Skip to content

【重要訊息公告】您的產品已過期

以下通知主要為ESET與Microsoft Windows有兼容性或是安全性更新之必要 以及由於ESET Management Agent的憑證將於今年年底過期,所以需升級到最新版本以避免產品品過期,須請您將ESET軟體利用手動或由ESMC更新成 v7.3或以上之新版本,排除以下狀況。

近期您的 ESET 軟體會顯示下列通知:

  • 若要在 Windows 7 上繼續使用我們的產品,請安裝導入 SHA2 代碼簽署支援的 Windows 更新 (請參考 Microsoft 的說明),然後在 2020 年 12 月前升級到 ESET 產品的最新版本。 查看您的選項: https://support-eol.eset.com/en/trending_vista_7.html
  • 您目前的產品版本即將不受 Microsoft Windows 10 支援。請於 2020 年 12 月前升級到版本 7.3 或更新版本,以繼續接受完整防護和特色功能。使用具有效性的授權,無須額外費用即可升級。 查看您的選項: https://support-eol.eset.com/en/trending_win_10.html
  • 您目前的ESET Management Agent已過期,不再完全相容您的安全性產品,請升級到版本7.2或更新版本,並確保您的ESET Security Managemente Center版本為7.2或更新版本,查看您的選項: https://support.eset.com/kb7465

➢ 手動更新:

ESET Endpoint Antivirus ESET Endpoint Security
新版載點 新版載點

※ Windows 7若無法安裝最新版本,請更新Windows KB4474419、KB4490628(說明)

➢ ESMC更新

  • 若您的電腦出現ESET Management Agent已過期,請依據下列步驟進行執行,由於agent程式建議需與主控台版本一致,所以主控台也需更新。

  • ERA版本升級到ESMC7.3版本的說明文件,詳細說明文件可點此

    之後須注意由於ESMC的系統需求與ERA不相同,可先參考此表格

  • 若windows server 小於2012,則需新建立一個環境搭載新OS的伺服器來作安裝,後續再將設定遷移到新伺服器上(遷移工具說明)

  • 此外若ERA版本非6.5,建議您可先透過ERA的元件升級將版本升級到6.5後再作下列操作。可參考(ERA6.x升級到6.5)

  • 到官網下載新版ESMC安裝包,執行後選擇升級ESMC All in one安裝包

    【安裝】→【升級所有元件】

  • ESMC升級注意事項可參考此篇文章說明

  • 須注意主控台升級時需將憑證匯出備份避免後續若發生錯誤時可以重新回復。

  • 資料庫備份之說明可參考資料庫伺服器備份/更新與 ESMC 資料庫遷移

➢ Agent更新:

Agent升級部分可參考元件升級部分,

圖1:【工作】→【新增】→【用戶端工作】→【工作:Security Management Center 元件升級】

 

圖2:之後進入觸發動作選擇目標電腦

   

即可進行agent更新。

➢ 用戶端防毒軟體更新:

圖1:【工作】→【新增】→【用戶端工作】→【工作:軟體安裝】

 

圖2:

 

圖3:點擊【建立觸發程序】

 

圖4:選擇要更新軟體之client端 【目標】→【新增電腦/群組】

用上述2種方式,將ESET軟體更新。若有其他問題將相關截圖傳送至:support@eset.hk

About Version 2

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products. Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

關於ESET
ESET成立於1992年,是一家面向企業與個人用戶的全球性的電腦安全軟件提供商,其獲獎產品 — NOD32防病毒軟件系統,能夠針對各種已知或未知病毒、間諜軟件 (spyware)、rootkits和其他惡意軟件為電腦系統提供實時保護。ESET NOD32佔用 系統資源最少,偵測速度最快,可以提供最有效的保護,並且比其他任何防病毒產品獲得了更多的Virus Bulletin 100獎項。ESET連續五年被評為“德勤高科技快速成長500 強”(Deloitte’s Technology Fast 500)公司,擁有廣泛的合作夥伴網絡,包括佳能、戴爾、微軟等國際知名公司,在布拉迪斯拉發(斯洛伐克)、布裏斯托爾(英國 )、布宜諾斯艾利斯(阿根廷)、布拉格(捷克)、聖地亞哥(美國)等地均設有辦事處,代理機構覆蓋全球超過100個國家。

