Skip to content

防禦流氓 API 時需要考慮的事項

Application programming interfaces (APIs) are a crucial aspect of most businesses. Its responsibility involves the transfer of information between systems within an organization or to external companies. Unfortunately, a rogue API can expose sensitive data and the organization’s internal infrastructure to misuse.

A security breach could result in the leaking of sensitive customer data such as PHI or financial data. This article will give an overview of the vulnerabilities of APIs that hackers take advantage of and how best to secure them.

What is a Rogue API?

A rogue API is an API which lacks approval or authorization by a company to provide access to its data. Instead, they get created by third-party developers who access the company’s data through a back door.

Rogue developers often do not use the same security protocols abide by the same data privacy laws as the company. Several effects of these Rogue API activities include:

  • The collection of sensitive data from a business without permission, such as customer information, financial data, or proprietary information
  • The deletion or modification of stored data on a system.
  • The corruption of important files or rendering them inaccessible.
  • Using a rogue API allows the bypass security controls on a site.
  • A damaged reputation due to financial losses.

The Importance of API Security

Access to APIs occur through public networks from any location. This makes them easily accessible to attackers and simple to reverse-engineer.

APIs functions are central to microservices architectures. They help to build client-side applications that focus on customers, employees, partners, and more. The client-side application, like a web or a mobile application, interacts with the server side via the API. Invariably, they become a natural target for cybercriminals and are very sensitive to Denial of Service (DoS) attacks.

Consequently, implementing and maintaining API security (although an exhaustive process) becomes a critical necessity. Moreover, API security practices should cover access control policies and the identification and remediation of attacks on APIs. The best way to protect data is to ensure that only approved APIs access a company’s sensitive data.

Effective Strategies to Reduce Rogue API Vulnerabilities

Here are some steps organizations can take to protect against a rogue API:

  • Use a network security solution that detects and blocks API threats.
  • Grant access to sensitive data only to those who need it.
  • Conduct constant API activity monitoring for suspicious or unauthorized activity.
  • Promptly blocking suspicious IP addresses.
  • Keep all data secure by using trusted third-party services.

Best API Security Practices Against Rogue API

Get Educated on all Security Risks

Developers need in-depth knowledge of cyber criminals’ latest techniques to penetrate a system. One strategy is to get information from trusted online sources like newsletters, malware security blogs, and security news portals.

By being up-to-date with the latest hacking trends, developers can configure their APIs and ensure they thwart the latest attacks.

Authenticate & Authorize

Businesses need to carefully control access to their API resources. First, they must carefully and comprehensively identify all related devices and users. An effective strategy involves the use of a client-side application. It has to include a token in the API call so that the service can validate the client easily.

Furthermore, standard web tokens can be used to authenticate API traffic and to define access control rules. Businesses can also use grant types to determine which users, groups, and roles need access to specific API resources. For example, a user that only needs to read a blog or post a comment should only receive permission that reflects this.

Encrypt Your Data

All data requires appropriate encryption so that only authorized users can modify and decrypt the data.

It helps to protect sensitive data and enhance the security of communication between client apps and servers. The beauty is that encrypted data prevents unauthorized entities from reading them even with gained access.

Validate the Data

Most businesses rely only on the cleansing and validation of API data from external partners. Therefore, companies must implement data cleaning and validation routines to prevent standard injection flaws and attacks.

The use of debugging tools helps to examine the API’s data flow as well as track errors and anomalies.

Identify API Vulnerabilities

One important API security best practice is to perform a risk assessment. However, you must first know the faucets of your network remain vulnerable to risk .

Overall vulnerability can be difficult pinpoint because software organizations constantly use thousands of APIs simultaneously. To succeed with API security, establish measures that eliminate vulnerabilities to mitigate risk and meet security policies.

Furthermore, the discovery of vulnerabilities requires businesses to conduct rigorous testing. A great place to begin is at the initial phase of development. After that, it becomes easy to rectify them quickly.

