yRIdB-T90/s1600/wireless+map.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="446" data-original-width="776" height="183" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhdHRLEtJPfi8ru-ao99cz5KuYlZLI6klEbzRegcjY8p2Y_ZKkUl-vxogzdHOTs6QzRcMg5547-L_ZIMgSa9G_onLISKVyI4o4AD4ImLgHp0_RbxBsW0NgGppp2UfxMzo0LTK_yRIdB-T90/s320/wireless+map.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div class="western" style="line-height: 100%; margin-bottom: 0cm; orphans: 2; widows: 2;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Legacy devices will also see a benefit&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Although legacy 11n and 11ac Wi-Fi devices won’t directly see any range or performance improvement of their connections to 11ax APs or wireless routers, they can see an indirect benefit. Remember, Wi-Fi is all about airtime: the faster any device is served, the more time there is for other devices. If newer technologies like MU-MIMO and OFDMA can help serve supported devices quicker, there's more airtime for other devices, including legacy ones.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Integrated Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
Protects against new threat vectors that tap into wireless access vulnerabilities. &lt;br /&gt;
&lt;br /&gt;
Security and networking are tied together, changes to the network infrastructure automatically include changes to security. &lt;br /&gt;
&lt;br /&gt;
Without appropriate threat protections in place, organisations place their customers, employees, and business partners at risk when they use access points. In addition, applications and sensitive data must be fully protected to comply with regulations, for example Health Insurance Portability and Accountability Act (HIPAA) to the Payment Card Industry Data Security Standard (PCI DSS). And organisations must demonstrate that compliance through tracking and reporting. &lt;br /&gt;
&lt;br /&gt;
From a network perspective, a wireless access solution should feature plug-and-play deployment and ease of management. Core capabilities include application security, visibility, and control across on-premises and cloud infrastructures. Management of access points should also be integrated into the broader security architecture. In addition to improving efficiencies and minimising the number of manual touch points, this architectural approach improves an organisation’s security posture. This ensures that wireless access points are visible from a centralised console and that threat intelligence can be shared with and from other security areas in real time. &lt;br /&gt;
&lt;br /&gt;
Intrusion Prevention System (IPS), full packet inspection, adaptive signature pattern matching, protocol analysis, and behavioral anomaly detection are delivered for both wired and wireless users. Identity based policy privileges are unified across the wired and wireless infrastructure to deliver role-based access control – regardless of connectivity method. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Network Access Control&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Define security policies based on users, device type, ownership, location and schedules. &lt;br /&gt;
&lt;br /&gt;
Businesses can now support BYOD or allow guest access while ensuring highest levels of network security. &lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Remote and Public Wireless / WiFi security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt; Enforce authorisation and encryption on open (public) networks&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Wi-Fi hotspots are a convenient means for remote employees and professionals who travel to stay connected to enterprise resources. Unfortunately, many of these hotspots are vulnerable to a variety of cyber threats and man-in-the-middle attacks.&lt;br /&gt;
&lt;br /&gt;
Ensure that each guest sessions is encrypted and thus invisible to anyone trying to sniff Wi-Fi packets.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Wireless Authentication / On-boarding&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;
Certificate-based network access ensures safe, encrypted wireless access.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: #38761d; font-size: large;"&gt;&lt;b&gt;Some example use cases&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;b&gt; Guest Wi-Fi Portal/Hotspot Support&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Easy customisation options for guest portals include authentication, hotspot setup, and the ability to use your own external portal server. Apply different bandwidth rates (download/upload), limit total data usage, and limit duration of use.&lt;br /&gt;
All Wi-Fi APs include hotspot functionality:&lt;br /&gt;
&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Built-in support for billing integration using major credit cards.&lt;/li&gt;
&lt;li&gt;Built-in support for voucher-based authentication.&lt;/li&gt;
&lt;li&gt;Built-in hotspot manager for voucher creation, guest management, and payment refunds.&lt;/li&gt;
&lt;li&gt;Full customisation and branding of hotspot portal pages.&lt;/li&gt;
&lt;/ul&gt;
&lt;div class="separator" style="clear: both;"&gt;
&lt;br /&gt;&lt;/div&gt;
Temporary installations = deploy mesh models for outdoor installations requiring quick setup and takedown, such as a street fair, music festival, or concert venue.&lt;br /&gt;
&lt;br /&gt;
&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgtCT5Al-RWxRT-gJDKuWB9Fp9X8B9UAWmbhtCNCdlZBWh_e_36m8K7eLXBpAwM31ng_8Dn5tKKNmIQuvOwP2I6j68VA8KDiDYhE68bfBp-L7JnyrTiSiOBv4jmmQUXFsSJr8p6CFP1Mhux/s1600/campus+wireless.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="461" data-original-width="785" height="187" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgtCT5Al-RWxRT-gJDKuWB9Fp9X8B9UAWmbhtCNCdlZBWh_e_36m8K7eLXBpAwM31ng_8Dn5tKKNmIQuvOwP2I6j68VA8KDiDYhE68bfBp-L7JnyrTiSiOBv4jmmQUXFsSJr8p6CFP1Mhux/s320/campus+wireless.png" width="320" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;div align="center" style="line-height: 108%; margin-bottom: 0.28cm;"&gt;
&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Light-Up Branch Offices Faster&lt;/b&gt;&lt;br /&gt;
Cloud-based and managed wireless network controller, and 'zero-touch' pre-configured wireless access points enable instant connectivity and access for new branch offices faster.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Remote User Wireless Access Points For at home and on the road workers&lt;/b&gt;&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt; Pre-configured / plug and play remote network (WLAN) access points&lt;/li&gt;
&lt;li&gt;Allow you to ship pre-configured APs to remote employees.&lt;/li&gt;
&lt;li&gt;Issue to road-warriors, executives or employees working from a home office,&lt;/li&gt;
&lt;li&gt;Shipping pre-provisioned APs allows you to save time and reduce helpdesk calls by eliminating the need to assist remote users with network access problems.&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;
Once plugged in, the AP (access point) automatically discovers your enterprise wireless controller over the Internet, downloads its configuration and broadcasts the same wireless SSIDs used in the corporate office.&lt;br /&gt;
&lt;br /&gt;
Acting as an extension of the corporate LAN, this enables remote employees to seamlessly gain secure encrypted network access to the enterprise, without the need to configure or manage complex client VPN connections.&lt;br /&gt;
&lt;br /&gt;
&lt;div class="western" style="line-height: 100%; margin-bottom: 0cm;"&gt;
&lt;span style="font-variant-east-asian: normal; font-variant-numeric: normal;"&gt;








&lt;/span&gt;&lt;/div&gt;
&lt;div style="line-height: 108%; margin-bottom: 0.28cm;"&gt;
&lt;b&gt;Run presentations straight from your laptop or tablet via wireless direct to board room screen&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
Power savings from owning and running less equipment (no projector equipment)&lt;span style="font-family: &amp;quot;calibri&amp;quot; , sans-serif;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhblA0be5L1sJ1ZyTlWduBgJzZKs8nZ-9nzmStUkIRII7wH-j9X8QEc6ChO6pmRf3ei7F5deYtMd_payqtWx4PdNeUx6kK8TJrlUlgJL5DaHpUgg2hC6z9P6qWFVwipR3puM9n3ahmEOH5_/s1600/wireless+presentation.png" imageanchor="1" style="clear: left; display: inline !important; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="222" data-original-width="400" height="177" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhblA0be5L1sJ1ZyTlWduBgJzZKs8nZ-9nzmStUkIRII7wH-j9X8QEc6ChO6pmRf3ei7F5deYtMd_payqtWx4PdNeUx6kK8TJrlUlgJL5DaHpUgg2hC6z9P6qWFVwipR3puM9n3ahmEOH5_/s320/wireless+presentation.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;div class="western" style="line-height: 100%; margin-bottom: 0cm;"&gt;
&lt;span style="font-variant-east-asian: normal; font-variant-numeric: normal;"&gt;&lt;span style="color: #535a5c;"&gt;&lt;span style="font-family: &amp;quot;lato&amp;quot; , sans-serif;"&gt;&lt;span style="font-size: 11pt;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;br /&gt;&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2020/03/wireless-mobility-solutions.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhdHRLEtJPfi8ru-ao99cz5KuYlZLI6klEbzRegcjY8p2Y_ZKkUl-vxogzdHOTs6QzRcMg5547-L_ZIMgSa9G_onLISKVyI4o4AD4ImLgHp0_RbxBsW0NgGppp2UfxMzo0LTK_yRIdB-T90/s72-c/wireless+map.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-2767754311379802318</guid><pubDate>Wed, 04 Mar 2020 11:39:00 +0000</pubDate><atom:updated>2020-03-05T14:24:14.626+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">news</category><category domain="http://www.blogger.com/atom/ns#">wireless security</category><title>Kr00k vulnerability</title><description>&lt;br&gt;
&lt;h2 style="clear: both; text-align: left;"&gt;
&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgYOg3Zrh0rsD3WLprO18gIAhAY7HnuutE1Y6cXO5OPNShYRvk0ZAel0N8DBbf8o0Lx_sB3GhySwyCl1yO06qaOrjZMS4PVVbuLQlJxx7o9QkpViOoichcjEA7sxKbSHa2YKajr-FvCxUuF/s1600/Kr00k.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="562" data-original-width="1000" height="179" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgYOg3Zrh0rsD3WLprO18gIAhAY7HnuutE1Y6cXO5OPNShYRvk0ZAel0N8DBbf8o0Lx_sB3GhySwyCl1yO06qaOrjZMS4PVVbuLQlJxx7o9QkpViOoichcjEA7sxKbSHa2YKajr-FvCxUuF/s320/Kr00k.png" width="320"&gt;&lt;/a&gt;&lt;/h2&gt;
&lt;h2 style="clear: both; text-align: left;"&gt;
&lt;span style="color: #0000ee; font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif;"&gt;&lt;span style="font-family: inherit; font-weight: normal;"&gt;New Kr00k vulnerability enables attackers decrypt WiFi packets&lt;/span&gt;&lt;/span&gt;&lt;/h2&gt;
&lt;div class="separator" style="clear: both; text-align: left;"&gt;
&lt;span style="color: #0000ee; font-family: inherit;"&gt;&lt;u&gt;&lt;/u&gt;&lt;/span&gt;&lt;/div&gt;
&lt;a href="http://www.securenetconsulting.co.uk/2020/03/kr00k-vulnerability.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2020/03/kr00k-vulnerability.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgYOg3Zrh0rsD3WLprO18gIAhAY7HnuutE1Y6cXO5OPNShYRvk0ZAel0N8DBbf8o0Lx_sB3GhySwyCl1yO06qaOrjZMS4PVVbuLQlJxx7o9QkpViOoichcjEA7sxKbSHa2YKajr-FvCxUuF/s72-c/Kr00k.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-612112962972112833</guid><pubDate>Sun, 13 Oct 2019 12:33:00 +0000</pubDate><atom:updated>2021-10-13T14:11:13.669+01:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Audio Visual</category><title>Audio Visual Solutions</title><description>&lt;p&gt;&lt;/p&gt;&lt;h1 style="text-align: left;"&gt;&lt;span style="font-family: inherit;"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgZ9-YGlKWokuo5WsSguwuQIpKSZ0KdK2cQcxgqOUkv6CfBPPpi9mfBU-ht8RAYYFSE0okvH7D21FajQjy-0F1iktu2NciKfaHDQzs56clO_kNL4j9oeuymUQRpRVKbRyuUvrS38Y4lAOsl/s800/audio+visual.png" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="585" data-original-width="800" height="186" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgZ9-YGlKWokuo5WsSguwuQIpKSZ0KdK2cQcxgqOUkv6CfBPPpi9mfBU-ht8RAYYFSE0okvH7D21FajQjy-0F1iktu2NciKfaHDQzs56clO_kNL4j9oeuymUQRpRVKbRyuUvrS38Y4lAOsl/w255-h186/audio+visual.png" width="255"&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style="color: #2a6099;"&gt;&lt;span style="font-size: large;"&gt;Connect
remote users and collaborate with ease: Audio Visual solutions&lt;br&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/h1&gt;&lt;p&gt;&lt;/p&gt;&lt;span style="font-family: inherit;"&gt;