訊連科技於FaceMe® Security安防解決方案強化防疫功能 推出口罩偵測、配戴口罩身份辨識與額溫測量功能

【2020年10月6日,台北訊】 全球頂尖AI臉部辨識領導廠商訊連科技(5203.TW)發表新版FaceMe® Security 安防解決方案,透過全新升級的FaceMe® AI臉部辨識引擎,可於進出人員配戴口罩時進行員工、VIP、黑名單等身份辨識,更可透過全新的FaceMe® Security Health Add-on功能,於場域出入口進行額溫量測、口罩偵測及身份辨識等,方便進行場域的健康量測及進出管理。此整合方案可適用於各種場域,並建置於辦公大樓、零售商店、餐廳、旅館、醫院、學校及公共運輸站等。

訊連科技於FaceMe® Security安防解決方案強化防疫功能 推出口罩偵測、配戴口罩身份辨識與額溫測量功能

於智慧安控場景中,FaceMe® Security提供端對端的解決方案在局端環境,提供即時人臉偵測、人臉辨識及訪客紀錄管理。全新的FaceMe® Security Health Add-on擴充功能可檢視人員體溫及口罩配戴是否符合規定,並同步偵測人臉,與資料庫比對,即使配戴口罩也能精準辨識身分,達到智慧安控的成效。此外,於偵測到發燒、未配戴口罩或是黑名單人員時,透過U通訊即時通知相關人員進行應對。

「臺灣進入後防疫時代,配戴口罩可有效阻止COVID-19病毒的傳播,然而口罩也為臉部辨識技術帶來極大考驗。」訊連科技黃肇雄執行長表示:「FaceMe® Security可在人員配戴口罩時精準辨識其身分,提供高達95%的辨識率。同時亦可偵測多種材質、角度的口罩,及是否正確配戴口罩之狀態,為市面上唯一一款整合安控及健康偵測、口罩辨識的解決方案。」

FaceMe® Security解決方案提供三大元件。FaceMe® Security Workstation可運行於搭載NVIDIA GPU或是MovidiusTM VPU的工作站或是工業電腦,進行即時的人臉偵測、臉部特徵擷取,並可支援配戴口罩時的臉部辨識。FaceMe® Security Central則可運行於伺服器架構,透過網頁介面進行安全可靠的臉部資料庫管理、訪客紀錄,及IP攝影機、局端工作站之設定。全新的FaceMe® Security Health Add-on則可建置於場域入口處,進行即時的口罩偵測、臉部辨識及額溫量測。此外,於偵測到黑名單、VIP,或是未正常配戴口罩及發燒者時,可透過內建的U即時通訊通知相關人員進行處置,並提供HTTP API串接第三方服務。

更多關於FaceMe® Security的訊息,請至: https://tw.cyberlink.com/faceme/solution/security

About Version 2

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products. Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

關於CyberLink
訊連科技創立於1996年,擁有頂尖視訊與音訊技術的影音軟體公司,專精於數位影音軟體及多媒體串流應用解決方案產品研發,並以「抓準技術板塊,擴大全球行銷布局」的策略,深根台灣、佈局全球,展現亮麗的成績。訊連科技以先進的技術提供完美的高解析影音播放效果、以尖端的科技提供完整的高解析度擷取、編輯、製片及燒錄功能且完整支援各種高解析度影片及音訊格式。產品包括:「威力導演」、「PowerDVD」、「威力製片」、「威力酷燒」等。

9 Essential Features or Good Practices for a Privileged Access Management Solution (PAM)

It is undeniable that the use of a privileged access management solution (PAM) considerably improves a company’s information security. But what many do not know is that there are some essential features or recommendations for a PAM solution to guarantee information security efficiently.

Today, we list the 09 essential features or good practices that a privileged access management solution must have to ensure its success as a PAM.

Learn more: Quick Guide – PAM Best Practices

1 – Privileged Session Recording

It is essential that your privileged access management solution has the privileged session recording feature to record, in video and text, the actions performed by the user within the system while using a privileged credential.

This is one of the main tools to check if users are performing actions relevant to their tasks, ensuring the confidentiality of the company’s sensitive data and that all actions are tracked and audited.

