Skip to content

What’s the business risk of not backing up Azure AD?

Keepit’s Paul Robichaux, Microsoft MVP and Keepit Sr. Director of Product, explains the math of not protecting Azure AD (Entra ID).


“It’s all about the probability of ‘x’ expected damage. The probability: 2/3 of Azure AD admins don’t use MFA. With 50 million password attacks daily targeting Azure AD, you can be pretty sure you’ll be on the receiving end of a successful attack one day. Or a system outage. Or human error.”


The damage: Protecting your identities and policies is critical to keeping your business up and running. Losing access to Azure AD means your business is dead in the water.


The solution: Back up Azure AD in a completely separate infrastructure.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.

How a UK retail giant saved a LOT of time and money with CloudM

A UK based high street retail giant with over 500 stores across the UK, Europe, Asia and the Middle East and a global online presence, employing nearly 50,000 staff worldwide. With over a century and a half of retail experience, they cater for 5 million+ active customers globally in 70 countries, specializing in Clothing, Footwear, Accessories and Home products.
Even after 150 years, this retailer actively researches and invests in the latest technologies, including eCommerce, digital transformation and security, to keep their processes moving forward and continue to offer greater value to their customers.
 

The Issue

The retailer wanted to cut down license cost as their VFE licenses were due to be renewed as costly Google AU licenses, whilst also retaining the data in accordance to data regulation laws.

Offboarding was also taking them too long with an average of 1000 offboarding processes a month eating up the valuable time of their IT team. They also wanted to be able to standardize the process across all departments to speed up offboardings and avoid costly human error.

 

The Process

The retailer had spoken to us several years previously about our user management software before ultimately, and unsuccessfully, choosing a competitor. Upon reengaging with CloudM, they were pleasantly surprised by not only the growth and maturity of the product modules and features, but the attentive, professional and knowledgeable service they received throughout.

Being a company of their size, they wanted to make sure that CloudM would be a good fit for them long term. Our Sales Architects quickly allayed any fears that they had with a series of product demos with senior members from their IT team, explaining how CloudM Automate and CloudM Archive modules would combine to deliver a seamless process for their administrators, as well as scoping out potential issues.

As soon as the customer started to use CloudM, our Customer Success Team was on hand to guide them through the initial stages, helping them to set up their roles, groups and offboarding policies and archive storage buckets.

Offboarding workflow 2

Claire Robinson, Customer Success Manager at CloudM, explained “The enablement process is crucial with every customer. Helping them start on the right track means that they can get the very best out of CloudM as quickly as possible. We want our customers to succeed so we are always on hand to help, listen and resolve, whether it’s day one or year 10 of their journey with us”.

It’s this cycle of communication and collaboration that encouraged the retail giant to suggest several software improvements that would make their experience easier. This feedback has helped us to develop and add several new features to the suite, benefiting all of our CloudM Automate and Archive customers. We also looked for new and innovative ways to use our current features to solve some of these issues.

 

The Result

As far as returns on investment go, few are as quick and evident as the saving the retailer made by simply using CloudM Archive and Google Cloud Storage as an alternative to transitioning to Google Archive User (AU) licenses.

“CloudM pay for themselves – We saved so much in license costs and the amount of time and resource needed to do really quite simple tasks.”

With almost 3000 free VFE accounts due to transition to paid AU licenses at their next renewal, the business was looking at an eye watering bill of nearly $350,000 over the next two years alone. CloudM helped to eliminate that need with CloudM Archive, allowing them to keep all their user data, securely and totally compliant, at a fraction of the cost. CloudM Archive has been proven to save customers as much as 75% compared to renewing to AU licenses.

But ROI shouldn’t be counted in purely financial terms alone. Time can be equally as valuable as money. Our offboarding features allowed the retailer’s IT team to easily build bespoke workflows, customizable for each Organizational Unit and Smart Team, so the entire offboarding process is automated and triggered with one button. As they routinely offboarded around 1000 users a month, we worked out that CloudM would save them an incredible 21 full days on manual offboarding tasks…every single month. Even better, with CloudM Automate, they no longer have to rely on GAM scripts or continually accessing the Google Admin Console.

Now, their IT teams can get on with the important tasks, assured that we are taking good care of the monotonous offboarding work in the background.

 

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About CloudM
CloudM is an award-winning SaaS company whose humble beginnings in Manchester have grown into a global business in just a few short years.

Our team of tech-driven innovators have designed a SaaS data management platform for you to get the most from your digital workspace. Whether it’s Microsoft 365, Google Workspace or other SaaS applications, CloudM drives your business through a simple, easy-to-use interface, helping you to work smarter, not harder.

By automating time-consuming tasks like IT admin, onboarding & offboarding, archiving and migrations, the CloudM platform takes care of the day-to-day, allowing you to focus on the big picture.

With over 35,000 customers including the likes of Spotify, Netflix and Uber, our all-in-one platform is putting office life on auto-pilot, saving you time, stress and money.

ESET Research: Infamous IoT botnet Mozi taken down via a kill switch

  • ESET researchers have observed the sudden demise of one of the most prolific Internet of Things (IoT) botnets: Mozi has been responsible for the exploitation of hundreds of thousands of devices a year since 2019.
  • ESET observed a drop in Mozi’s activity in India and China in August, later discovering a kill switch that disabled the malware and stripped the Mozi bots of their functionality.
  • There are two potential instigators for this takedown: the original Mozi botnet creator or Chinese law enforcement, perhaps enlisting or forcing the cooperation of the original actor or actors. The sequential targeting of India and then China suggests that the takedown was carried out deliberately, with one country targeted first and the other a week later.