&lt;/span&gt;&lt;p style="font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; margin-bottom: 0.55cm; orphans: 2; widows: 2;"&gt;
&lt;span style="font-family: inherit;"&gt;&lt;span style="color: black;"&gt;&lt;span style="font-size: x-small;"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;a href="http://www.securenetconsulting.co.uk/2020/10/audio-visual-solutions.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2020/10/audio-visual-solutions.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgZ9-YGlKWokuo5WsSguwuQIpKSZ0KdK2cQcxgqOUkv6CfBPPpi9mfBU-ht8RAYYFSE0okvH7D21FajQjy-0F1iktu2NciKfaHDQzs56clO_kNL4j9oeuymUQRpRVKbRyuUvrS38Y4lAOsl/s72-w255-h186-c/audio+visual.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-3512476428988173139</guid><pubDate>Fri, 18 May 2018 08:40:00 +0000</pubDate><atom:updated>2020-02-19T14:09:48.649+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Hot News</category><category domain="http://www.blogger.com/atom/ns#">Ransomware</category><title>RANSOMWARE: StalinLocker deletes data if you don't enter the right code in time</title><description>&lt;h2&gt;
StalinLocker&amp;nbsp; Ransomware gives you ten minutes to comply.&amp;nbsp;&lt;/h2&gt;
Ransomware is under development that gives victims 10 minutes to enter a code and will delete the contents of a hard drive in the event of failure. &lt;br /&gt;
&lt;img border="0" height="173" src="https://media.scmagazineuk.com/images/2018/05/16/stalin_1428505.jpg?format=jpg&amp;amp;zoom=1&amp;amp;quality=70&amp;amp;anchor=middlecenter&amp;amp;mode=pad" width="320" /&gt;&lt;br /&gt;
StalinLocker deletes data if you don't enter the right code in time. &lt;br /&gt;
Ransomware is under development that gives victims 10 minutes to enter a code and will delete the contents of a hard drive in the event of failure.&lt;br /&gt;
&lt;br /&gt;
When the malware is run, it plays the Soviet national anthem, which is copied to the %UserProfile%\AppData\Local  &lt;br /&gt;
As an mp3 file.  &lt;br /&gt;
&lt;br /&gt;
The malware will also copy itself to the same folder as stalin.exe. It then creates an autorun file called Stalin which, when run, locks the screen and starts off the wiping process. &lt;br /&gt;
&lt;br /&gt;
Also created is %UserProfile%\AppData\Local\fl.dat. This decreases the time left to enter a code each time the computer is restarted. &lt;br /&gt;
&lt;br /&gt;
It also attempts to taskmgr.exe and explorer.exe but leaves Skype or Discord alone. Also created is a scheduled task called "Driver Update" that launches Stalin.exe.  &lt;br /&gt;
&lt;br /&gt;
When infected the malware shows a lock screen and a 10-minute timer. Victims are expected to enter a code, which is calculated by subtracting the date 30/12/1922 from the current date. If the correct code is entered, StalinLocker exits and deletes the autorun. &lt;br /&gt;
&lt;br /&gt;
Should a victim fail to enter the code by the time the countdown reaches zero, the malware deletes all files on each drive attached to the computer. &lt;br /&gt;
&lt;br /&gt;
The malware came with “no money demand, no contact, nothing”. They added that the malware is “not a variant of anything known” and was first seen some days ago. &lt;br /&gt;
They said that if a user gets infected, “best thing he can do is shutdown PC and contact someone who can clean”. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
“For the average end user they will neither have the time or the inclination to find and enter the correct code, so the file wipe will almost certainly be a done deal. Their only protection is going to be good multi-layered internet security software that will detect and delete the offending malware,” he said. &lt;br /&gt;
&lt;br /&gt;
These kinds of attacks aren't necessarily for profit, the impact is no less. Therefore, enterprises should take all these threats just as serious and invest in security controls that can detect such attacks, so that the appropriate measures can be taken.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
CONTACT: paul@securenetconsulting.co.uk&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-size: x-small;"&gt;&lt;span style="color: #999999;"&gt;&lt;br /&gt;&lt;br /&gt;Credit:  MalwareHunterTeam, SCmedia&lt;/span&gt;&lt;/span&gt;</description><link>http://www.securenetconsulting.co.uk/2018/05/ransomware-stalinlocker-deletes-data-if.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-8694621758042185978</guid><pubDate>Thu, 25 Jan 2018 08:18:00 +0000</pubDate><atom:updated>2018-01-25T08:18:34.847+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">botnet</category><category domain="http://www.blogger.com/atom/ns#">news</category><title>New HNS Botnet</title><description>&lt;h2&gt;
&lt;span style="font-size: x-large;"&gt;New Hide ‘N Seek IoT Botnet spotted in the wild&lt;/span&gt;&lt;/h2&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
New Hide ‘N Seek IoT Botnet using custom-built Peer-to-Peer communication spotted in the wild.&lt;/div&gt;
&lt;div&gt;
&lt;img height="329" src="https://labs.bitdefender.com/wp-content/uploads/2018/01/output-1024x528.png" width="640" /&gt;&lt;/div&gt;
&lt;br /&gt;Bitdefender researchers have uncovered an emerging botnet that uses advanced communication techniques to exploit victims and build its infrastructure. The bot, dubbed HNS, was intercepted by our IoT honeypot system following a credentials dictionary attack on the Telnet service.&lt;br /&gt;&lt;br /&gt;The bot was first spotted on Jan. 10 then faded away in the following days, only to re-emerge on Jan. 20 in a significantly improved form.&lt;div&gt;
&lt;img src="https://labs.bitdefender.com/wp-content/uploads/2018/01/chart-1.png" /&gt;&lt;/div&gt;
&lt;b&gt;Impact&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;The HNS botnet communicates in a complex and decentralized manner and uses multiple anti-tampering techniques to prevent a third party from hijacking/poisoning it. The bot can perform web exploitation against a series of devices via the same exploit as Reaper (CVE-2016-10401 and other vulnerabilities against networking equipment).&lt;br /&gt;&lt;br /&gt;The bot embeds a plurality of commands such as data exfiltration, code execution and interference with a device’s operation.&lt;div&gt;
&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Operation&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;The bot features a worm-like spreading mechanism that randomly generates a list of IP addresses to get potential targets. It then initiates a raw socket SYN connection to each host in the list and continues communication with those that answer the request on specific destination ports (23 2323, 80, 8080). Once the connection has been established, the bot looks for a specific banner (“buildroot login:”) presented by the victim. If it gets this login banner, it attempts to log in with a set of predefined credentials. If that fails, the botnet attempts a dictionary attack using a hardcoded list.&lt;br /&gt;&lt;br /&gt;Once a session is established with a new victim, the sample will run through a “state machine” to properly identify the target device and select the most suitable compromise method. For example, if the victim has the same LAN as the bot, the bot sets up TFTP server to allow the victim to download the sample from the bot. If the victim is located on the internet, the bot will attempt a specific remote payload delivery method to get the victim to download and run the malware sample. These exploitation techniques are preconfigured and are located in a memory location that is digitally signed to prevent tampering. This list can be updated remotely and propagated among infected hosts.&lt;br /&gt;&lt;br /&gt;The samples identified in our honeypots on Jan. 10 revolved around IP cameras manufactured by a Korean company. These devices seemed to play a major role in the botnet as, out of the 12 IP addresses hardcoded in the sample, 10 used to belong to Focus H&amp;amp;S devices. The new version, observed on Jan. 20, dropped the hardcoded IPs.&lt;br /&gt;&lt;br /&gt;Like other IoT bots, the newly discovered HNS bot cannot achieve persistence, and a reboot would bring the compromised device back to its clean state. It is the second known IoT botnet to date, after the notorious Hajime botnet, that has a decentralized, peer-to-peer architecture. However, if in the case of Hajime, the p2p functionality was based on the BitTorrent protocol, here we have a custom-built p2p communication mechanism.&lt;div&gt;
&lt;br /&gt;&lt;b&gt;&lt;br /&gt;UDP communication mechanism &lt;/b&gt;&lt;br /&gt;&lt;br /&gt;The bot opens a random port on the victim, and adds firewall rules to allow inbound traffic for the port. It then listens for connections on the open port and only accepts the specific commands described below. Our initial look at the sample revealed an elliptic curve key inside the file that is used to authenticate the command which updates the memory zone where configuration settings are stored, to prevent infiltration or poisoning attempts against the botnet.&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Conclusions&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;While IoT botnets have been around for years, mainly used for DDoS attacks, the discoveries made during the investigation of the Hide and Seek bot reveal greater levels of complexity and novel capabilities such as information theft – potentially suitable for espionage or extortion.&lt;br /&gt;&lt;br /&gt;It is also worth noting that the botnet is undergoing constant redesign and rapid expansion.&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;br /&gt;credit: BitDefender&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/new-hns-botnet.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-1656050599901681156</guid><pubDate>Tue, 23 Jan 2018 10:28:00 +0000</pubDate><atom:updated>2018-01-23T10:34:19.144+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Intel</category><category domain="http://www.blogger.com/atom/ns#">Patch News</category><category domain="http://www.blogger.com/atom/ns#">Spectre</category><title>news: Intel testing new Spectre fixes, tells everyone to hold off on deploying current firmware updates</title><description>&lt;h2&gt;
&lt;span style="font-size: x-large; font-weight: normal;"&gt;Intel tells everyone to hold off on deploying current firmware updates&lt;/span&gt;&lt;/h2&gt;
&lt;img alt="Image result for Intel tells everyone to hold off on deploying current firmware updates" height="150" src="https://41dcdfcd4dea0e5aba20-931851ca4d0d7cdafe33022cf8264a37.ssl.cf1.rackcdn.com/19502494_intel-meltdown--spectre_4d164dda_m.jpg?bg=F0E5CF" width="200" /&gt;Shortly after Red Hat stopped providing microcode to address variant 2 (branch target injection) of the &lt;a href="http://www.securenetconsulting.co.uk/2018/01/news-intel-amd-chip-vulnerabilities-put.html"&gt;Spectre attack&lt;/a&gt;, Intel has advised OEMs, cloud service providers, system manufacturers, software vendors and end users stop deployment of current firmware updates that fix the same vulnerability (CVE-2017-5715).&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;br /&gt;Red Hat’s decision&lt;/b&gt;&lt;br /&gt;“Red Hat is no longer providing microcode to address Spectre, variant 2, due to instabilities introduced that are causing customer systems to not boot. The latest microcode_ctl and linux-firmware packages are reverting these unstable microprocessor firmware changes to versions that were known to be stable and well tested, released prior to the Spectre/Meltdown embargo lift date on Jan 3rd,” Red Hat &lt;a href="https://access.redhat.com/solutions/3315431?sc_cid=701f2000000tsLNAAY&amp;amp;"&gt;announced&lt;/a&gt; last week.&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
The microcode that Red Hat stopped providing is not of their making. These patches are provided and developed by CPU makers (Intel, AMD, Arm, etc.).&lt;br /&gt;&lt;br /&gt;“The microcode that was supplied to us did not cover all of the microprocessors that our customers possibly could use. It appears, subsequently, there may have been two versions that could have some regressions,” Christopher Robinson, product security manager at Red Hat.&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;&lt;b&gt;Intel’s update on the situation&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;And now Intel instructed all customers to hold off on deploying current versions of the firmware updates, “as they may introduce higher than expected reboots and other unpredictable system behavior.”&lt;br /&gt;&lt;br /&gt;“We have now identified the root cause for Broadwell and Haswell platforms, and made good progress in developing a solution to address it. Over the weekend, we began rolling out an early version of the updated solution to industry partners for testing, and we will make a final release available once that testing has been completed,” Navin Shenoy, Intel VP and general manager of the Data Center Group at Intel Corporation, &lt;a href="https://newsroom.intel.com/news/root-cause-of-reboot-issue-identified-updated-guidance-for-customers-and-partners/"&gt;announced&lt;/a&gt; on Monday.&lt;br /&gt;&lt;br /&gt;He asked industry partners to focus efforts on testing early versions of the updated solution so Intel can accelerate its release.&lt;br /&gt;&lt;br /&gt;Intel also provided a &lt;a href="https://newsroom.intel.com/wp-content/uploads/sites/11/2018/01/microcode-update-guidance.pdf"&gt;handy table&lt;/a&gt; that shows which microcode updates should be avoided, depending on the underlying processors.&lt;br /&gt;&lt;br /&gt;HP has &lt;a href="https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbhf03805en_us"&gt;reacted&lt;/a&gt; quickly to the announcement and removed system ROMs that include impacted microcodes from the HPE Support Site. They advised users to revert to earlier System ROM versions while they wait for new ones that include new Intel microcodes.</description><link>http://www.securenetconsulting.co.uk/2018/01/intel-testing-new-spectre-fixes-tells.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-7875069197355558171</guid><pubDate>Tue, 23 Jan 2018 10:25:00 +0000</pubDate><atom:updated>2018-01-23T10:25:10.241+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">amazon S3</category><category domain="http://www.blogger.com/atom/ns#">news</category><title>news: Sensitive medical records on AWS bucket found publicly accessible</title><description>&lt;h2&gt;
A large cache of sensitive medical records handled by a US-based digital records management company was found stored in an Amazon S3 storage bucket without adequate protection.&lt;/h2&gt;
&lt;div&gt;
&lt;img alt="Image result for Amazon S3 storage bucket without adequate protection mistake" src="https://encrypted-tbn0.gstatic.com/images?q=tbn:ANd9GcTLO-ARwIB_J0XAbzsleU10vq0FrBSW_CslT0x0KX2HlXq1vzFh" /&gt;&lt;/div&gt;
The storage bucket containing sensitive medical records could be accessed by anyone possessing the unique URL name associated with the bucket. According to security researchers, there are proprietary tools available in the market that can decipher unique URL names associated with Amazon S3 storage buckets.&lt;br /&gt;&lt;br /&gt;While conducting their investigation, the researchers noted that the said medical records were stored in a large PDF file which in turn was stored in an Amazon S3 storage bucket. Using a proprietary tool, the researchers were able to obtain the unique URL name associated with the bucket, thereby bypassing AWS' data encryption. Using this technique, they were also able to copy direct links to files and folders that could be accessed via the link.&lt;br /&gt;&lt;br /&gt;'The unfortunate part of so many patient records being exposed is that it was likely a human error and not a malicious actor or cyber-criminal,'.&lt;div style="text-align: center;"&gt;
&lt;span style="font-family: Courier New, Courier, monospace;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-family: Courier New, Courier, monospace; font-size: large;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;span style="font-family: Courier New, Courier, monospace; font-size: large;"&gt;'The repositories contained a wide range of sensitive details about patients that are protected under HIPAA laws. HIPAA violations can carry large financial penalties in the event of willful neglect or purposely leaking patient information online,'&lt;/span&gt;&lt;/div&gt;
&lt;div style="text-align: center;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="text-align: left;"&gt;
&lt;br /&gt;&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/news-sensitive-medical-records-on-aws.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-6022949341802287170</guid><pubDate>Thu, 18 Jan 2018 10:51:00 +0000</pubDate><atom:updated>2018-01-18T10:51:44.274+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">cryptocurrency</category><category domain="http://www.blogger.com/atom/ns#">Malware</category><category domain="http://www.blogger.com/atom/ns#">Monero</category><title>RubyMiner Monero Cryptominer affected 30% of networks worldwide in only 24 hours</title><description>&lt;h2&gt;
Security researchers have spotted a malware family dubbed RubyMiner that is targeting web servers worldwide in an attempt to exploit their resources to mine Monero cryptocurrency.&lt;/h2&gt;
