Skip to content

Five Ways to Master Remote Access Security

Remote Access Security: A New Reality

No matter what industry you’re in, your company has likely been affected by the coronavirus outbreak. In fact, you’re probably reading this from home as we speak. Remote work is a new reality. While many of us will return to the office when it’s deemed safe, many companies have seen first-hand the value and ability of employees to work from home and will look to enhance and expand their remote workforces when things return to normal.

For network security teams, this poses a host of new challenges, particularly given the loss of physical control over those newly at-home corporate devices. But have no fear…we’re here to share the important and often overlooked remote access security best practices to consider as you elevate your remote access visibility and security.

I. A Bridge Too Far

No,we’re not talking about the 1977 WWII film starring Michael Caine and Sean Connery (albeit a great movie). Today, companies use VPN gateways and/or virtual remote desktops to provide their remote employees with access to the corporate network and other internal resources.

The problem, however, is that some of the most popular VPN vendors have admitted to significant vulnerabilities that would allow any person from the internet with no credentials to use the VPN gateway as the bridge to your corporate network and crown jewels.

II. Are You Afraid of the Dark?

90s kids will get this Nickelodeon reference, although it’s not the show we’re focused on today. We’re all afraid of the dark, and rightly so…scary stuff happens in the dark. That’s why you need to be continuously aware of the risk posture of every remote device connecting to the network continuously – all the time, every time, no matter location or device type. This will allow you to react in real-time to potential threats before $#!% really hits the fan.

Want to unlock the next three remote access security best practices? Download the full eBook today!

Michael Marvin

Director of Marketing

Mike leads global cross-channel marketing efforts at Portnox. Over the last ten years, Mike has led marketing and communications teams across a variety of areas in B2B tech, including AdTech and FinTech. He holds a B.A. in English and American Studies from Hobart College.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Portnox
Portnox provides simple-to-deploy, operate and maintain network access control, security and visibility solutions. Portnox software can be deployed on-premises, as a cloud-delivered service, or in hybrid mode. It is agentless and vendor-agnostic, allowing organizations to maximize their existing network and cybersecurity investments. Hundreds of enterprises around the world rely on Portnox for network visibility, cybersecurity policy enforcement and regulatory compliance. The company has been recognized for its innovations by Info Security Products Guide, Cyber Security Excellence Awards, IoT Innovator Awards, Computing Security Awards, Best of Interop ITX and Cyber Defense Magazine. Portnox has offices in the U.S., Europe and Asia. For information visit http://www.portnox.com, and follow us on Twitter and LinkedIn.。

Back to school 2020 – stay safe online with ESET Internet Security

Bratislava –  The 2020 back to school season will be unlike any other — whether you’re heading back to school physically or virtually, it is essential that students, teachers and administrators alike are protected against online threats.

COVID-19 has dramatically altered the education experience for the foreseeable future, both for school-age children and university students. For many, virtual classrooms replaced physical ones overnight, turning living rooms into classrooms and disrupting technological systems already in place.

With students relying on home devices and networks often shared by multiple users, it has never been more important to secure your networks and personal and professional data. As virtual schooling becomes more commonplace, a longer-term concern for educators and students alike is how to maintain online privacy and data protection as personal information, such as grades and behavioral reports, need to be shared. For those returning to the physical classroom, abiding by hygienic and social distancing guidelines will be critical, and teachers can focus on the physical safety of their students once they know their online experience is secured.

ESET Internet Security offers advanced protection from hackers, scams and malware, and is a multi-layered security system that protects you against all types of online and offline threats. Key features include:

Multiplatform protection – Secure all your devices with a single license. No matter whether you run on a Mac, Windows, Android or Linux, we’ve got you covered!

Keep your privacy protected – Prevent unauthorized access to your computer and misuse of your data. Stay safe while making online payments – Our product automatically protects your internet banking and offers a special secured browser through which you can safely pay online and access web-based crypto wallets.

Anti-theft features – Stay safer by tracking and locating your missing computer in case it gets lost or stolen, and identify thieves via your laptop’s built-in camera.

Enjoy safer connections – Protect your webcam and home router from intruders. Test your passwords, and scan your smart devices for vulnerabilities.