Limit the Sharing of Confidential Information

Sharing only necessary information is a great management best practice, which is why a client application comes in handy. It filters relevant information from the entire data record present in API responses.

A developer should remember to remove sensitive information like passwords and keys before making the API publicly available. This prevents attackers from gaining access to sensitive data or entry to the application and the core of the API.

However, releasing only relevant information is a form of lazy programming. Other consequences include slowing response times and providing hackers with more information about the API access resources.

Final Thoughts on Rogue API Defense

API gateways focus on managing and controlling API traffic. Utilizing a strong API gateway minimizes security. Additionally, a solid API gateway would let organizations validate traffic and analyze and control how the API gets utilized.

About Portnox
Portnox provides simple-to-deploy, operate and maintain network access control, security and visibility solutions. Portnox software can be deployed on-premises, as a cloud-delivered service, or in hybrid mode. It is agentless and vendor-agnostic, allowing organizations to maximize their existing network and cybersecurity investments. Hundreds of enterprises around the world rely on Portnox for network visibility, cybersecurity policy enforcement and regulatory compliance. The company has been recognized for its innovations by Info Security Products Guide, Cyber Security Excellence Awards, IoT Innovator Awards, Computing Security Awards, Best of Interop ITX and Cyber Defense Magazine. Portnox has offices in the U.S., Europe and Asia. For information visit http://www.portnox.com, and follow us on Twitter and LinkedIn.。

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

勒索軟件危機對 IT 團隊的影響

It’s no secret that IT teams are on the front lines of a rapidly evolving cyber-threat landscape. The ransomware crisis is raging, with attacks escalating in frequency, magnitude, and sophistication. This has impacted IT teams in multiple ways, including increased pressure to keep pace with the latest threats, complicating existing data protection efforts, and hindering the IT team’s ability to adequately meet the end-users’ needs.

Recent research by the cyber risk management company, Axion, showed that only 30% of organizations have plans to respond to the ransomware crisis. Organizations need to take a proactive approach to the ransomware crisis in which the IT team can work together with business, security, and executive teams to develop a response plan to the ransomware crisis.

What is Ransomware?

Ransomware is a kind of malicious software (“malware”) that enters a computer system and encrypts specific files, making them inaccessible to the computer user, and demands a ransom payment to be made in a set amount of time to regain access to their files. Should a payment not be made, the ransomware can delete files on the computer and write an encrypted copy of those files to a different place, rendering them inaccessible without decryption.

The ransomware crisis serves as a major IT security concern as it threatens users’ privacy, data integrity, and business continuity.

How the Ransomware Crisis Impacts IT Teams

The ransomware crisis has various negative impacts on IT teams, including:

Decreased Productivity
During a ransomware incident, IT teams are busy working on recovery, cleanup, and investigation to deal with the ransomware attack. This increases stress levels and may harm business operations across the entire organization.

Damaged Reputation
The reputation of the IT team is also affected during the Ransomware crisis. IT teams may face negative feedback from customers, partners, and vendors because the business cannot perform tasks such as completing daily transactions and service requests.

Data Loss
IT teams that are unprepared for an attack may lose critical information and data that they can’t afford to lose. The cost of losing highly sensitive data could result in reputational damage, compliance failures, and lost business.

Overworked IT Teams
Ransomware attacks can throw IT teams into an unexpected high-pressure situation, causing high levels of stress and fatigue that compromises their health and well-being.

Security Vulnerabilities
Ransomware attacks open up security vulnerabilities in your system, which hackers can use for other attacks. The longer the system remains infected, the more potential harm hackers could do through already-opened vulnerabilities.

Cost of Investigation
IT teams face the cost of conducting a detailed investigation. This can include searching for the source of attacks, determining the extent of damage, and identifying gaps in security systems leading to such attacks.

Loss of Confidence in IT
The longer it takes to restore business operations, the more likely your internal and external audience will lose confidence in your IT team. This can damage future business and an organization’s goodwill among its public and customers.