&lt;br /&gt;RubyMiner, was first spotted last week when a massive campaign targeted web servers worldwide, most of them in the United States, Germany, United Kingdom, Norway, and Sweden.&lt;br /&gt;&lt;br /&gt;The experts believe that a single lone attacker is behind the attacks, in just one day he attempted to compromise nearly one-third of networks globally.&lt;br /&gt;&lt;br /&gt;“In the last 24 hours, 30% of networks worldwide have experienced compromise attempts by a crypto-miner targeting web servers.” read the &lt;a href="https://research.checkpoint.com/rubyminer-cryptominer-affects-30-ww-networks/"&gt;analysis&lt;/a&gt; from Check Point.&lt;br /&gt;&lt;img height="339" src="https://research.checkpoint.com/wp-content/uploads/2018/01/Figure-1-1.png" width="640" /&gt;&lt;br /&gt;“During that period, the lone attacker attempted to exploit 30% of all networks worldwide to find vulnerable web servers in order to mobilize them to his mining pool. Among the top countries targeted are the United States, Germany, United Kingdom, Norway and Sweden, though no country has gone unscathed.”&lt;br /&gt;&lt;br /&gt;Having entered 2018, it seems that actors are again attempting to recruit any available machine for the sole purpose of self-profit. What was previously seen as a minor annoyance has turned into a huge wave of attack attempts across the globe, for it seems attackers are no longer satisfied with just personal computers and are now targeting powerful web servers to increase their computational resources.&lt;br /&gt;&lt;br /&gt;With a new attack vector, aiming to install a Monero miner on web servers, the attacker in this case was looking to get more bang for his buck by using the extended computation power of web servers.&lt;br /&gt;&lt;br /&gt;Surprisingly, by using old vulnerabilities published and patched in 2012 and 2013, it doesn’t seem that stealth was part of the attacker’s agenda either. Instead, the attacker chose to exploit multiple vulnerabilities in HTTP web servers, to distribute an open source Monero miner – XMRig.&lt;br /&gt;&lt;br /&gt;In fact, XMRig usually sends a donation of 5% of the revenue gained from the mining process to the code’s author. However, even this amount was too much for the attacker to part with as that ‘donation element’ was deleted from the code, giving the enthusiast 100% of the profit.&lt;br /&gt;&lt;br /&gt;Up to the moment of publication, approximately 700 servers worldwide have been successfully enslaved to this mining pool, making our villain for now only $540 richer…but this is just day one.&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;span style="color: #444444;"&gt;Credit: Check Point&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/rubyminer-monero-cryptominer-affected.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-6233816188921316911</guid><pubDate>Thu, 18 Jan 2018 10:09:00 +0000</pubDate><atom:updated>2018-01-18T10:09:07.507+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Hackers</category><category domain="http://www.blogger.com/atom/ns#">Malware</category><category domain="http://www.blogger.com/atom/ns#">Microsoft</category><title>Hackers Exploit Three Microsoft Office Flaws to Spread Zyklon Malware</title><description>Security researchers have spotted a new malware campaign in the wild that spreads an advanced botnet malware by leveraging at least three recently disclosed vulnerabilities in Microsoft Office.&lt;br /&gt;&lt;br /&gt;Dubbed Zyklon, the fully-featured malware has resurfaced after almost two years and primarily found targeting telecommunications, insurance and financial services.&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;img alt="Image result for Zyklon Malware" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjOA0Ih6KWTlUXQxLwhKCF9pDCu5Cxoy5JxGVfJASxokB7ubyMvzGNraYvJFKGD-QUfiFLMcP8jZUBKaB_mopxc6bhQJi1-5fHP3J3BaWjq8I1YCit59CajaDjnn68XXKORTOvE1TIMhmY-/s1600/microsoft-office-malware.png" /&gt;&lt;br /&gt;&lt;br /&gt;Active since early 2016, Zyklon is an HTTP botnet malware that communicates with its command-and-control servers over Tor anonymising network and allows attackers to remotely steal keylogs, sensitive data, like passwords stored in web browsers and email clients.&lt;br /&gt;&lt;br /&gt;Zyklon malware is also capable of executing additional plugins, including secretly using infected systems for DDoS attacks and cryptocurrency mining.&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;br /&gt;Different versions of the Zyklon malware has previously been found being advertised on a popular underground marketplace for $75 (normal build) and $125 ( Tor-enabled build).&lt;br /&gt;&lt;br /&gt;According to a recently published &lt;a href="https://www.fireeye.com/blog/threat-research/2018/01/microsoft-office-vulnerabilities-used-to-distribute-zyklon-malware.html"&gt;report&lt;/a&gt; by FireEye, the attackers behind the campaign are leveraging three following vulnerabilities in Microsoft Office that execute a PowerShell script on the targeted computers to download the final payload from its C&amp;amp;C server.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;1) .NET Framework RCE Vulnerability (CVE-2017-8759)&lt;/b&gt;—this remote code execution vulnerability exists when Microsoft .NET Framework processes untrusted input, allowing an attacker to take control of an affected system by tricking victims into opening a specially crafted malicious document file sent over an email. Microsoft already released a security patch for this flaw in September updates.&lt;/div&gt;
&lt;div&gt;
&lt;div id="aim22365407483227522643" style="-webkit-font-smoothing: antialiased; border: 0px; box-sizing: border-box; font-stretch: inherit; font-variant-east-asian: inherit; font-variant-numeric: inherit; line-height: inherit; margin: 0px; outline: 0px; padding: 0px; vertical-align: baseline;"&gt;
&lt;br /&gt;&lt;b&gt;2) Microsoft Office RCE Vulnerability (CVE-2017-11882)&lt;/b&gt;—it’s a 17-year-old memory corruption flaw that Microsoft patched in November patch update allows a remote attacker to execute malicious code on the targeted systems without requiring any user interaction after opening a malicious document.&lt;br /&gt;&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;&lt;b&gt;3) Dynamic Data Exchange Protocol (DDE Exploit)&lt;/b&gt;—this technique allows attackers to leverage a built-in feature of Microsoft Office, called DDE, to perform code execution on the targeted device without requiring Macros to be enabled or memory corruption.&lt;br /&gt;&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;As explained by the researchers, attackers are actively exploiting these three vulnerabilities to deliver Zyklon malware using spear phishing emails, which typically arrives with an attached ZIP file containing a malicious Office doc file.&lt;br /&gt;&lt;/div&gt;
&lt;div class="second-place clear" id="second-place" style="-webkit-font-smoothing: antialiased; background-color: white; border: 0px; box-sizing: border-box; color: #222222; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; font-stretch: inherit; font-variant-east-asian: inherit; font-variant-numeric: inherit; line-height: inherit; margin: 0px; outline: 0px; padding: 0px; vertical-align: baseline;"&gt;
&lt;/div&gt;
&lt;div id="aim32365407483227522643" style="-webkit-font-smoothing: antialiased; border: 0px; box-sizing: border-box; font-stretch: inherit; font-variant-east-asian: inherit; font-variant-numeric: inherit; line-height: inherit; margin: 0px 0px 10px; outline: 0px; padding: 0px; vertical-align: baseline;"&gt;
&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;Once opened, the malicious doc file equipped with one of these vulnerabilities immediately runs a PowerShell script, which eventually downloads the final payload, i.e., Zyklon HTTP malware, onto the infected computer.&lt;br /&gt;&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;&lt;br /&gt;&lt;blockquote class="tr_bq"&gt;
"In all these techniques, the same domain is used to download the next level payload (Pause.ps1), which is another PowerShell script that is Base64 encoded," the FireEye researchers said.&lt;/blockquote&gt;
&lt;blockquote class="tr_bq"&gt;
"The Pause.ps1 script is responsible for resolving the APIs required for code injection. It also contains the injectable shellcode."&lt;/blockquote&gt;
&lt;blockquote class="tr_bq"&gt;
"The injected code is responsible for downloading the final payload from the server. The final stage payload is a PE executable compiled with .Net framework."&lt;/blockquote&gt;
&lt;/div&gt;
&lt;div id="aim32365407483227522643" style="-webkit-font-smoothing: antialiased; border: 0px; box-sizing: border-box; font-stretch: inherit; font-variant-east-asian: inherit; font-variant-numeric: inherit; line-height: inherit; margin: 0px 0px 10px; outline: 0px; padding: 0px; vertical-align: baseline;"&gt;
Interestingly, the PowerShell script connects to a dotless IP address (example: http://3627732942) to download the final payload.&lt;br style="-webkit-font-smoothing: antialiased; background-color: white; box-sizing: border-box; color: #222222; content: &amp;quot; &amp;quot;; display: block; font-family: &amp;quot;Source Sans Pro&amp;quot;, sans-serif; font-size: 16px; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;&lt;span style="-webkit-font-smoothing: antialiased; background-color: white; border: 0px; box-sizing: border-box; color: #222222; font-family: inherit; font-size: inherit; font-stretch: inherit; font-style: inherit; font-variant: inherit; font-weight: 600; line-height: inherit; margin: 0px; outline: 0px; padding: 0px; vertical-align: baseline;"&gt;&lt;br style="-webkit-font-smoothing: antialiased; box-sizing: border-box; content: &amp;quot; &amp;quot;; display: block; margin: 20px 0px 0px; outline: 0px; padding: 0px;" /&gt;&lt;/span&gt;&lt;b&gt;What is Dotless IP Address?&lt;/b&gt; If you are unaware, dotless IP addresses, sometimes referred as 'Decimal Address,' are decimal values of IPv4 addresses (represented as dotted-quad notation). Almost all modern web browsers resolve decimal IP address to its equivalent IPV4 address when opened with "http://" following the decimal value.&lt;br /&gt;&lt;br /&gt;For example, Google's IP address 216.58.207.206 can also be represented as http://3627732942 in decimal values (Try this online converter).&lt;br /&gt;&lt;br /&gt;The best way to protect yourself and your organisation from such malware attacks are always to be suspicious of any uninvited document sent via an email and never click on links inside those documents unless adequately verifying the source.&lt;br /&gt;&lt;br /&gt;Most importantly, always keep your software and systems up-to-date, as threat actors incorporate recently discovered, but patched, vulnerabilities in popular software—Microsoft Office, in this case—to increase the potential for successful infections.&lt;/div&gt;
&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/hackers-exploit-three-microsoft-office.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjOA0Ih6KWTlUXQxLwhKCF9pDCu5Cxoy5JxGVfJASxokB7ubyMvzGNraYvJFKGD-QUfiFLMcP8jZUBKaB_mopxc6bhQJi1-5fHP3J3BaWjq8I1YCit59CajaDjnn68XXKORTOvE1TIMhmY-/s72-c/microsoft-office-malware.png" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-456317977151811880</guid><pubDate>Wed, 10 Jan 2018 09:33:00 +0000</pubDate><atom:updated>2018-01-10T09:37:55.910+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Application Security</category><category domain="http://www.blogger.com/atom/ns#">Malware</category><title>36 malicious apps advertised as security tools spotted in Google Play</title><description>The malicious apps were advertised under names such as Security Defender, Security Keeper, Smart Security, Advanced Boost, and other cyber-security sounding names, but their true purpose was to steal user information and bombard them with ads, according to Trend Micro blog post.&lt;img alt="Image result for 36 malicious apps advertised as security tools spotted in Google Play" height="188" src="https://d.ibtimes.co.uk/en/full/1591725/android-malware.jpg?w=736" width="320" /&gt;&lt;br /&gt;
&lt;br /&gt;
Many of the apps boost a variety of features such as scanning, cleaning junk, saving battery, cooling the CPU, locking apps, as well as message security, and WiFi security. While the apps are actually able to perform the advertised tasks, they also secretly harvest user data, tracked user location, and aggressively pushed advertisements on nearly every action a user performs.&lt;br /&gt;
&lt;br /&gt;
The apps collect information such as the user's Android ID, Mac address, IMSI, information about the OS, brand and model of the device, device specifics, language, location information, and data on installed apps like Google Play and Facebook to sends to a remote server.  The malware is also capable of uploading installed app information, as well as attachments, user operational information, and data on activated events as well.&lt;br /&gt;
&lt;br /&gt;
When the apps are first launched they won't appear on the device launcher's list of applications, shortcuts will also not appear on the device screen and users will only be able to see notifications sent by the apps.&lt;br /&gt;
&lt;br /&gt;
The “hide” function is designed to not run on specified devices including the Google Nexus 6P, Xiaomi MI 4LTE, ZTE N958St and LGE LG-H525n, presumably to avoid being checked by Google Play during inspection periods, researchers said.&lt;br /&gt;
&lt;br /&gt;
Once installed, users are bombarded with false security notifications and other messages from the malware while the app is running. Most of the notifications are false although they are designed to be believable. Notifications include“10.0 GB files are being wasted” or “Fraud SMS Broadcast Vulnerability” which will prompt some kind of action.&lt;br /&gt;
&lt;br /&gt;
If a user clicks the displayed button on the prompt the app will show a simple animation illustrating that the problem was resolved.  In addition to the security prompts, users are bombarded with different advertisements in many different scenarios such as after the app sends notices to unlock the device screen or if the user is told to connect to a charger.&lt;br /&gt;
&lt;br /&gt;
“Users are actually asked to sign and agree to a EULA (end-user license agreement) which describes the information that will be gathered and used by the app,” researchers said in the report. “But we can still say that the app abuses privacy because the collection and transmission of personal data is unrelated to the functionality of the app.”&lt;br /&gt;
&lt;br /&gt;
Researchers spotted the malicious apps in December 2017 and said the apps have since been removed by the time the blog was written. In order to secure and protect devices, researcher recommend users keep their devices updated, download apps from trusted sources and check reviews or comments on app pages to ensure the apps are legitimate regardless of the source.</description><link>http://www.securenetconsulting.co.uk/2018/01/36-malicious-apps-advertised-as.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-6289311225721064887</guid><pubDate>Wed, 10 Jan 2018 09:10:00 +0000</pubDate><atom:updated>2018-01-10T09:10:09.044+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Microsoft</category><category domain="http://www.blogger.com/atom/ns#">news</category><category domain="http://www.blogger.com/atom/ns#">Patch News</category><title>Microsoft Office memory corruption vulnerability and 16 critical flaws</title><description>&lt;h2&gt;
Patch Tuesday updates for 2018. This included fixes for a total of 56 CVEs affecting Microsoft Windows, Microsoft Office, Internet Explorer, Microsoft Edge, ChakraCore, ASP.NET, and the .NET Framework. One flaw has been exploited.&lt;/h2&gt;
&lt;div&gt;
&lt;div style="background-color: white; border: 0px; color: #656565; font-family: Helvetica, Arial, sans-serif; font-size: 14px; line-height: 19px;"&gt;
&lt;img alt="Image result for microsoft patch tuesday" height="196" src="https://www.fixmypcfree.com/wp-content/uploads/2014/08/patch-tuesday-2.jpg" width="320" /&gt;&lt;/div&gt;
&lt;br /&gt;&lt;br /&gt;Of these 56 vulnerabilities, 16 were ranked Critical, 38 Important, one Moderate and one Low severity. Today's release includes &lt;a href="https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/ADV180002"&gt;guidance&lt;/a&gt; for mitigating speculative execution side-channel vulnerabilities following the news of Meltdown and Spectre attacks.&lt;/div&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;iframe width="320" height="266" class="YOUTUBE-iframe-video" data-thumbnail-src="https://i.ytimg.com/vi/Q7i0goaCu7w/0.jpg" src="https://www.youtube.com/embed/Q7i0goaCu7w?feature=player_embedded" frameborder="0" allowfullscreen&gt;&lt;/iframe&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;The exploited bug patched today, CVE-2018-0802, is a Critical remote code execution vulnerability in Microsoft Office that exists when software doesn't properly handle objects in memory. An attacker who successfully exploited this could run code in the context of the current user, which would let them install programs, view and edit data, or create new accounts with full user rights. It's more dangerous for victims with administrative rights.&lt;br /&gt;&lt;br /&gt;Exploitation would require a user to open a specially crafted file with an affected version of Microsoft Office or WordPad. A threat actor could conduct a phishing attack by sending the file via email and convincing the target to open it. In a web-based attack, the attacker could host a website (or compromise a website) with a file to exploit the Office bug.&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/microsoft-office-memory-corruption.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://img.youtube.com/vi/Q7i0goaCu7w/default.jpg" width="72"/></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-6484757601508067684</guid><pubDate>Fri, 05 Jan 2018 11:34:00 +0000</pubDate><atom:updated>2018-01-05T11:39:55.391+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">cryptocurrency</category><category domain="http://www.blogger.com/atom/ns#">CryptoMiner</category><title>Crypto Miners The Silent CPU Killer</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;h2 style="text-align: left;"&gt;
Crypto Miners The Silent CPU Killer&lt;/h2&gt;
&lt;img alt="Image result for crypto mining botnet" src="https://mybroadband.co.za/news/wp-content/uploads/2013/06/Botnet.jpg" /&gt;&lt;br /&gt;
The Pirate Bay, the world’s largest BitTorrent indexer, is a massive online source for digital content– movies, games and software—and is among the top 100 most popular websites globally, according to Alexa. No stranger to controversy for its role in illegal downloads, a few weeks ago it was discovered that The Pirate Bay operators have begun using the website users’ computer resources to &lt;a href="http://thehackernews.com/2017/09/pirate-bay-cryptocurrency-mining.html"&gt;mine the Monero cryptocurrency&lt;/a&gt;, using a hidden JavaScript-based miner called CoinHive.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Until recently, websites that provide free services earned almost all their revenue through advertisements. Is the Pirate Bay example signaling that cryptocurrency mining may soon take over as the main revenue source?&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;img src="https://blog.checkpoint.com/wp-content/uploads/2017/10/piratebay.png" /&gt;&lt;/div&gt;