ESET Consumer & IoT Segment Director, Mária Trnková, commented, “So many aspects of life have changed dramatically over the course of the year, and education is no exception. The pandemic has transformed the teaching and learning experience for many across the globe, and the last thing anyone needs is to deal with a cybersecurity breach. We are proud to support educators and students with cutting-edge technology to ensure that all users are safe and secure this back to school season.”

Click here to find out more information about ESET Internet Security.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

The OT & IoT Cybersecurity Feed

News Post SCADAfence Main-1

Hey, I’m SCADAGirl.

I’m a cybersecurity superhero that ensures that OT & IoT networks are safe.

Here is my commentary on the latest headlines in OT & IoT security.

 

News Post SCADAfence Siemens

ICS Advisory (ICSA-20-224-04) Siemens SCALANCE, RUGGEDCOM 

SCADAgirlSCADAfence Research – Siemens SCALANCE and RUGGEDCOM switches, as well as security network segmentation devices are exposed to a Remote Code Execution vulnerability. A successful exploitation can significantly lower the security of the target organization’s network by allowing attackers to access OT networks that are supposed to be protected by those devices.

Additionally, Siemens Desigo CC Windows Application, which is designed for controlling and programming Building Management Systems (BMS) is vulnerable to a Remote Code Execution vulnerability. A successful exploitation may result in the attackers controlling or sabotaging the BMS system.

News Post SCADAfence 7

Bugs in HDL Automation Expose IoT Devices to Remote Hijacking

SCADAgirlSCADAfence Research  – New vulnerabilities were discovered in an automation system for smart homes and buildings that allowed taking over accounts belonging to other users and control associated devices. The vulnerabilities found in those devices might allow attackers to take control of the building’s air conditioning system, lightning and more. For more on BMS security, click here.

News Post SCADAfence6

Vulnerable Perimeter Devices: A Huge Attack Surface

SCADAgirlSCADAfence Research – JSOF, a local team of cybersecurity researchers, released the second whitepaper on their DNS client exploitation vulnerability (CVE-2020-11901) that got CVSS score of 9.1. This was the vulnerability that was demonstrated in their video. They show this vulnerability to be really severe but in my opinion it is less severe than they market it. The vulnerability is the DNS client of target devices. Because most of the affected devices don’t use DNS at all (i.e,PLCs / OT devices / Medical devices) generally use direct IP addresses to communicate – not DNS hostnames, thus it is not possible to attack them. Also, if some of them do send DNS queries, you have to be in some sort of MITM to see them and send them a response with an exploit.

The latest vulnerabilities in various gateway servers possess a threat to organizations who didn’t patch. Research shows the various gateways exposed to the internet – F5 Big-IP (1M devices), Citrix NetScalar Gateway (80K devices), Palo Alto Global Protect (60K devices), Microsoft Remote Desktop Gateway (40K devices), amongst others. For more on IoT security, click here.

News Post SCADAfence1

ICS Advisory (ICSA-20-212-02) Mitsubishi Electric Multiple Factory Automation Engineering Software Products

SCADAgirlSCADAfence Research – Numerous Mitsubishi Engineering Software Products are vulnerable to remote code execution and denial of service vulnerabilities – A total of 3 vulnerabilities were discovered. Among the software impacted are Mitsubishi’s PLC programming software GX Works2 and GX Works3. Also other network configuration software are impacted. Successful exploitation of this vulnerability may allow threat actors to take over engineering workstations. For more vulnerabilities that we found in Mitsubishi Electric products, click here.

News Post SCADAfence2

ICS Advisory (ICSA-20-210-02) Softing Industrial Automation OPC

SCADAgirlSCADAfence Research – A buffer overflow allowing Remote Code Execution influencing all Softing Industrial Automation OPC products (OPC servers for PLCs & networks) was discovered. OPC is a way of communication in OT networks, thus, successful exploitation may result in controlling the OPC servers. Attackers leveraging this can cause sabotage to industrial processes.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About SCADAfence
SCADAfence helps companies with large-scale operational technology (OT) networks embrace the benefits of industrial IoT by reducing cyber risks and mitigating operational threats. Our non-intrusive platform provides full coverage of large-scale networks, offering best-in-class detection accuracy, asset discovery and user experience. The platform seamlessly integrates OT security within existing security operations, bridging the IT/OT convergence gap. SCADAfence secures OT networks in manufacturing, building management and critical infrastructure industries. We deliver security and visibility for some of world’s most complex OT networks, including Europe’s largest manufacturing facility. With SCADAfence, companies can operate securely, reliably and efficiently as they go through the digital transformation journey.