BRATISLAVA — November 1, 2023 — ESET Research recently observed the sudden demise of one of the most prolific Internet of Things (IoT) botnets, named Mozi, infamous for exploiting vulnerabilities in hundreds of thousands of IoT devices each year. User Datagram Protocol (UDP) observed an unanticipated drop in activity that began in India and was also observed in China a week later. The change was caused by an update to Mozi bots that stripped them of their functionality. A few weeks following these events, ESET researchers were able to identify and analyze the kill switch that caused Mozi’s demise.

“The demise of one of the most prolific IoT botnets is a fascinating case of cyber forensics, providing us with intriguing technical information on how such botnets in the wild are created, operated, and dismantled,” says ESET researcher Ivan Bešina, who investigated the disappearance of Mozi.

On September 27, 2023, ESET researchers spotted the control payload (configuration file) inside a UDP message missing the typical content; its new activity was in fact to act as the kill switch responsible for Mozi’s takedown. The kill switch stopped the parent process – the original Mozi malware – and disabled certain system services, replaced the original Mozi file with itself, executed certain router/device configuration commands, and disabled access to various ports.

Despite the drastic reduction in functionality, the Mozi bots have maintained persistence, indicating a deliberate and calculated takedown. ESET analysis of the kill switch showed a strong connection between the botnet’s original source code and recently used control payloads that were signed by the correct private keys.

“There are two potential instigators for this takedown: the original Mozi botnet creator or Chinese law enforcement, perhaps enlisting or forcing the cooperation of the original actor or actors. The sequential targeting of India and then China suggests that the takedown was carried out deliberately, with one country targeted first and the other a week later,” explains Bešina.

For more technical information about the demise of the Mozi botnet, check out the blog post “Who killed Mozi? Finally putting the IoT zombie botnet in its grave” Make sure to follow ESET Research on Twitter (now known as X) for the latest news from ESET Research.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

23.9.8 ‘Voyager’ released

Enhancements

  • Improve security posture of the Comet Server web interface by adding additional XSS protections

Bug Fixes

  • Fixed an issue with CVE-2023-44487 HTTP/2 Rapid Reset Attack
  • Fixed an issue with MySQL streaming restore raising packet size errors when restoring large blobs
  • Fixed an issue that prevented using Spanned storage for Storage Role in the Comet Server web interface
  • Fixed a cosmetic issue with spacing around the warning message when viewing stale vault analysis information in the Comet Server web interface

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Comet
We are a team of dedicated professionals committed to developing reliable and secure backup solutions for MSP’s, Businesses and IT professionals. With over 10 years of experience in the industry, we understand the importance of having a reliable backup solution in place to protect your valuable data. That’s why we’ve developed a comprehensive suite of backup solutions that are easy to use, scalable and highly secure.

ESET 於著名端點安全報告中獲評為「強勢表現者」

全球資訊安全領導者 ESET,於《Forrester Wave™:2023 年第 4 季度,端點安全報告》中獲評為「強勢表現者」(Strong Performer)。Forrester 是一家備受尊重的分析機構,透過細緻的研究和分析,針對 13 家頂尖端點安全供應商進行了 25 項標準評估,以協助安全和風險專業人員選擇符合其需求的正確解決方案。

該報告強調了端點安全解決方案的重要性。作為企業使用者的首道和最後一道防線,解決方案必須能夠保護裝置免受惡意軟件的侵害,並迅速高效地解決安全事件。報告指出「ESET 的與眾不同之處,在於它能夠支援需要維護氣隙基礎架構(Air-gapped Infrastructure)的企業」,這凸顯了該公司對滿足多樣安全需求的承諾。

報告還指出,「ESET 在針對端點惡意軟件和攻擊預防引擎方面處於主導地位」。

ESET 首席產品總監 Jakub Debski 表示:「保護我們的用戶及其業務免受最複雜的先進威脅是 ESET 業務使命的核心。在這個快速變化的數碼環境中,企業必須擁有強大且先進的偵測和回應工具。我們相信,安全和風險專業人員可以透過選擇 ESET 創新的解決方案,為其企業做出明智的決策。」

ESET 相信 Forrester 的肯定,將使其在端點安全市場上成為一個更有競爭力的參與者,並進一步鞏固了該公司提供先進可靠安全解決方案的聲譽。ESET 始終堅持其使命,為企業提供頂尖數碼安全工具,確保對不斷演變的網絡威脅提供強大的保護。

About Version 2

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products. Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

關於ESET
ESET成立於1992年,是一家面向企業與個人用戶的全球性的電腦安全軟件提供商,其獲獎產品 — NOD32防病毒軟件系統,能夠針對各種已知或未知病毒、間諜軟件 (spyware)、rootkits和其他惡意軟件為電腦系統提供實時保護。ESET NOD32佔用 系統資源最少,偵測速度最快,可以提供最有效的保護,並且比其他任何防病毒產品獲得了更多的Virus Bulletin 100獎項。ESET連續五年被評為“德勤高科技快速成長500 強”(Deloitte’s Technology Fast 500)公司,擁有廣泛的合作夥伴網絡,包括佳能、戴爾、微軟等國際知名公司,在布拉迪斯拉發(斯洛伐克)、布裏斯托爾(英國 )、布宜諾斯艾利斯(阿根廷)、布拉格(捷克)、聖地亞哥(美國)等地均設有辦事處,代理機構覆蓋全球超過100個國家。

×

Hello!

Click one of our contacts below to chat on WhatsApp

×