&lt;br /&gt;
How does the rising popularity of cryptocurrency miners affect the cyber security landscape? In which cases is it a legitimate tool, and in which is it considered malware? In this report, we will answer these questions.&lt;br /&gt;
&lt;br /&gt;
The first cryptocurrency that gained popularity and triggered the growth of the market and mining communities was &lt;a href="http://pages.checkpoint.com/cryptocurrency-cyber-security.html?utm_source=blog&amp;amp;utm_medium=cp%20website&amp;amp;utm_term=crypto&amp;amp;utm_campaign=CM_WR_17Q3_WW_Cryptocurrency%20Hero"&gt;BitCoin&lt;/a&gt; – the first decentralized coin. As time passed and BitCoin mining gained popularity, the computational resources required in order to stay in the game grew higher. The use of specialized hardware made it even harder for miners that used personal computers, be it threat actors using malware or solo miners, at a certain point, mining BitCoin and other leading cryptocurrencies such as Ethereum became non-profitable, taking into consideration the costs of the hardware and electricity. At this point, new miners entered the game – the new miners required far less CPU resources as they were a lot less popular and were mined by much smaller communities. Some of them, such as Monero, attempted to outgrow BitCoin by avoiding the coin’s biggest flaw – the lack of privacy. Naturally, new cryptocurrencies led to new crypto miners – both tools for the mining community, and malware.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Nowadays, a new use for crypto mining tools is taking over the internet – Javascript-based mining tools, which can be injected into popular websites both by the website owners and by threat actors.&lt;/b&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-size: large;"&gt;The Birth of Crypto Miners, and Crypto Cyber Campaigns&lt;/span&gt;&lt;br /&gt;
&lt;br /&gt;
The rising popularity of &lt;a href="http://pages.checkpoint.com/cryptocurrency-cyber-security.html?utm_source=blog&amp;amp;utm_medium=cp%20website&amp;amp;utm_term=crypto&amp;amp;utm_campaign=CM_WR_17Q3_WW_Cryptocurrency%20Hero"&gt;cryptocurrency&lt;/a&gt;, for both purchasing and for mining, has led to a significant growth of the mining community and cryptocurrency market worldwide. These in turn have produced a new kind of tool used to generate revenue: Crypto Miners.&lt;br /&gt;
&lt;br /&gt;
While the term ‘crypto miner’ refers to tools that are available online, and can be used by the mining community, tools used by malicious actors upon infection are called ‘crypto mining malware’.&lt;br /&gt;
&lt;br /&gt;
As with any new technology or advancement that has potential gain in it, the birth of cryptocurrencies also became a fertile ground for financially motivated cyber actors. To avoid the costs of expensive hardware, cybercriminals infect multiple systems in order to consume the victims’ CPU or GPU power and existing resources for crypto mining. By using different attack vectors, such as spam campaigns and Exploit Kits, they are able to turn the infected machines into troops of cryptocurrency miners.&lt;br /&gt;
&lt;br /&gt;
Cryptocurrency mining is a computationally intensive task which requires powerful resources from specialized hardware and dedicated processors, and incurs significant electricity costs and investments in hardware. The BitCoin network generates a new block every 10 minutes, regardless of the number of active miners. This means that the entrance of new miners into the game does not necessarily accelerate the mining process, but may actually slow it down, as this increases the complexity of the mining operation.&lt;br /&gt;
&lt;br /&gt;
As expected, the first cryptocurrency miners were designed to mine BitCoin, and emerged in 2011, shortly after BitCoin began gaining attention and popularity. One such miner was the Otorun worm. The infamous Kelihos, one of the largest botnets which was &lt;a href="http://fortune.com/2017/04/10/us-russian-kelihos-botnet/"&gt;taken down by the FBI&lt;/a&gt; in April 2017, was also used for BitCoin mining. The recent development of tens of new cryptocurrencies has led to a variety of new crypto miners, with each one designed to mine a specific currency. All of the crypto miners leverage their victims’ computer resources, causing the infected machines to run abnormally slow.&lt;br /&gt;
&lt;br /&gt;
Miners for the ‘Ethereum’, ‘Zcash’ and ‘Dogecoin’ currencies can currently be observed in the wild,  though some sources say that mining these currencies using personal computers, even if a large number of bots is involved, is no longer profitable. Without a doubt, the top currency mined by threat actors these days is the Monero currency (see Appendix).&lt;br /&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;Crypto miners’ growing role in the treat landscape&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
Let’s take another look at the Pirate Bay Monero Miner case, and review the concerning role of web-based crypto miners in the treat landscape.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
Currently, websites which do not provide paid services rely on advertisements for revenue. Many websites are loaded with ads, which heavily impact the user experience and accessibility of the actual content. Replacing the ads with a crypto miner, which uses a limited percentage of the CPU power of the website users, can be a good trade-off for website owners – it generates revenue for the owners and provides an improved and less intrusive experience for the end users.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The use of a web crypto miner such as CoinHive is as simple as it gets – the service provides a JavaScript which can be loaded into a website. When users access the website, the script mines the Monero currency based on the users’ CPU resources.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
However, the security community must remain alert in light of such developments, as the crypto miners would have a clear interest to increase the percentage of the computer resources consumed, and perhaps even leverage their access and elevate their privileges over the users’ machines.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The Pirate Bay case immediately made headlines and led to a stream of customer questions and complaints. An online search for similar cases yielded no results. Does this mean The Pirate Bay case is an outlier, or is it actually just one of many examples of a trend currently flying under the radar?&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;An investigation conducted by Check Point researchers reveals that cryptocurrency miners have knowingly been injected into some top websites, mostly media streaming and file sharing services, without notifying the users. According to our research, those miners regularly use as much as 65% of the end-users’ CPU power.&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/uptobox" style="border: 0px; box-sizing: border-box; display: block; height: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;Example 1:&amp;nbsp;&lt;/strong&gt;&lt;strong style="box-sizing: border-box;"&gt;Uptobox.com is a&amp;nbsp;&lt;/strong&gt;&lt;strong style="box-sizing: border-box;"&gt;file hosting service ranked 70 in France and 672 globally according to Alexa. The website uses its users’ CPU power to mine the Monero cryptocurrency without notification.&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/vidzi.tv_.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;Example 2:&amp;nbsp;&lt;/strong&gt;&lt;strong style="box-sizing: border-box;"&gt;Vidzi.tv is a video sharing service ranked 659 in the US and 788 globally. The website uses its users’ CPU power to mine the Monero cryptocurrency without notification.&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
Using movie streaming websites for mining is the ultimate way to consume clients’ computer resources while remaining under the radar. Normally, users select their preferred content and watch the movie, leaving the browser unmonitored for at least an hour. It’s easy and convenient, and the top movie streaming websites can generate some fine revenue for the operation’s owners.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/watchfree.to_.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;br /&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/cpu-usage.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;The CPU Usage of an ordinary laptop while accessing the movie streaming service&amp;nbsp;&lt;em style="box-sizing: border-box;"&gt;WatchFree.to&lt;/em&gt;, ranked 1,076 in the US and 1,625 by Alexa. The overall CPU usage of the machine while accessing the website is 69%.&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The brains behind such an operation can be either the website owners themselves who want to generate revenue without resorting to copious advertisements, or threat actors who inject a code to enable the mining activity via a popular website’s user base.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The above example demonstrates the use of a separate JavaScript file for the mining operation. In the example below, we see how to&amp;nbsp;&lt;a href="https://coin-hive.com/documentation/miner" rel="noopener" style="background-color: transparent; box-sizing: border-box; color: #e65785; text-decoration-line: none;" target="_blank"&gt;inject the CoinHive&lt;/a&gt;&amp;nbsp;Monero miner into a webpage, which is most likely done by the website owner.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/uptostream2.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;br /&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/uptostream-code.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;uptostream.com is a movie streaming service, ranked 573 in France and 7,698 globally. This service mines the Monero currency while using its users’ computer resources without notification.&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
When we examine the integration of the cryptocurrency miner into the&amp;nbsp;&lt;em style="box-sizing: border-box;"&gt;vidzi.tv&lt;/em&gt;&amp;nbsp;page, we can see the use of a non-official method – one that is different than the one CoinHive offers for use on their official website. &amp;nbsp;This page was most likely compromised by malicious actors and was surreptitiously injected with the miner.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/uptostream-code2.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;The injection of the CoinHive Monero miner into vitzi.tv, using a non-official method&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The examples presented above are only a few out of tens of cases observed during one week of research in September 2017. Each of these examples demonstrates a different way to integrate the miner into the website. All of them consume a significant percentage of CPU power, yet only in some cases can the percentage and number of threads be controlled by the website owner. Some websites were found to be related to each other, which may imply that an organized mining operation is taking place. In other cases, inactive domains, which according to Alexa remain highly popular, were found to be mining cryptocurrency. This might mean that several other websites are silently redirecting their users to this page.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;The Case of the Adylkuzz Monero Miner&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
One of the most noticeable cryptocurrency miners of 2017 is Adylkuzz, a malware which mines the Monero currency on its victims’ machines. While it may have been active in late April or early May, Adylkuzz notably emerged on May 15, 2017, only three days after the start of the global spread of the WannaCry ransomware campaign. Adylkuzz shares some similarities with WannaCry. It uses the EternalBlue exploit, which was made available to the public as part of the Shadow Brokers hacking group leak of NSA tools, to locate vulnerable machines and spread laterally within infected networks. It also uses the DoublePulsar backdoor to install its payload. Interestingly, an Adylkuzz attack shuts down SMB networking to prevent infection with other malware. Therefore, the Adylkuzz attack may have had an effect on the WannaCry ransomware spread. The close proximity of these two large-scale campaigns and the publicity gained by the WannaCry ransomware may have caused the Adylkuzz attacks to be attributed to WannaCry. What we saw in Adylkuzz demonstrates that cryptocurrency miners are now using similar attack vectors and increasing their share of the cyber landscape.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
An examination of the malware’s infection statistics through the Check Point ThreatCloud shows that Adylkuzz had a clear spike in its attack rate right when it first emerged and in parallel to the WannaCry campaign. It is still active.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/adylkuzz-graph.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;&lt;em style="box-sizing: border-box;"&gt;Adylkuzz Malware&amp;nbsp;&lt;/em&gt;&lt;/strong&gt;&lt;strong style="box-sizing: border-box;"&gt;&lt;em style="box-sizing: border-box;"&gt;Activity – The graph presents the Adylkuzz malware’s attack rate as of May 15, 2017&lt;/em&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
As the WannaCry ransomware and Adylkuzz miner campaigns, which use similar tools and techniques, began at the same time, they are believed to share similar targets. The top countries attacked by WannaCry include Russia, Ukraine, India and Taiwan.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
Now, let’s examine the top countries infected by Adylkuzz malware:&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;img alt="" class="img-responsive aligncenter" src="https://blog.checkpoint.com/wp-content/uploads/2017/10/adylkuzz-graph2.png" style="border: 0px; box-sizing: border-box; display: block; height: auto; margin-left: auto; margin-right: auto; max-width: 100%; vertical-align: middle;" /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
As shown above, Adylkuzz targets are spread all over the world, with no clear orientation to a specific region.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
WannaCry had no predefined targets. The ransomware was spread to a random C-Class IP range, while seeking vulnerable public facing SMB ports against which it could leverage the EternalBlue exploit. Therefore, we can estimate that Adylkuzz was spread in a similar way.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;strong style="box-sizing: border-box;"&gt;Summary&lt;/strong&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
According to&amp;nbsp;&lt;a href="https://www.cnbc.com/2017/08/15/bitcoin-miners-dig-more-than-just-the-money.html" rel="noopener" style="background-color: transparent; box-sizing: border-box; color: #e65785; text-decoration-line: none;" target="_blank"&gt;CNBC&lt;/a&gt;, as of August 2017, the cryptocurrency market was worth about $141 billion. While BitCoin was the first prominent cryptocurrency accepted by online markets and used by cybercriminals, today, tens of cryptocurrencies are widely used for both legitimate purposes, and by threat actors for non-legitimate and often fraudulent purposes.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The popularity of the various currencies among cryptocurrency miners is determined mostly based on the profitability that lies in mining the coin. As the use of a digital currency rises, so does the need to mine it. This is why in recent months we see an increase in the number of Crypto Mining malware campaigns making headlines.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
The Adylkuzz campaign’s use of EternalBlue and DoublePulsar highlights another increasing trend: Crypto Mining malware leveraging attack tools and vectors used by other malware and threat actors.&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;b&gt;As the public is not yet fully aware of the prevalence of this new malware type, it is often harder to detect, as was the case of Adylkuzz and WannaCry. We have no doubt that a new, silent yet significant actor, has slowly entered the threat landscape, letting threat actors monetise while victims’ endpoints and networks suffer from latency and decreased performance. This new threat is here to stay.&lt;/b&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div style="background-color: white; box-sizing: border-box; color: #222222; font-family: DIN, &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-size: 17px; margin-bottom: 9.5px;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/crypto-miners-silent-cpu-killer.html</link><author>noreply@blogger.com (Unknown)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-3508385618630633632</guid><pubDate>Fri, 05 Jan 2018 10:27:00 +0000</pubDate><atom:updated>2018-01-05T10:27:53.661+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">bBotnet</category><category domain="http://www.blogger.com/atom/ns#">CryptoMiner</category><title>News: Linux Monero crypto-miner botnet dubbed PyCryptoMiner spreading over the SSH protocol</title><description>&lt;h2&gt;
PyCryptoMiner, a new Linux-based botnet is spreading over the SSH protocol.&lt;/h2&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