Serving the socially distanced consumer: why retailers need to go to the edge

The recent global epidemic has changed the rules of the retail game – perhaps forever.

(Image credit: Image Credit: Zapp2Photo / Shutterstock)

Everyone agrees the Covid-19 pandemic has had an unprecedented impact on the retail industry. In the face of government-imposed lockdowns, non-essential stores had to close their doors and place workers on furlough. With the high street now re-open for business, retailers are having to adapt at speed to a plethora of new shopping realities. That includes flexing their estates to serve the socially distanced consumer in-store.

One thing is for sure. The recent global epidemic has changed the rules of the retail game – perhaps forever. Social distancing, likely to be part and parcel of everyone’s lives for the foreseeable future, inhibits many of the in-person interactions that traditionally characterized the in-store experience. But that is not the only challenge that retailers face.

Rebuilding customer trust and confidence now depends on stores doing everything in their power to keep everyone safe, including employees. Initiating practical measures, such as one-way systems, safety screens and floor markings to indicate safe distancing when people are queuing at payment or collection points is just the start.

Dealing with practicalities…

The brick-and-mortar in-store experience will need to evolve fast if retailers are to cater for fast-evolving consumer expectations about how they want to shop. Following months of being restricted to shopping primarily online, they have become accustomed to the immediacy and convenience of digital channels. As a consequence, consumers are unlikely to tolerate encountering long queues outside or inside stores – or disconnected experiences that cause delays and frustration.

Despite having been forced to embrace online shopping in recent months, there appears to be plenty of pent-up demand among consumers for bricks-and-mortar shopping and the product discovery experiences that are difficult or impossible to recreate online. However, those consumers that show up to shop will expect to encounter appropriate hygiene precautions when visiting stores.

Complying with government imposed restrictions and guidance that is designed to keep people safer means that retailers are becoming more dependent than ever on in-store technologies that make it easy to deliver more seamless and engaging shopping experiences. 

For example, with fear of infection now front of mind for customers, offering touch-free shopping options across the shop floor is becoming a must-have for satisfying the needs of those consumers that want to avoid the queues, complete transactions on their mobile device, and have their purchases shipped directly to home. For others, self-checkout options, smart tags, and ‘scan-to-learn more’ shelf labels that make it easy to get answers to questions without touching physical products will be a top priority. 

Lowering risk to shoppers means that virtual reality in-store technologies that enable customers to envision how products will look on them, and enjoy that all important experiential product discovery moment, are becoming essential for securing customer confidence – and creating the richer experiences that add up to competitive advantage.

Once considered a nice-to-have, retailers are now preparing to go all-in on technologies like smart mirrors that will allow customers to virtually ‘try on’ clothes, footwear, and cosmetics. Similarly, options like digital ‘look books’ and virtual assistants that give customers new ways to choose products or get recommendations are rapidly rising up the ‘must-have’ investment list of retailer priorities.

To enable all these digital capabilities, however, retailers will need an edge computing infrastructure that makes it easy to remotely deploy the new in-store technologies and applications that will prove transformative for the in-store shopping experience.


Bringing digital to life 

The recent public health crisis has served to accelerate consumer demand for truly seamless omnichannel in-store experiences. While many retailers were already making moves in this direction, and redesigning customer journeys to accommodate this trend, consumers in just about every demographic segment now expect to shop using any device, in any store location. But blending bricks-and-mortar stores with other digital channels is just one aspect of how retailers will need to engage with shoppers in new and meaningful ways. 

To deal with the disruption created by Covid-19, retailers will need to elevate how they leverage data for business. That means stealing a leaf from online retailers to capture the shopper data insights that will enable them to hyper-personalize customer engagement. 

For example, using connected edge devices, retailers can track a customer’s journey through a store and evaluate what products caught their attention. Alongside delivering personalized offers and adverts as customers browse shelves, retailers can also analyze all this data to enhance the efficiency of their store layouts and product displays for the specific customer population profile they serve. 

Utilizing connected edge devices, retailers will also be able to monitor in real-time the number of people entering and exiting the store, instituting measures to ensure that footfall stays within safe limits. Plus, they’ll be able to personalize in-store engagement the moment a shopper walks into a store, as WiFi systems recognize a returning customer. 