For a good privileged session recording, check with the PAM solution provider if the tool allows the storage of session record files and audit logs to prevent users from editing their activity histories and damaging your entire monitoring system.

2 – Review of Privileged Credentials 

In order to ensure good information security, one needs to perform recurrent preventive practices, such as managing their company’s privileged accounts.

A solution that does not have this feature – or has a flawed one – leaves many security holes, allowing a possible cyberattack.

With this features, it is possible to gather all active privileged credentials and check the privilege level of each one, reviewing whether it makes sense for users to have access to such environments, in addition to removing credentials that are no longer used, such as those of employees who were dismissed from the company.

3 – Credential Management

In order to mitigate the risks of data leaks, in addition to reviewing access to privileged credentials, it is necessary to manage them through an automatic password change feature, be it by predetermined use, period, or time.

This prevents users from sharing passwords or improperly accessing anything outside the solution.

Learn More: Machine Identity and Digital Certificate Management

4 – Two-Factor Authentication

The main solutions on the market require two-factor authentication from the user, usually through an OTP (One-Time Password). It is also possible to send an SMS or an email with a confirmation code for someone to be able to use the privileged credential.

This type of feature makes it difficult for unauthorized people to use the privileged user’s credential.

5 – Backup

One of the most important parts of a PAM solution is to have the feature of automatic backups. Even with all the security locks, the backup appears as one of the last information security features.

This ensures that even with leaked and/or deleted data, the company is able to have access to all data protected by the privileged access management solution.

6 – Strong Passwords

This practice is very simple and essential. Through a company, it is possible to implement a PAM password vault and make privileged credentials available to users. However, there must be some kind of guarantee that all privileged credentials have strong passwords that are difficult to be broken with the use of malicious software.

The ideal is to guide the user to create a password that mixes upper and lower case letters, numbers, and special characters, with at least 8 characters.

Learn more: Best Practices Manual for PAM

7 – Emergency Access 

In the event of any abuse of privilege in your company, it is important to have a last-security feature through the break-the-glass functionality in case any type of system unavailability occurs, be it a product or an infrastructure failure, even a cyberattack. The person responsible for information security has the autonomy to take their privileged credential through a segregated backup file.

This type of feature prevents technological lock-in, and there is no way for the user to resort to the occurrence.

8 – Notification of Suspicious Actions

Whenever there is a suspicious action within a privileged session, in addition to having several security locks, your PAM solution must notify those responsible for information security to take appropriate measures.

9 – Access Reporting

Finally, access reporting is important so that the responsible person has a complete view of the actions performed through privileged sessions, allowing the identification of security breaches and points for improvement. A complete set of reports optimizes time and work, as there is no need to conduct audits from session to session.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

訊連科技FaceMe® AI臉部辨識引擎攜手晶睿通訊 打造整合AI臉部辨識的智慧安防解決方案

【2020年9月30日,台北訊】 全球頂尖AI臉部辨識領導廠商訊連科技 (5203.TW)與數位監控解決方案領導廠商晶睿通訊 (VIVOTEK) 攜手合作,將訊連科技AI臉部辨識加值軟體FaceMe® Security整合至晶睿通訊影像管理軟體VAST 2,打造整合AI臉部辨識技術的智慧安防解決方案。此一站式的服務不僅讓使用者可輕鬆管理大量安防攝影機,更可透過AI臉部辨識技術,進行員工、VIP及黑名單等身分辨識,及整合即時通知示警,打造更智慧、高效的安防解決方案,並可運用於各式各樣的物聯網應用領域中。

訊連科技FaceMe® AI臉部辨識引擎攜手晶睿通訊 打造整合AI臉部辨識的智慧安防解決方案

近年來,AI臉部辨識應用蓬勃發展,其中智慧安防更是主流應用之一,AI臉部辨識可為智慧安防提供更多樣化的應用。藉由此策略合作,訊連科技的FaceMe® Security解決方案可與晶睿通訊影像管理軟體VAST 2高度整合,結合晶睿通訊多元齊全的網路攝影機產品線和後端影像管理軟體,大幅簡化以往繁雜的安裝流程。此外,用戶端亦可根據名單管理功能(員工、VIP及黑名單),於安控場景準確辨認VIP或可疑人士,同步搭配精準的即時通知、快速比對VAST 2系統資料庫篩選出對應影像,為使用人員帶來更安全、即時的安控系統,提供頂尖的臉部辨識安防應用情境,打造全新的AI臉部辨識安防體驗。