On Wednesday, researchers from F5 Networks &lt;a href="https://f5.com/labs/articles/threat-intelligence/malware/new-python-based-crypto-miner-botnet-flying-under-the-radar"&gt;revealed their findings&lt;/a&gt; on PyCryptoMiner, a new Linux-based botnet which is spreading over the SSH protocol.&lt;br /&gt;&lt;img alt="Image result for PyCryptoMiner" src="https://f5.com/Portals/1/Images/userfiles/290207/PythonBot_Fig11.PNG" /&gt;&lt;br /&gt;The botnet is based on the Python scripting language which allows for obfuscation and appears to be "spreading silently," according to the team.&lt;br /&gt;&lt;br /&gt;PyCryptoMiner is also executed by a legitimate binary, which may be an interpreter shipped with the majority of Linux and Windows distributions.&lt;br /&gt;&lt;br /&gt;F5 Networks says that the botnet scans for potentially vulnerable Linux machines and guesses SSH login credentials -- a practice made simple if victims use basic, easy-to-crack phrases and letter combinations.&lt;br /&gt;&lt;br /&gt;Once scanning is complete, the botnet deploys a simple base64-encoded spearhead Python script which connects to a command-and-control (C&amp;amp;C) server to be issued additional commands and execute other Python payloads.&lt;br /&gt;&lt;br /&gt;If the original C&amp;amp;C server is down, the botnet trawls through Pastebin to find new assignments.&lt;br /&gt;&lt;br /&gt;Rather than hardcoding a C&amp;amp;C address into the system, the botnet's creator publishes alternative addresses through the Pastebin website, increasing the potential longevity of PyCryptoMiner.&lt;br /&gt;&lt;br /&gt;"Many of these adversaries use "bullet-proof" hosting services, however, a more sophisticated approach that attackers are now using is public file hosting services like Dropbox.com and Pastebin.com, which cannot be easily blacklisted or taken down," the researchers say. "This technique also allows the attacker to update the address of the C&amp;amp;C server whenever they need to."&lt;br /&gt;&lt;br /&gt;The threat actor works under the Pastebin username "WHATHAPPEN," and this name has been linked to a number of C&amp;amp;C servers as well as the online identity "Xinqian Rhys."&lt;br /&gt;&lt;br /&gt;The registrant has been connected to over 36,000 domains, some of which are associated with scams, gambling, and adult websites.&lt;br /&gt;&lt;br /&gt;PyCryptoMiner downloads the main controller from the C&amp;amp;C server or a directed source, and this system registers itself as a cron job to maintain persistence.&lt;br /&gt;&lt;br /&gt;The Host or DNS name, details relating to the OS and accompanying architecture, CPU numbers and CPU usage data are all collected. The bot then checks to see whether the system has already been infected by the malware before sending a report to the C&amp;amp;C server and accepting additional instructions.&lt;br /&gt;&lt;br /&gt;The botnet then harnesses the victim system for mining Monero. As of December 2017, the botnet has made roughly $46,000 for its creator.&lt;br /&gt;&lt;br /&gt;It appears that PyCryptoMiner, however, is in a constant state of evolution. As the researchers were gathering information on the botnet, new scanner functionality was bolted-on by the operator.&lt;br /&gt;&lt;br /&gt;The scanner hunts for vulnerable JBoss servers by exploiting &lt;a href="https://access.redhat.com/security/cve/cve-2017-12149"&gt;CVE-2017-12149&lt;/a&gt;, a deserialised data vulnerability in the Red Hat Enterprise Application Platform 5.2 disclosed only a few months ago.&lt;br /&gt;&lt;br /&gt;At the time of writing, the C&amp;amp;C servers supporting the botnet have been disabled. However, it would only take the threat actor to update the addresses to reinvigorate PyCryptoMiner. &lt;b&gt;As cryptocurrency captures the interest of consumer and cyberattacker alike, these kinds of botnets are likely to become a common threat in the future.&lt;/b&gt;</description><link>http://www.securenetconsulting.co.uk/2018/01/news-linux-monero-crypto-miner-botnet.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-6691283116603882629</guid><pubDate>Fri, 05 Jan 2018 08:58:00 +0000</pubDate><atom:updated>2018-01-05T08:58:52.915+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Vulnerability</category><title>Critical security vulnerability in phpMyAdmin used for managng SQL Database</title><description>&lt;h2&gt;
A critical security vulnerability has been reported in phpMyAdmin&lt;/h2&gt;
&lt;div&gt;
One of the most popular applications for managing the MySQL database which could allow remote attackers to perform dangerous database operations just by tricking administrators into clicking a link.&lt;br /&gt;&lt;img alt="Image result for vulnerability has been reported in phpMyAdmin" height="210" src="https://i2.wp.com/gbhackers.com/wp-content/uploads/2018/01/moKFa1514918599.png?fit=1200%2C630&amp;amp;ssl=1" width="400" /&gt;&lt;br /&gt;&lt;br /&gt;Discovered by an Indian security researcher, Ashutosh Barot, the vulnerability is a cross-site request forgery (CSRF) attack and affects phpMyAdmin versions 4.7.x (prior to 4.7.7).&lt;br /&gt;&lt;br /&gt;Cross-site request forgery vulnerability, also known as XSRF, is an attack wherein an attacker tricks an authenticated user into executing an unwanted action.&lt;br /&gt;&lt;br /&gt;According to an &lt;a href="https://www.phpmyadmin.net/security/PMASA-2017-9/"&gt;advisory&lt;/a&gt; released by phpMyAdmin, "by deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables, etc."&lt;br /&gt;&lt;br /&gt;phpMyAdmin is a free and open source administration tool for MySQL and MariaDB and is widely used to manage the database for websites created with WordPress, Joomla, and many other content management platforms.&lt;br /&gt;&lt;br /&gt;Moreover, a lot of hosting providers use phpMyAdmin to offer their customers a convenient way to organize their databases.&lt;br /&gt;&lt;br /&gt;Barot has also released a &lt;a href="https://www.youtube.com/watch?v=aao8fP4uZoM&amp;amp;feature=youtu.be"&gt;video&lt;/a&gt;, demonstrating how a remote attacker can make database admins unknowingly delete (DROP) an entire table from the database just by tricking them into clicking a specially crafted link.&lt;br /&gt;&lt;br /&gt;"A feature of phpMyAdmin was using a GET request and after that POST request for Database operations such as DROP TABLE table_name; GET requests must be protected against CSRF attacks. In this case, POST requests were used which were sent through URL (for bookmarking purpose may be); it was possible for an attacker to trick a database admin into clicking a button and perform a drop table database query of the attacker’s choice."&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;phpMyAdmin 4.7.7 to address this issue. So administrators are highly recommended to update their installations as soon as possible.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;hr style="background-color: white; box-sizing: content-box; font-family: Merriweather, Georgia, serif; font-size: 16px; font-style: italic; height: 0px;" /&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="MsoTableGrid" style="background-color: white; border-collapse: collapse; border-spacing: 0px; border: none; color: black; font-family: Merriweather, Georgia, serif; font-size: 16px;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="MsoTableGrid" style="background-color: white; border-collapse: collapse; border-spacing: 0px; border: none; color: black; font-family: Merriweather, Georgia, serif; font-size: 16px;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;b&gt;&lt;a href="http://www.securenetconsulting.co.uk/p/contact-us.html"&gt;Contact SecureNet Consulting&lt;/a&gt; today for solutions advice, engineering, support, professional services for SQL Database administration.&lt;/b&gt;&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/critical-security-vulnerability-in.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-8432906646876119715</guid><pubDate>Thu, 04 Jan 2018 17:22:00 +0000</pubDate><atom:updated>2018-01-04T17:22:06.576+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">news</category><category domain="http://www.blogger.com/atom/ns#">Patch News</category><category domain="http://www.blogger.com/atom/ns#">Vulnerability</category><title>News: Intel, AMD Chip Vulnerabilities Put Billions of Devices at Risk</title><description>&lt;br /&gt;
&lt;div style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;div style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em; text-align: right;"&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;span style="font-size: x-large;"&gt;Intel, AMD Chip Vulnerabilities Put Billions of Devices at Risk&lt;/span&gt;&lt;div&gt;
&lt;img alt="Image result for chip flaws" src="https://ichef.bbci.co.uk/news/320/cpsprodpb/15473/production/_99455178_chip.gif" /&gt;&lt;/div&gt;
Researchers have disclosed technical details of two new attack methods that exploit critical flaws in CPUs from Intel, AMD and other vendors. They claim billions of devices are vulnerable, allowing malicious actors to gain access to passwords and other sensitive data without leaving a trace.&lt;br /&gt;&lt;br /&gt;The flaws exploited by the Meltdown and Spectre attacks, tracked as CVE-2017-5715, CVE-2017-5753 and CVE-2017-5754, allow malicious applications to bypass memory isolation mechanisms and access data as it’s being processed. This can include passwords, photos, documents, emails, and data from instant messaging apps.&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
Billions of PCs, smartphones and cloud instances are affected, and while there is no evidence of attacks in the wild, researchers said exploitation attempts are unlikely to be detected.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Researchers had initially &lt;a href="http://www.securityweek.com/mitigations-prepared-critical-flaw-intel-cpus"&gt;planned on disclosing&lt;/a&gt; the security holes on January 9, but disclosure was moved up due to media reports and speculation surrounding the topic. Affected tech companies have already started informing users about the risks and the availability of patches and mitigations.&lt;div&gt;
&lt;br /&gt;&lt;b&gt;Microsoft&lt;/b&gt;Microsoft started implementing protections in Windows a few months ago. The company informed customers on Wednesday that it released several updates to help mitigate the vulnerabilities in Windows &lt;a href="https://support.microsoft.com/en-us/help/4073119/windows-client-guidance-for-it-pros-to-protect-against-speculative-exe"&gt;client&lt;/a&gt; and &lt;a href="https://support.microsoft.com/en-us/help/4072698/windows-server-guidance-to-protect-against-the-speculative-execution-s"&gt;server&lt;/a&gt; products. It has also released a tool designed to tell customers if protections are enabled.&lt;br /&gt;&lt;br /&gt;Microsoft is also working to ensure that customers of its &lt;a href="https://azure.microsoft.com/en-us/blog/securing-azure-customers-from-cpu-vulnerability/"&gt;Azure cloud platform&lt;/a&gt; are not vulnerable to Meltdown and Spectre attacks.&lt;br /&gt;&lt;br /&gt;“The majority of Azure infrastructure has already been updated to address this vulnerability. Some aspects of Azure are still being updated and require a reboot of customer VMs for the security update to take effect,” the company said.&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;b&gt;Intel, AMD and ARM&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;Initial reports claimed only Intel CPUs were affected by the vulnerabilities. While Intel was hit the hardest, some of the flaws affect AMD and ARM as well.&lt;br /&gt;&lt;br /&gt;&lt;a href="https://newsroom.intel.com/news/intel-responds-to-security-research-findings/"&gt;Intel&lt;/a&gt;&amp;nbsp;has informed customers that it’s working with manufacturers and operating system vendors to address the issues. The company also reassured customers that performance penalties will not affect regular computer users and will be mitigated over time.&lt;br /&gt;&lt;br /&gt;AMD is apparently only affected by the Spectre vulnerabilities (CVE-2017-5753 and CVE-2017-5715), and the company claims the risk to its processors is “near zero” thanks to their architecture.&lt;br /&gt;&lt;br /&gt;In the case of ARM, the company says only its Cortex-A75 processors are affected by all three vulnerabilities. Cortex R7, R8, A8, A9, A15, A17, A57, A72 and A73 processors are vulnerable to Meltdown attacks and affected by the CVE-2017-5715 Spectre flaw. Other existing products and future processors are not affected, the company said.&lt;br /&gt;&lt;br /&gt;&lt;a href="https://developer.arm.com/support/security-update"&gt;ARM&lt;/a&gt;&amp;nbsp;has provided kernel patches for Linux users and advised customers using Android and other OSs to check for updates from their respective vendor.&lt;b&gt;Google&lt;/b&gt;&lt;br /&gt;Google has&amp;nbsp;&lt;a href="https://support.google.com/faqs/answer/7622138"&gt;patched the vulnerabilities&lt;/a&gt;&amp;nbsp;in its Cloud platform, but some users may need to manually perform some tasks.&lt;br /&gt;&lt;br /&gt;“Google Compute Engine used VM Live Migration technology to perform host system and hypervisor updates with no user impact, no forced maintenance windows, and no mass reboots required. However, all guest operating systems and versions must be patched to protect against this new class of attack regardless of where those systems run,” Google said.&lt;br /&gt;&lt;br /&gt;The company has informed Android users that while the risk of attacks is small, the latest&amp;nbsp;&lt;a href="http://www.securityweek.com/google-patches-multiple-critical-high-risk-vulnerabilities-android"&gt;Android security updates&lt;/a&gt;&amp;nbsp;do provide additional protection against Spectre and Meltdown.&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;b&gt;Apple&lt;/b&gt;&lt;br /&gt;Apple has yet to make any public statements, but security expert &lt;a href="https://twitter.com/aionescu/status/948609809540046849"&gt;Alex Ionescu reported&lt;/a&gt;that &lt;a href="http://www.securityweek.com/apple-patches-vulnerabilities-macos-watchos-and-tvos"&gt;version 10.13.2 of macOS High Sierra&lt;/a&gt;, which Apple released on December 6, does fix the vulnerabilities.&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;b&gt;Xen, Amazon Web Services (AWS), DigitalOcean, Rackspace&lt;/b&gt;&lt;br /&gt;The &lt;a href="https://xenbits.xen.org/xsa/advisory-254.html"&gt;Xen Project&lt;/a&gt; said systems running any version of the Xen hypervisor are affected. Due to the accelerated disclosure, the organization has not had time to create patches, and mitigations are available for only one of the security holes.&lt;br /&gt;&lt;br /&gt;&lt;a href="https://aws.amazon.com/security/security-bulletins/AWS-2018-013/"&gt;AWS&lt;/a&gt;, which uses Xen, told customers, “All but a small single-digit percentage of instances across the Amazon EC2 fleet are already protected. The remaining ones will be completed in the next several hours, with associated instance maintenance notifications.&lt;br /&gt;&lt;br /&gt;&lt;a href="https://blog.rackspace.com/rackspace-is-tracking-vulnerabilities-affecting-processors-by-intel-amd-and-arm"&gt;Rackspace&lt;/a&gt;, which also uses Xen, is currently investigating the issue. &lt;a href="https://blog.digitalocean.com/a-message-about-intel-security-findings/"&gt;DigitalOcean&lt;/a&gt; has also launched an investigation, but the company has blamed Intel’s embargo for not determining potential impact sooner.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Mozilla&lt;/b&gt;&lt;br /&gt;&lt;a href="https://blog.mozilla.org/security/2018/01/03/mitigations-landing-new-class-timing-attack/"&gt;Mozilla&lt;/a&gt; has conducted some internal experiments and found that it is possible to use techniques similar to Meltdown and Spectre from web content to read private date between different origins. The full extent of the issue has yet to be determined, but some partial mitigations have already been added to Firefox&lt;/div&gt;
&lt;div&gt;
&lt;br /&gt;&lt;b&gt;Red Hat&lt;/b&gt;&lt;br /&gt;&lt;a href="https://access.redhat.com/errata/RHSA-2018:0016"&gt;Red Hat&lt;/a&gt; has classified the vulnerabilities as important and it has already developed kernel updates for affected versions of Red Hat Enterprise Linux.&lt;br /&gt;&lt;br /&gt;“We are working with our customers and partners to make these updates available, along with the information our customers need to quickly secure their physical systems, virtual images, and container-based deployments,” said Chris Robinson, manager of Product Security Assurance at Red Hat.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;nVIDIA&lt;/b&gt;&lt;br /&gt;&lt;a href="https://forums.geforce.com/default/topic/1033210/nvidias-response-to-speculative-side-channels-cve-2017-5753-cve-2017-5715-and-cve-2017-5754/"&gt;nVIDIA&lt;/a&gt; said its GPU hardware does not appear to be impacted by Meltdown and Spectre, but some system-on-a-chip (SoC) products using ARM CPUs are vulnerable. The company is working on identifying affected products and preparing mitigations.&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/news-intel-amd-chip-vulnerabilities-put.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-4511250530392082775</guid><pubDate>Thu, 04 Jan 2018 12:39:00 +0000</pubDate><atom:updated>2018-01-04T12:39:56.657+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Newsletter</category><title>Happy New Year SecureNet Consulting January 2018 Newsletter</title><description>&lt;table border="0" cellpadding="0" cellspacing="0" style="width: 100%px;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;td align="center" id="templateHeader" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; background-color: white; background-image: none; background-position: center; background-repeat: no-repeat; background-size: cover; background: #FFFFFF none no-repeat center/cover; border-bottom: 0; border-top: 0; mso-line-height-rule: exactly; padding-bottom: 0; padding-top: 9px;" valign="top"&gt;&lt;table align="center" border="0" cellpadding="0" cellspacing="0" class="templateContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 600px !important; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;td class="headerContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnImageBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;&lt;tbody class="mcnImageBlockOuter"&gt;
&lt;tr&gt;&lt;td class="mcnImageBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnImageContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;&lt;tbody&gt;
&lt;tr&gt;&lt;td class="mcnImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-left: 9px; padding-right: 9px; padding-top: 0; text-align: center;" valign="top"&gt;&lt;img align="middle" alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/55ecf4fd-4ebf-42a4-8615-a35736b4cd99.png" style="-ms-interpolation-mode: bicubic; border: 0; display: inline !important; height: auto; max-width: 536px; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="536" /&gt;
                                    