Loss of Competitive Edge
One of the most severe impacts on IT teams during the ransomware crisis is the declining competitive edge due to the loss of mission-critical assets, intellectual property, and trade secrets. This could affect an organization’s long-term business outlook, growth strategy, and financial performance.

Preventing a Ransomware Attack

The key to preventing a ransomware attack is to have a comprehensive cybersecurity plan. It is essential to have the following measures in place to avoid such crises.

System & Data Backups
Always conduct system backups to help IT teams restore files or systems in case of ransomware attacks. It is essential to back up data regularly so critical information can be retrieved in case it gets encrypted during an attack.

Patch Management
It is essential to ensure that all systems are regularly updated with the latest security patches for optimal threat protection. Also, ensure that all security updates are immediately applied across all systems in your network.

Network Security Tools
IT teams should use several tools to help detect suspicious activities and prevent ransomware attacks through a network before they can cause harm or damage. Security tools such as antivirus, host-based intrusion detection systems, vulnerability management tools, and a web gateway can help detect suspicious IP addresses and activities before any harm is caused.

Security Audits
While conducting regular security audits is not always easy, this process can help identify potential gaps in your network, which you can close before they cause harm to your business. Security audits can also help identify measures that need to be taken to prevent such attacks.

Security Awareness Training
Security awareness programs can help identify security issues that could lead to a ransomware attack. The training sessions will help your employees learn how to identify suspicious activities in their work environment and how to report any such issues or suspicious activity as soon as it is discovered. Training can also help create awareness about ransomware attacks among your employees so that they can take the right actions when faced with such incidents.

Conduct Regular Risk Assessments
Risk assessments help identify potential risks which can lead to a ransomware attack. Conducting regular risk assessments would help identify steps that need to be taken to prevent such attacks from occurring.

The Future Outlook of the Ransomware Crisis

The Ransomware crisis has an undeniably negative impact on IT teams, which can significantly hinder the long-term performance of an organization a. The longer the system remains infected, the more damage it could cause through the already exploited vulnerabilities. Staying informed about security threats is essential so that IT teams can take timely action against such threats and prevent further losses from occurring.

About Portnox
Portnox provides simple-to-deploy, operate and maintain network access control, security and visibility solutions. Portnox software can be deployed on-premises, as a cloud-delivered service, or in hybrid mode. It is agentless and vendor-agnostic, allowing organizations to maximize their existing network and cybersecurity investments. Hundreds of enterprises around the world rely on Portnox for network visibility, cybersecurity policy enforcement and regulatory compliance. The company has been recognized for its innovations by Info Security Products Guide, Cyber Security Excellence Awards, IoT Innovator Awards, Computing Security Awards, Best of Interop ITX and Cyber Defense Magazine. Portnox has offices in the U.S., Europe and Asia. For information visit http://www.portnox.com, and follow us on Twitter and LinkedIn.。

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

runZero 3.3:對您的 Google 生態系統無與倫比的可見性

What’s new with runZero 3.3?

  • Extended visibility into Google Workspace
  • Queries for Google Workspace users and groups
  • Fingerprinting for Google assets
  • Identification of OpenSSL services
  • Improvements to the runZero Console

Extended visibility into Google Workspace
runZero 3.3 furthers the visibility into your Google ecosystem through a new integration with Google Workspace. runZero Professional+ users will be able to sync Google Workspace asset details from mobile devices, endpoints, and managed Chrome systems, while runZero Enterprise users will also be able to sync Users and Groups. Once the integrations are configured, users can view, search, analyze, export, and alert on attributes from both Google Workspace and Google Cloud Platform.

One of the key reasons to leverage the runZero integrations is to get better insight into the scope of your environment and completeness of coverage since MDM and IAM platforms can’t provide any insights into devices that haven’t been onboarded. To identify assets on your network that aren’t onboarded to Google Workspace, use the query source:runZero AND NOT source:googleworkspace. Conversely, use this query to find assets from Google Cloud Platform or Google Workspace that have not been scanned by runZero yet: (source:gcp OR source:googleworkspace) AND NOT source:runzero. These queries can help you keep pace with unmanaged and disconnected assets.