Giving retailers the ability to process, analyze and take actions, based on data where it is actually generated on the shop floor, edge computing generates the purchasing trend data that retailers need to execute highly personalized marketing. This can stimulate the purchase of products already discovered in-store or alert customers to trends and upcoming products they’re interested in. 

But that’s not the only benefit that comes with initiating edge computing. Retailers can also use the data that is generated by connected IoT sensors to become more operationally nimble and efficient: whether that is automating the monitoring of fridge and freezer temperatures to optimize product storage, or initiating new digitalized supply chain processes that improve the accuracy of in-store inventory tracking and enabling automated product re-ordering.

Competing to win and keep customers

 

Taking the in-store shopping experience into a new era will be vital, as society continues to recover from the immediate impact of coronavirus. The rise of the socially distanced shopper has ignited greater customer demand for omnichannel fulfilment options like click-and-collect and zero-touch transaction options in-store that are frictionless – and keep shoppers safe. 

In many ways, Covid-19 has helped accelerate many of the digital transformation drivers that were already leading high street retailers to re-invent the in-store shopping experience in a bid to compete with pure-play internet retailers. Getting customers back through the door represents a golden opportunity for retailers to re-imagine the in-store shopping experience with innovative technologies and services that truly resonate with socially distancing shoppers. 

This is where a game-changing technology like edge computing can help high street retailers close the gap: delivering the scalable, cost-effective, and easy-to-manage platforms they need to securely spin up new connected retail applications and appliances, and capture customer intelligence from the shop floor.

Johan Pellicaan, Vice President & Managing Director, Scale Computing EMEA

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Scale Computing 
Scale Computing is a leader in edge computing, virtualization, and hyperconverged solutions. Scale Computing HC3 software eliminates the need for traditional virtualization software, disaster recovery software, servers, and shared storage, replacing these with a fully integrated, highly available system for running applications. Using patented HyperCore™ technology, the HC3 self-healing platform automatically identifies, mitigates, and corrects infrastructure problems in real-time, enabling applications to achieve maximum uptime. When ease-of-use, high availability, and TCO matter, Scale Computing HC3 is the ideal infrastructure platform. Read what our customers have to say on Gartner Peer Insights, Spiceworks, TechValidate and TrustRadius.

About The Channel Company
The Channel Company enables breakthrough IT channel performance with our dominant media, engaging events, expert consulting and education and innovative marketing services and platforms. As the channel catalyst, we connect and empower technology suppliers, solution providers and end users. Backed by more than 30 years of unequalled channel experience, we draw from our deep knowledge to envision innovative new solutions for ever-evolving challenges in the technology marketplace. thechannelcompany.com

停止支援 TLS 1.0 / 1.1 協定通知

親愛的客戶您好,

由於各大瀏覽器業者已於 2020 年 3 月起陸續發佈停止對 TLS 1.0 與 TLS 1.1 傳輸協定支援的聲明。
為保障您的系統連線安全,SPAM SQR、Mail SQR Expert 與 Mail Archiving Expert 將停止支援 TLS (Transport Layer) 1.0/1.1 協定。
為避免無法以 HTTPS 連線至 SPAM SQR、Mail SQR Expert 與 Mail Archiving Expert,建議使用最新的瀏覽器版本,並確認啟用 TLS1.2 以上。

造成您的不便,敬請見諒

如有任何問題,請洽客服專線:02-2543-2000

About Version 2

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products. Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

關於中華數位科技 Softnext Technologies Corp.
創立於2000年8月。
秉持著【We Secure Your Content】的服務理念,以提供企業資訊應用管理服務及打造資訊內容安全防護為宗旨。專精於提供網路應用服務技術,根據市場需求推出多款資訊內容安全的解決方案及應用服務,能夠協助企業透過符合資安管理規範並遵循法規的方式進行資訊內容安全管理,以維護員工的生產力、提升企業經營績效。

關於 ASRC 垃圾訊息研究中心
ASRC 垃圾訊息研究中心 (Asia Spam-message Research Center),長期與中華數位科技合作,致力於全球垃圾郵件、惡意郵件、網路攻擊事件等相關研究事宜,並運用相關數據統計、調查、趨勢分析、學術研究、跨業交流、研討活動..等方式,促成產官學界共同致力於淨化網際網路之電子郵件使用環境。更多資訊請參考 www.asrc-global.com .

×

Hello!

Click one of our contacts below to chat on WhatsApp

×