                                
                            &lt;/td&gt;
                        &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
            &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnImageBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnImageBlockOuter"&gt;
&lt;tr&gt;
                &lt;td class="mcnImageBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                    &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnImageContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                        &lt;tbody&gt;
&lt;tr&gt;
                            &lt;td class="mcnImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-left: 9px; padding-right: 9px; padding-top: 0; text-align: center;" valign="top"&gt;
                                
                                    
                                        &lt;img align="middle" alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/a3a71081-1679-41ef-90db-a25954879127.jpg" style="-ms-interpolation-mode: bicubic; border: 0; display: inline !important; height: auto; max-width: 980px; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="564" /&gt;
                                    
                                
                            &lt;/td&gt;
                        &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
            &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/td&gt;
          &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
                            &lt;/tr&gt;
&lt;tr&gt;
        &lt;td align="center" id="templateBody" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; background-color: white; background-image: none; background-position: center; background-repeat: no-repeat; background-size: cover; background: #FFFFFF none no-repeat center/cover; border-bottom: 0; border-top: 0; mso-line-height-rule: exactly; padding-bottom: 9px; padding-top: 9px;" valign="top"&gt;
         
         &lt;table align="center" border="0" cellpadding="0" cellspacing="0" class="templateContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 600px !important; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
          &lt;tbody&gt;
&lt;tr&gt;
                                   &lt;td class="bodyContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnTextBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnTextBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnTextBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-top: 9px;" valign="top"&gt;
               