The integration also pulls in many Google Workspace attributes to give you comprehensive asset visibility. This could include attributes like when a device was last synced, whether a device has a password enabled or is encrypted, or whether it supports the use of a work profile. The Recent Users list in the asset details can also provide insight into device ownership and usage. You can filter for a specific user by using the @googleworkspace.mobile.email attribute for mobile devices or the @googleworkspace.chromeos.recentUsers attribute for ChromeOS devices. To find mobile devices that aren’t locked with a password try the query @googleworkspace.mobile.devicePasswordStatus:=”Off”, or use @googleworkspace.mobile.encryptionStatus:=”Not Encrypted” to find ones without encryption enabled. The wildcard operator also lets you find results with a range of OS versions, such as using @googleworkspace.endpoint.osVersion:=”MacOS 12.% to find Google Workspace assets running macOS Monterey.

runZero offers unmatched active network scanning, while also integrating with an ever-growing list of data sources so that you have a complete asset inventory at your fingertips. To get started, set up a connection to Google Workspace or Google Cloud Platform.

Queries for Google Workspace users and groups
runZero Enterprise users can leverage the new queries tailored for the Google Workspace integration to quickly find and alert on accounts that match particular parameters, in addition to being able to run searches in the Users and Groups inventories. Identify administrator accounts, suspended accounts, and accounts without MFA to improve IAM efforts and better protect your environment. These queries are included in the Query Library and can also be used to create alerts.

Run queries about Google Workspace users or create an alert rule to find assets of interest.

Fingerprinting for Google assets
runZero includes fingerprints for the metadata returned by the Google integrations, including Google Cloud Platform and Google Workspace. This will help provide the most accurate operating system and hardware data about the assets in your inventory.

In addition to Google fingerprints, runZero has also improved fingerprinting coverage of Microsoft 365 Defender assets and SNMP devices. Additional support was added or improved for products by Apache, Aruba, Avaya, Axon, Cisco, CyberPower, Debian, Eaton, Epson, Fortinet, Fujifilm, Geist, Hikvision, Lexmark, Oracle, Sato, Sony, Vivi, and VMware.

Identification of OpenSSL services
In preparation for the OpenSSL vulnerability announcement, runZero released remote, unauthenticated fingerprinting for OpenSSL 3 services, allowing our users to get ahead of the mitigation process prior to the vulnerability details becoming public. This capability has since expanded to detect even more TLS implementations and track the TLS stacks in use on each asset. runZero users can find OpenSSL endpoints using the query product:openssl, in the assets, services, and software inventories.

The server-side exposure only applies to services that process client certificates. runZero already performs checks for this, even though it is not a common configuration. To identify services running OpenSSL 3.0.x variants that may be vulnerable to exploitation, use the following query in the service inventory search: _service.product:”OpenSSL:OpenSSL:3″ AND tls.requiresClientCertificate:”true”.

Improvements to the runZero Console
The 3.3 release includes several changes to the user interface to improve the performance of the runZero console. The tables on the Explorers, Sites, Organizations, and Your team pages now perform and load faster. This will let users query and sort the results in tables more efficiently, getting to the answers they need faster.

The release also extends the availability of the All Organizations view. All users now have a view that will show them the results from all of the organizations that they have access to. The available permissions in that view reflect their per-organization permissions so that they can manage resources just like they would when viewing a single organization.

Release notes
The runZero 3.3 release includes a rollup of all the 3.2.x updates, which includes all of the following features, improvements, and updates.

New features

  • runZero Professional and Enterprise customers can now sync assets from Google Workspace.
  • runZero Enterprise customers can now sync users and groups from Google Workspace.
  • The “All Organizations” view is now available to restricted users with a filtered scope.
  • User interface tables were revamped for Organizations,
  • Sites, Explorers, and Teams.
  • Live validation is no longer required for Qualys VMDR and InsightVM credentials.
    Fingerprint updates.