訊連科技與晶睿通訊透過策略聯盟,將台灣開發的AI臉部辨識整合解決方案推向國際市場,可應用於智慧安控、智慧建築及智慧製造等眾多領域應用案例中。訊連科技與晶睿通訊將於10月15日共同舉辦 「智慧安防 x 臉部辨識 – AI 智慧物聯新視界」線上研討會,分享AI臉部辨識安控解決方案相關應用,讓台灣客戶可有更深入的了解。

「智慧安防 x 臉部辨識 – AI 智慧物聯新視界」線上研討會

About Version 2

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products. Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

關於CyberLink
訊連科技創立於1996年,擁有頂尖視訊與音訊技術的影音軟體公司,專精於數位影音軟體及多媒體串流應用解決方案產品研發,並以「抓準技術板塊,擴大全球行銷布局」的策略,深根台灣、佈局全球,展現亮麗的成績。訊連科技以先進的技術提供完美的高解析影音播放效果、以尖端的科技提供完整的高解析度擷取、編輯、製片及燒錄功能且完整支援各種高解析度影片及音訊格式。產品包括:「威力導演」、「PowerDVD」、「威力製片」、「威力酷燒」等。

關於晶睿通訊
晶睿通訊股份有限公司(股票代號:3454)於2000年在台灣成立。本公司於全球各地銷售晶睿通訊監控系統解決方案,現已成為全球數位監控產業的領導品牌。提供網路攝影機、影音伺服器、網路錄影機(NVRs)、PoE解決方案與中央管理軟體(CMS)等,提供全方位的產品解決方案。隨著物聯網日益興盛,晶睿通訊期許能憑藉在影音方面廣泛的技術能力,成為物聯網的眼睛。本公司已分別於美國-加州 (2008)、歐洲-荷蘭 (2013)、印度-德里 (2014)、中東-杜拜 (2015)、拉丁美洲-墨西哥 (2016) 和日本-東京 (2017) 設立辦事處和子公司。為了創建良好的產業生態系統,晶睿通訊偕同國際領先的軟體和硬體廠商拓展策略聯盟,與遍及116個國家、超過183個授權經銷商夥伴共同合作。欲了解更多訊息,請瀏覽官方網站www.vivotek.com.

ESET researchers discover XDSpy, an APT group stealing government secrets in Europe since 2011

The previously undocumented group leverages COVID-19-themed spear phishing

BRATISLAVA, MONTREAL – ESET researchers uncovered a new APT group that has been stealing sensitive documents from several governments in Eastern Europe and the Balkans since 2011. Named XDSpy by ESET, the APT group has gone largely undetected for nine years, which is rare. The espionage group has compromised many government agencies and private companies. The findings were presented today at the VB2020 localhost conference.

“The group has attracted very little public attention so far, with the exception of an advisory from the Belarusian CERT in February 2020,” says Mathieu Faou, ESET researcher who analyzed the malware.

XDSpy operators use spear phishing emails in order to compromise their targets. The emails display a slight variance, as some contain an attachment, while others contain a link to a malicious file. The first layer of the malicious file or attachment is generally a ZIP or RAR archive. At the end of June 2020, the operators stepped up their game by using a vulnerability in Internet Explorer, CVE-2020-0968, which had been patched in April 2020. “The group jumped on the COVID-19 bandwagon at least twice in 2020, including an instance only a month ago, in their ongoing spear phishing campaigns,” adds Faou.

“Since we did not find any code similarities with other malware families, and we did not observe any overlap in the network infrastructure, we conclude that XDSpy is a previously undocumented group,” concludes Faou.

Targets of the XDSpy group are located in Eastern Europe and the Balkans; they are primarily government entities, including militaries, Ministries of Foreign Affairs and private companies.


Location of known XDSpy group victims according to ESET telemetry


For more technical details about this spyware, read the blog post, “XDSpy: stealing government secrets since 2011” on WeLiveSecurity. Make sure to follow ESET Research on Twitter for the latest news from ESET Research.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.