       
    
                &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnTextContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 100%; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                    &lt;tbody&gt;
&lt;tr&gt;
                        
                        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding-bottom: 9px; padding-left: 18px; padding-right: 18px; padding-top: 0; text-align: left; word-break: break-word;" valign="top"&gt;
                        
                            &lt;h1 style="color: #202020; display: block; font-family: Helvetica; font-size: 26px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: center;"&gt;
&lt;em&gt;&lt;strong&gt;&lt;span style="color: gold;"&gt;Wishing You A Very&lt;br /&gt;
Happy New Year&lt;/span&gt; 2018&lt;/strong&gt;&lt;/em&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;span style="color: black;"&gt;SECURENET&lt;/span&gt;&lt;span style="color: dimgrey;"&gt; &lt;/span&gt;&lt;span style="color: grey;"&gt;CONSULTING&lt;/span&gt;&lt;br /&gt;
&lt;em&gt;Services and Solutions for Cyber Security &amp;amp; Data Protection&lt;br /&gt;
&lt;br /&gt;
&lt;span style="font-size: 20px;"&gt;IT Technical Engineering, Support &amp;amp; Professional Services&lt;/span&gt;&lt;/em&gt;&lt;/h1&gt;
&lt;h1 style="color: #202020; display: block; font-family: Helvetica; font-size: 26px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;span style="font-size: 12px;"&gt;&lt;strong&gt;January 2018&lt;/strong&gt;&lt;/span&gt;&lt;/h1&gt;
&lt;/td&gt;
                    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnBoxedTextBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    
 &lt;tbody class="mcnBoxedTextBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnBoxedTextBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;
                
    
                &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnBoxedTextContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                    &lt;tbody&gt;
&lt;tr&gt;
                        
                        &lt;td style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 9px; padding-left: 18px; padding-right: 18px; padding-top: 9px;"&gt;
                        
                            &lt;table border="0" cellspacing="0" class="mcnTextContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; background-color: #404040; border-collapse: collapse; min-width: 100% !important; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                                &lt;tbody&gt;
&lt;tr&gt;
                                    &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #f2f2f2; font-family: Helvetica; font-size: 14px; font-weight: normal; line-height: 150%; mso-line-height-rule: exactly; padding: 18px; text-align: center; word-break: break-word;" valign="top"&gt;
                                        &lt;div style="text-align: left;"&gt;
&lt;span style="font-size: 19px;"&gt;&lt;strong&gt;Security News &amp;amp; Trends from 2017 - what will we learn for 2018?&lt;/strong&gt;&lt;/span&gt;&lt;/div&gt;
&lt;ol&gt;
&lt;li style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; text-align: left;"&gt;Malware Outbreaks&lt;/li&gt;
&lt;li style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; text-align: left;"&gt;Data Breaches &amp;amp; Massive Data Loss&lt;/li&gt;
&lt;li style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; text-align: left;"&gt;Government Hacking Tools&lt;/li&gt;
&lt;li style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; text-align: left;"&gt;Attacks Against Crypto-currency Exchanges&lt;/li&gt;
&lt;/ol&gt;
&lt;div style="text-align: left;"&gt;
&lt;a href="http://www.securenetconsulting.co.uk/" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;Review cyber security news and add SecureNet to your news feed for daily security news updates&lt;/a&gt;&lt;/div&gt;
&lt;/td&gt;
                                &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
                    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnTextBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnTextBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnTextBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-top: 9px;" valign="top"&gt;
               
       
    
                &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnTextContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 100%; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                    &lt;tbody&gt;
&lt;tr&gt;
                        
                        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding-bottom: 9px; padding-left: 18px; padding-right: 18px; padding-top: 0; text-align: left; word-break: break-word;" valign="top"&gt;
                        
                            &lt;span style="font-size: 24px;"&gt;&lt;strong&gt;Technology Solutions &amp;amp; Service Focus&lt;/strong&gt;&lt;/span&gt;
                        &lt;/td&gt;
                    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/td&gt;
          &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
                            &lt;/tr&gt;
&lt;tr&gt;
        &lt;td align="center" id="templateColumns" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; background-color: white; background-image: none; background-position: center; background-repeat: no-repeat; background-size: cover; background: #FFFFFF none no-repeat center/cover; border-bottom: 2px solid #EAEAEA; border-top: 0; mso-line-height-rule: exactly; padding-bottom: 9px; padding-top: 0;" valign="top"&gt;
         &lt;table border="0" cellpadding="0" cellspacing="0" class="templateContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 600px !important; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                                        &lt;tbody&gt;
&lt;tr&gt;
                                            &lt;td style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;
            
            &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="columnWrapper" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 200px;"&gt;
             &lt;tbody&gt;
&lt;tr&gt;
              &lt;td class="columnContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/a-better-approach-to-network-security.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/205088d1-868c-4ba1-b4c3-8edd24d7654f.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 449px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;h3 class="post-title entry-title" style="color: #202020; display: block; font-family: Helvetica; font-size: 20px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;a href="http://www.securenetconsulting.co.uk/2017/10/a-better-approach-to-network-security.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;A better approach to network security&lt;/span&gt;&lt;/a&gt;&lt;/h3&gt;
&lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/ensure-internet-access-and-cloud.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/46cf5e3e-2da3-471d-8f34-11ac4eb562a6.jpg" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 902px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;a href="http://www.securenetconsulting.co.uk/2017/10/ensure-internet-access-and-cloud.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;Protecting key cloud and business application performance&lt;/span&gt;&lt;/a&gt;
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/ensure-internet-access-and-cloud.htmlhttp://www.securenetconsulting.co.uk/2017/10/sandboxing-keeping-ransomware-and.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/17113e32-7342-416f-bcee-3c34b366832b.jpg" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 500px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;h3 class="post-title entry-title" style="color: #202020; display: block; font-family: Helvetica; font-size: 20px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;span style="font-size: 16px;"&gt;&lt;a href="http://www.securenetconsulting.co.uk/2017/10/sandboxing-keeping-ransomware-and.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;Keeping ransomware and advanced threats out of your network&lt;/a&gt;&lt;/span&gt;&lt;/h3&gt;
&lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/td&gt;
             &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="columnWrapper" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 200px;"&gt;
             &lt;tbody&gt;
&lt;tr&gt;
              &lt;td class="columnContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/next-generation-security-intelligence.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/caf725fb-9fa0-4f28-8852-1074d79b0b2e.jpg" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 430px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;h3 class="post-title entry-title" style="color: #202020; display: block; font-family: Helvetica; font-size: 20px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;a href="http://www.securenetconsulting.co.uk/2017/10/next-generation-security-intelligence.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;Next generation security intelligence and analytics&lt;/span&gt;&lt;/a&gt;&lt;/h3&gt;
&lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/incident-response-service.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/f13279f5-5c4e-4346-9ab0-1637879998d3.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 250px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;a href="http://www.securenetconsulting.co.uk/2017/10/incident-response-service.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;Are you prepared to respond to a security breach?&lt;/a&gt;
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/08/password-security-to-prevnt-data.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/186034e4-a519-4709-96b6-ac852aa8fc28.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 590px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;h3 class="post-title entry-title" style="color: #202020; display: block; font-family: Helvetica; font-size: 20px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;a href="http://www.securenetconsulting.co.uk/2017/08/password-security-to-prevnt-data.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;Password security to prevent data breaches&lt;/span&gt;&lt;/a&gt;&lt;/h3&gt;
&lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/td&gt;
             &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="columnWrapper" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 200px;"&gt;
             &lt;tbody&gt;
&lt;tr&gt;
              &lt;td class="columnContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/vulnerability-assessment.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/c12ff70a-7dea-4abc-a6c6-cf8d1e814c4e.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 622px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;a href="http://www.securenetconsulting.co.uk/2017/10/vulnerability-assessment.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;&lt;span style="font-family: arial,helvetica,sans-serif;"&gt;Effective security starts with visibility&lt;/span&gt;&lt;/span&gt;&lt;/a&gt;
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/office-365-security-stay-compliant.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/8079db3b-e9cb-475e-b30e-b99b18bf3c52.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 300px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;h3 class="post-title entry-title" style="color: #202020; display: block; font-family: Helvetica; font-size: 20px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;a href="http://www.securenetconsulting.co.uk/2017/10/office-365-security-stay-compliant.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;Stay compliant - secure your data in Office 365&lt;/span&gt;&lt;/a&gt;&lt;/h3&gt;
&lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnCaptionBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnCaptionBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                

&lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnCaptionBottomContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt;"&gt;
    &lt;tbody&gt;
&lt;tr&gt;
        &lt;td align="center" class="mcnCaptionBottomImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 0 9px 9px 9px;" valign="top"&gt;
        
            
            &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/office-365-security-stay-compliant.htmlhttp://www.securenetconsulting.co.uk/2017/07/ediscovery-and-forensics-for-data-in.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
            

            &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/79d3062f-8e81-4838-a221-f1b6e60bc950.jpg" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 300px; outline: none; text-decoration: none; vertical-align: bottom;" width="164" /&gt;
            &lt;/a&gt;
        
        &lt;/td&gt;
    &lt;/tr&gt;
&lt;tr&gt;
        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #202020; font-family: Helvetica; font-size: 16px; line-height: 150%; mso-line-height-rule: exactly; padding: 0 9px 0 9px; text-align: left; word-break: break-word;" valign="top" width="164"&gt;
            &lt;h3 class="post-title entry-title" style="color: #202020; display: block; font-family: Helvetica; font-size: 20px; font-style: normal; font-weight: bold; letter-spacing: normal; line-height: 125%; margin: 0; padding: 0; text-align: left;"&gt;
&lt;a href="http://www.securenetconsulting.co.uk/2017/07/ediscovery-and-forensics-for-data-in.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #2baadf; font-weight: normal; mso-line-height-rule: exactly; text-decoration: underline;" target="_blank"&gt;&lt;span style="font-size: 16px;"&gt;Identify and protect your data in the cloud&lt;/span&gt;&lt;/a&gt;&lt;/h3&gt;
&lt;/td&gt;
    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;/td&gt;
             &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
          &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
                            &lt;/tr&gt;
&lt;tr&gt;
        &lt;td align="center" id="templateFooter" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; background-color: #fafafa; background-image: none; background-position: center; background-repeat: no-repeat; background-size: cover; background: #FAFAFA none no-repeat center/cover; border-bottom: 0; border-top: 0; mso-line-height-rule: exactly; padding-bottom: 9px; padding-top: 9px;" valign="top"&gt;
         
         &lt;table align="center" border="0" cellpadding="0" cellspacing="0" class="templateContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 600px !important; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
          &lt;tbody&gt;
&lt;tr&gt;
                                   &lt;td class="footerContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" valign="top"&gt;&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnImageBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnImageBlockOuter"&gt;
&lt;tr&gt;
                &lt;td class="mcnImageBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                    &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnImageContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                        &lt;tbody&gt;
&lt;tr&gt;
                            &lt;td class="mcnImageContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-left: 9px; padding-right: 9px; padding-top: 0; text-align: center;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/2017/10/securenet-consulting-services_11.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img align="middle" alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/c496380b-a57a-4110-a46a-fac8ac1389ab.png" style="-ms-interpolation-mode: bicubic; border: 0; display: inline !important; height: auto; max-width: 746px; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="564" /&gt;
                                    &lt;/a&gt;
                                
                            &lt;/td&gt;
                        &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
            &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnTextBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnTextBlockOuter"&gt;
&lt;tr&gt;
            &lt;td class="mcnTextBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-top: 9px;" valign="top"&gt;
               
       
    
                &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnTextContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; max-width: 100%; min-width: 100%; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
                    &lt;tbody&gt;
&lt;tr&gt;
                        
                        &lt;td class="mcnTextContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; color: #656565; font-family: Helvetica; font-size: 12px; line-height: 150%; mso-line-height-rule: exactly; padding-bottom: 9px; padding-left: 18px; padding-right: 18px; padding-top: 0; text-align: center; word-break: break-word;" valign="top"&gt;
                        
                            &lt;span style="font-size: 20px;"&gt;&lt;strong&gt;&lt;span style="color: darkorange;"&gt;Book &lt;/span&gt;Technical Engineering and Professional Services&lt;/strong&gt;&lt;/span&gt;
                        &lt;/td&gt;
                    &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
        &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnImageGroupBlockOuter"&gt;
&lt;tr&gt;
                &lt;td class="mcnImageGroupBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                    
                    &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 273px;"&gt;
                            &lt;tbody&gt;
&lt;tr&gt;
                                &lt;td class="mcnImageGroupContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-left: 9px; padding-top: 0;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/p/it-professional-services.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/b6b1c87b-80e0-4419-b9d8-c2eee2454d0e.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 100%; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="219" /&gt;
                                    &lt;/a&gt;
                                