Product improvements

  • The subnet utilization report now supports filtering by site.
  • CSV export of assets now includes the same hostname information as the inventory view.
  • Up-to-date ARM64 builds of the standalone scanner are now available.
  • The account API endpoint for creating organizations now accepts the argument types documented.
  • Merging two assets now correctly updates the date of the newest MAC address for the resulting asset.
  • Disabling all scan probes now disables the SNMP probe.
    Service Provider information is now displayed with a default domain before SSO settings are configured.
  • Explorers are now ordered alphabetically on the scan configuration and connector configuration pages.
  • runZero users logging in via SSO are now presented with the terms and conditions acceptance dialogue.
  • A new tls.stack attribute that tracks the TLS software provider and version has been added for assets and services.
  • A new canned query for OpenSSL 3.0.x with client certificate authentication has been added.
  • The scanner now reports OpenSSL versions via TLS fingerprinting.
    The scanner now reports Tanium agent instances on the network.
  • The scanner now reports additional detail for SSLv3 services.
  • The search keywords has_os_eol and has_os_eol_extended are now supported on the Assets and Vulnerabilities inventory pages.
  • The “last seen
    ” link to the most recent scan details has been restored on the asset details page.

Performance improvements

  • Improved performance when scanning from macOS hosts that have certain EDR solutions installed.
  • Improved performance of Intune integration when importing a large number of users and devices.
  • Scan task processing speed has been improved for SaaS and self-hosted customers.
  • The baseline memory usage of Explorers has been reduced.
  • Error handling of misconfigured fingerprints has been improved to reduce Explorer and scanner crashes.

Fingerprinting changes

  • Improved fingerprinting coverage of Microsoft 365 Defender for Endpoints assets.
  • Improved fingerprinting coverage of SNMP devices.
  • Tanium agent detection now sets the edr.name attribute.
  • Added fingerprinting of OpenSSL, GnuTLS, and Windows TLS stacks, including version when possible.
  • Apple ecosystem OS fingerprint updates.
  • Additional support added-or-improved for products by Apache, Aruba, Avaya, Axon, Cisco, CyberPower, Debian, Eaton, Epson, Fortinet, Fujifilm, Geist, Hikvision, Lexmark, Oracle, Sato, Sony, Vivi, and VMware.

Integration improvements

  • The AWS integration now includes an option to delete AWS-only assets that were not seen in the most recent import.
  • The Qualys integration now includes an option to import unscanned assets and is disabled by default.
  • Processing speed for large Qualys imports has been improved.
  • GCP credentials can now be configured to import assets from multiple projects.
  • The error message indicating that an AWS integration credential has insufficient permissions has been improved.

Bug fixes

  • A bug that could prevent the use of third-party credentials when using TLS thumbprints or the insecure connection option with a public URL has been resolved.
  • A bug which sometimes prevented GCP imports from completing has been fixed.
  • A bug in how Service Inventory searches were launched from the
  • Asset details page had been resolved.
  • A bug that could prevent TLS probes from completing has been resolved.
  • A bug that could prevent updating site metrics has been resolved.
  • A bug that could prevent the Intune integration from completing long-running tasks has been resolved.
  • A bug that could prevent the GCP integration from returning all assets has been resolved.
  • A bug that could result in a recurring integration running again before the previous task finished has been resolved.
  • A bug that could prevent importing assets from Microsoft Intune has been resolved.
  • A bug that could prevent importing assets from Microsoft 365 Defender has been resolved.
  • A bug that could prevent importing assets from Microsoft 365 Defender has been resolved.
  • A bug that could cause broken asset links has been resolved.
  • A bug that could cause missing service data for services with conflicting virtual hosts has been resolved.
  • A bug that could cause inaccurate user counts for imported directory groups has been resolved.
  • A bug that affected tooltip display has been resolved.
  • A bug that prevented “open in new tab” navigation using middle/right click has been resolved.
  • A bug that could prevent Azure AD imports has been resolved.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.


About runZero
runZero, a network discovery and asset inventory solution, was founded in 2018 by HD Moore, the creator of Metasploit. HD envisioned a modern active discovery solution that could find and identify everything on a network–without credentials. As a security researcher and penetration tester, he often employed benign ways to get information leaks and piece them together to build device profiles. Eventually, this work led him to leverage applied research and the discovery techniques developed for security and penetration testing to create runZero.

馬德里網絡安全峰會:“歐洲已經警惕數據不依賴第三方”

Madrid hosted on October 26th and 27th one of the major international cybersecurity summits. 

The fair Cyber Security World has brought together large technology companies, public administrations and references from the IT sector to address the main topics. 

Among them that of cybersecurity

An increasingly analyzed concept that, in the midst of the Ukrainian war, has multiplied its concern among companies and governments.

What do you know about the Madrid cybersecurity summit?

Data hosting in the cloud, the adaptation of the different administrations and the emergence of new solutions are some of the issues addressed by the major players in the sector with the aim of preparing for the new digital era.

“Europe is already on alert for data to not depend on third parties.

It is a maxim both among public administrations and among companies, who may see their systems attacked by hackers or simple computer errors,” 

ensures monitoring expert Sancho Lerena, CEO of the IT company Pandora FMS

The European Commission, in fact, has already set ahead the goal of achieving technological independence by 2030. 

According to the data they provided, 90% of the data of the European Union are managed by American companies

In addition, less than 4% of major online platforms are European. 

An example of this technological fragility is that the European market represents less than 10% in the microchip manufacturing sector. 

“In a couple of years, more than 50% of companies should be using the Cloud,” the expert says. 

The European future of cybersecurity

The challenge for 2030 is to maximize digitisation within the European Union. 

The project Compass Digital, for example, includes multiple investments and objectives, but the sector agrees that many steps must be taken to achieve full cybersecurity nowadays. 

“There are many companies that still have legacy, outdated systems that cannot incorporate the latest security developments,” acknowledges Lerena.

The IT company Pandora FMS is one of those that works with both digital administrations and companies through its monitoring system. 

The concept of monitoring is increasingly widespread in the sector, as it allows the real-time management of all data generated within an IT structure. 

That way, companies achieve greater efficiency and reduce costs.

“This technology not only helps improve the control of data and activity of a platform, it also strengthens security and warns about possible errors to improve reaction time.” 

Explains the head of technology, whose solution is present in institutions such as Madrid Digital, relying on the Comunidad de Madrid, or the EMT

Also, having international giants such as Rakuten or Toshiba shows the importance that this type of technology currently has.

Europe is already looking to 2030 with the intention of extending this digitisation.

Companies are incorporating monitoring systems and strengthening the cybersecurity of their companies.The objective is none other than to prevent European actors from being “well below the EU’s global economic weight” in technologically relevant areas.

Essential for Smart Cities

Cybersecurity will become increasingly important.

Especially considering that the objective of the most developed countries is to implement those known as Smart Cities where technology and data control will be fundamental for the efficient management of cities.

The concept of Smart Cities responds to those cities where, through data analysis and the use of the latest technological solutions, services are more efficient for citizens and do not generate a negative impact either in economic terms or in the environmental field. 

For example, to find out in which areas more waste is generated to improve the garbage service in that area or the management of public transport through citizen accessibility. 

Therefore, the proper processing of these data and their security will be a pillar for the cities of the future

“Without the control of these data, and without technological independence, it will be very difficult to develop these Smart Cities in a stable way”, says Lerena. 