                                &lt;/td&gt;
                            &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;table align="right" border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 273px;"&gt;
                            &lt;tbody&gt;
&lt;tr&gt;
                                &lt;td class="mcnImageGroupContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-right: 9px; padding-top: 0;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/p/technical-services.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/5e7ca67c-05b2-44d7-8d13-7399afde3a0e.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 100%; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="219" /&gt;
                                    &lt;/a&gt;
                                
                                &lt;/td&gt;
                            &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
            &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnImageGroupBlockOuter"&gt;
&lt;tr&gt;
                &lt;td class="mcnImageGroupBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                    
                    &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 273px;"&gt;
                            &lt;tbody&gt;
&lt;tr&gt;
                                &lt;td class="mcnImageGroupContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-left: 9px; padding-top: 0;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/p/contact-us.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/9952e812-3173-4a5b-a241-2e00893b3940.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 100%; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="220" /&gt;
                                    &lt;/a&gt;
                                
                                &lt;/td&gt;
                            &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;table align="right" border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 273px;"&gt;
                            &lt;tbody&gt;
&lt;tr&gt;
                                &lt;td class="mcnImageGroupContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-right: 9px; padding-top: 0;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/p/cloud-services.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/7f2d3e9c-1e90-402a-b411-49d60b79e883.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 100%; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="219" /&gt;
                                    &lt;/a&gt;
                                
                                &lt;/td&gt;
                            &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;
            &lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupBlock" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 100%px;"&gt;
    &lt;tbody class="mcnImageGroupBlockOuter"&gt;
&lt;tr&gt;
                &lt;td class="mcnImageGroupBlockInner" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding: 9px;" valign="top"&gt;
                    
                    &lt;table align="left" border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 273px;"&gt;
                            &lt;tbody&gt;
&lt;tr&gt;
                                &lt;td class="mcnImageGroupContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-left: 9px; padding-top: 0;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/p/it-support.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/2a9559ce-0ed5-497c-a531-e6c4c878afc5.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 100%; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="219" /&gt;
                                    &lt;/a&gt;
                                
                                &lt;/td&gt;
                            &lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;table align="right" border="0" cellpadding="0" cellspacing="0" class="mcnImageGroupContentContainer" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; border-collapse: collapse; mso-table-lspace: 0pt; mso-table-rspace: 0pt; width: 273px;"&gt;
                            &lt;tbody&gt;
&lt;tr&gt;
                                &lt;td class="mcnImageGroupContent" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly; padding-bottom: 0; padding-right: 9px; padding-top: 0;" valign="top"&gt;
                                
                                    &lt;a class="" href="http://www.securenetconsulting.co.uk/p/training_7.html" style="-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%; mso-line-height-rule: exactly;" target="_blank" title=""&gt;
                                        &lt;img alt="" class="mcnImage" src="https://gallery.mailchimp.com/b669bc3072c2df29656047f73/images/1c01d764-4bb1-47b1-9ca1-715a017a2556.png" style="-ms-interpolation-mode: bicubic; border: 0; height: auto; max-width: 100%; outline: none; padding-bottom: 0; text-decoration: none; vertical-align: bottom;" width="219" /&gt;
                                    &lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
&lt;/td&gt;&lt;/tr&gt;
&lt;/tbody&gt;&lt;/table&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/happy-new-year-securenet-consulting.html</link><author>noreply@blogger.com (Securenet Consulting)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-6441903759392113147</guid><pubDate>Tue, 02 Jan 2018 17:22:00 +0000</pubDate><atom:updated>2018-01-02T17:22:44.129+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">anti virus</category><category domain="http://www.blogger.com/atom/ns#">hacking</category><title>Using anti virus tools to search for classified documents</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;h2&gt;
Former NSA hacker, demonstrated how to subvert the Kaspersky Lab antivirus and turn it into a powerful search tool for classified documents.&lt;br /&gt;&lt;span style="font-size: small; font-weight: normal;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;img alt="Image result for antivirus search tool for classified documents." src="https://objective-see.com/images/blog/blog_0x22/detection.png" /&gt;&lt;span style="font-size: small; font-weight: normal;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The Kaspersky case demonstrated that security software can be exploited by intelligence agencies as a powerful spy tool.&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;Patrick Wardle, chief research officer at Digita Security and former NSA hacker, demonstrated it by subverting the Kaspersky Lab antivirus and turning it into a powerful search tool for classified documents.&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;“In the battle against malicious code, antivirus products are a staple,” Patrick Wardle &lt;a href="https://www.nytimes.com/2018/01/01/technology/kaspersky-lab-antivirus.html"&gt;told&lt;/a&gt; the New York Times. “Ironically, though, these products share many characteristics with the advanced cyberespionage collection implants they seek to detect.”&lt;br /&gt;&lt;br /&gt;“I wanted to know if this was a feasible attack mechanism,” Mr. Wardle added. “I didn’t want to get into the complex accusations. But from a technical point of view, if an antivirus maker wanted to, was coerced to, or was hacked or somehow subverted, could it create a signature to flag classified documents?”&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;&lt;br /&gt;In December, US President Donald Trump signed a bill that bans the use of Kaspersky Lab products and services in federal agencies.&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;According to a draft of a top-secret report leaked by Edward J. Snowden, the NSA at least since 2008 was targeting antivirus software (i.e. Checkpoint and Avast) to collect sensitive information stored in the target machines.&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;Mr. Wardle conducted a reverse-engineering of Kaspersky Lab antivirus software to explore the possibility to abuse it for intelligence purposes. The expert’s goal was to compose a signature that is able to detect classified documents.&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;Mr. Wardle discovered that the code incredibly complex, unlike traditional antivirus software, Kaspersky’s malware signatures are easily updated. This feature can be tweaked to automatically scan the victim’s machine and steal classified documents.&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small; font-weight: normal;"&gt;“Modern anti-virus products are incredibly complex pieces of software and Kaspersky is likely one of the most complex. Thus, merely gaining a reasonable understanding of its signatures and scanning logic is a challenging task.” &lt;a href="https://objective-see.com/blog/blog_0x22.html"&gt;wrote Wardle&lt;/a&gt;.&lt;br /&gt; &lt;br /&gt;“Though the installer ships with built-in signatures, as is the case with any anti-virus program, Kaspersky’s anti-virus engine regularly checks for, and automatically installs any new signatures” “When new signatures are available, they are downloaded by the kav daemon from Kaspersky’s update servers”&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small;"&gt;Wardle found antivirus scanning could be the used for cyberespionage activities.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: normal;"&gt;The expert pointed out that officials routinely classify top secret documents with the marking “TS/SCI,” (“Top Secret/Sensitive Compartmented Information),” then he added a rule to Kaspersky’s antivirus program to flag any documents that contained the “TS/SCI” marker.&lt;/span&gt;&lt;/span&gt;&lt;/h2&gt;
&lt;h2&gt;
&lt;span style="font-size: small;"&gt;&lt;span style="font-weight: normal;"&gt;To test the new rule, the researcher edited a document on his computer containing text from the Winnie the Pooh children’s book series and added “TS/SC” marker.&lt;/span&gt;&lt;/span&gt;&lt;/h2&gt;
&lt;div&gt;
&lt;div class="story-body-supplemental" style="border: 0px; margin: 0px; padding: 0px; vertical-align: baseline;"&gt;
&lt;div class="story-body story-body-2" style="border: 0px; margin: 0px; padding: 0px; vertical-align: baseline;"&gt;
&lt;div data-para-count="414" data-total-count="6617" style="background-color: white; color: #555555; font-family: inherit; font-size: 14px; font-style: inherit; font-weight: inherit; padding-bottom: 0.1em; padding-top: 0.1em;"&gt;
&lt;a href="https://i1.wp.com/securityaffairs.co/wordpress/wp-content/uploads/2018/01/Kaspersky-antivirus.png" style="border: 0px; color: #1d2fa1; font-family: inherit; font-style: inherit; font-weight: inherit; margin: 0px; padding: 0px; text-decoration-line: none; transition: color 0.2s linear, background 0.1s linear, border-color 0.1s linear; vertical-align: baseline;"&gt;&lt;img alt="Kaspersky antivirus" class="alignnone size-full wp-image-67349" height="592" sizes="(max-width: 612px) 100vw, 612px" src="https://i1.wp.com/securityaffairs.co/wordpress/wp-content/uploads/2018/01/Kaspersky-antivirus.png?resize=612%2C592" srcset="https://i1.wp.com/securityaffairs.co/wordpress/wp-content/uploads/2018/01/Kaspersky-antivirus.png?w=612 612w, https://i1.wp.com/securityaffairs.co/wordpress/wp-content/uploads/2018/01/Kaspersky-antivirus.png?resize=300%2C290 300w" style="border: none; font-family: inherit; font-style: inherit; font-weight: inherit; height: auto; margin: 0px; max-width: 100%; padding: 0px; vertical-align: baseline;" width="612" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;&lt;br /&gt;As soon as the Winnie the Pooh document was saved to his machine, the Kaspersky’s antivirus software flagged and quarantined the document.&lt;br /&gt;&lt;br /&gt;The successive phase of Wardle’s test was on discovering how flagged documents are managed, but it normal that an antivirus software send data back to the company for further analysis.&lt;br /&gt;&lt;br /&gt;Kaspersky Lab explained that Wardle’s research is not corrected because the company is not able to deliver a specific signature or update to only one user in a stealthy way.&lt;br /&gt;&lt;br /&gt;“It is impossible for Kaspersky Lab to deliver a specific signature or update to only one user in a secret, targeted way because all signatures are always openly available to all our users; and updates are digitally signed, further making it impossible to fake an update,” Kaspersky said in a statement.&lt;br /&gt;&lt;br /&gt;Anyway, Wardle’s research demonstrated that hacking vendor’s platforms it is possible to use the antivirus as a search tool.&lt;br /&gt;&lt;br /&gt;“However, a malicious or willing insider within any anti-virus company, who could tactically deployed such a signature, would likely remain undetected. And of course, in a hypothetical scenario; any anti-virus company that is coerced to, or is willing to work with a larger entity (such as a governemnt) would equally be able to stealthily leverage their product to detect and exfilitrate any files of interest.” &lt;a href="https://objective-see.com/blog/blog_0x22.html"&gt;concluded the expert&lt;/a&gt;.&lt;br /&gt;“Sometimes the line between what is good and evil, comes down to a signal signature… “&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
</description><link>http://www.securenetconsulting.co.uk/2018/01/using-anti-virus-tools-to-search-for.html</link><author>noreply@blogger.com (Unknown)</author></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-2068955506287606253.post-7660012992754821176</guid><pubDate>Wed, 13 Dec 2017 15:00:00 +0000</pubDate><atom:updated>2019-01-03T11:30:45.674+00:00</atom:updated><category domain="http://www.blogger.com/atom/ns#">Incident Response</category><category domain="http://www.blogger.com/atom/ns#">Professional Services</category><category domain="http://www.blogger.com/atom/ns#">Training</category><title>Incident Response Service</title><description>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhlph0Sr-LdDcVmcPIHopuLbI7NDftkxQSM6WRTf8A4BDcCZo2z9XmRBbpm9xaysS-QqIWLp9scFVOHbCAUPagig7b8-gA9tRPVn1Azn0Y-54C4F5iUb6A0090myPrRsprXV4YaRCLSIzzv/s1600/incident+response.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" data-original-height="250" data-original-width="250" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhlph0Sr-LdDcVmcPIHopuLbI7NDftkxQSM6WRTf8A4BDcCZo2z9XmRBbpm9xaysS-QqIWLp9scFVOHbCAUPagig7b8-gA9tRPVn1Azn0Y-54C4F5iUb6A0090myPrRsprXV4YaRCLSIzzv/s1600/incident+response.png"&gt;&lt;/a&gt;&lt;/div&gt;
&lt;span style="color: #38761d;"&gt;&lt;span style="font-family: &amp;quot;arial&amp;quot; , &amp;quot;helvetica&amp;quot; , sans-serif; font-size: large;"&gt;Be pro-active: &lt;span style="color: #444444;"&gt;&lt;span style="color: #444444;"&gt;plan and prepare to reduce chances of breach incidents&lt;/span&gt;&lt;/span&gt;&lt;br&gt;&lt;br&gt; Turn your incident response plan into a proactive program&lt;br&gt;&lt;br&gt;Incident response &amp;amp; security services here for you and your team, when an unforeseen incident occurs&lt;/span&gt;&lt;/span&gt;&lt;br&gt;
&lt;br&gt;
&lt;br&gt;
&lt;/div&gt;&lt;a href="http://www.securenetconsulting.co.uk/2017/10/incident-response-service.html#more"&gt;Read more »&lt;/a&gt;</description><link>http://www.securenetconsulting.co.uk/2017/10/incident-response-service.html</link><author>noreply@blogger.com (Securenet Consulting)</author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" height="72" url="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhlph0Sr-LdDcVmcPIHopuLbI7NDftkxQSM6WRTf8A4BDcCZo2z9XmRBbpm9xaysS-QqIWLp9scFVOHbCAUPagig7b8-gA9tRPVn1Azn0Y-54C4F5iUb6A0090myPrRsprXV4YaRCLSIzzv/s72-c/incident+response.png" width="72"/></item></channel></rss>