About PandoraFMS
Pandora FMS is a flexible monitoring system, capable of monitoring devices, infrastructures, applications, services and business processes.
Of course, one of the things that Pandora FMS can control is the hard disks of your computers.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

歷史上最危險的計算機病毒

Here, in our beloved Pandora FMS blog, we have talked a big deal about computer risks. This does not mean of course that we consider ourselves to be faint-hearted or timid, but rather cautious heroes. And in order not to be alone in a battle against the evil that lurks around, today, continuing with this theme of terror and digital desolation, we bring you: some of the most dangerous computer viruses in human history!

These are the computer viruses you should fear the most!

What is a computer virus?

Before bringing on the storm, listing malicious software, we’d better explain a little what this whole thing about computer viruses is and why, although you have to be careful with them, you don’t need to use masks.

A computer virus is a malicious program or code created and conceived to truncate the operation of a computer. 

Like the biological microorganism, they are also infectious, although these replicate only within computer equipment.

They propagate from one computer to another, usually attached to a legitimate document, then execute their cursed code.

Although you may think the computer virus has been with us since the first pulley system, it was Leonard M. Adleman, in 1984, the first to use the term while finding similarities between his student Fred Cohen’s college experiment and the HIV virus.

List of the most dangerous computer viruses that have ever existed

Now, let’s get down to business!

We go into it!

I LOVE YOU

Funny thing is, this virus does everything but love and appreciate you for who you are. In fact, on its own, it has devoted itself to creating chaos around the world with about 10 million dollars in damages.

It came to be believed that 10% of all computers in the world were infected by it and it caused large institutions and governments to disable their email system for not wanting to take any risks.

You see, something not even the tiresome, stalking Linkedin publicity achieved.

I love you was created in the Philippines by Reonel Ramones and Onel de Guzman using social engineering (“A set of techniques that cybercriminals use to trick incautious users into sending them confidential data, infecting their computers with malware, or opening links to infected sites”) they sneaked it into the Philippines, to all of Asia, and in a short time to the rest of the world.
Fun fact:

As the email they sent for you to click on the attachment was a declaration of love, the virus was called “I Love You”.

MELISSA

Its creator was David L. Smith and detonated in ’99 as an infected Word document that was presented to the world as the best thing ever for perverts:

“Hello, I am a list of passwords for pornographic websites.”

At that time the virus was mailed to the fifty most important people in your email and created havoc with his deceptive list of passwords. Of course, the most curious and salacious ones fell for it right away.

It also came with a sort of cover letter, a reference to the Simpsons.

Less than a week after his presentation to the public, David L. Smith was captured by the police. Oh, I’m sorry, David.

However, for his special collaboration with the authorities in trapping other perfidious virus creators, his sentence was reduced from 10 years to 20 months.

Still… His virus caused 80 million dollars in damage.

Fun fact:

If “Melissa” sounds like a sinuous and more like the name of a hurricane, it has to do with the fact that it comes from an exotic dancer from Florida.

ZEUS

A trojan (“A malware that presents itself to the user as a seemingly legitimate and harmless program, but which, when executed, gives an attacker remote access to the infected computer”) created especially to truncate computers with Windows.

It did a number of awkward things on your computer, including capturing forms.
Most computers became infected due to hidden downloads or phishing (“A technique that involves sending an email from a cybercriminal to a user pretending to be a legitimate entity”).

It was used for such ominous things as stealing login credentials from social networks, emails, and bank accounts.

In the United States alone, more than one million computers were infected.

Fun fact:

It compromised corporations such as Amazon, Oracle, Bank of America, Cisco, and many more.

STUXNET 

The virus is believed to have been created by the Israel Defense Forces along with the United States Government.

With these two agents involved, what do you think? That the virus was spawned as an experimental project and that it got out of hand? Or that it was done, expressly, to bring chaos upon our civilization?

Bingo!

This virus was designed for cyber warfare.

It had the goal of halting Iran’s advances in nuclear defense. And so it was, much of the infection took place in Iran.

Fun fact:

It spread through infected pen drives and altered the speed of the devices until they became damaged.

CRYPTOLOCKER 

A ransomware (“A type of malicious program that restricts access to certain parts or files of the infected operating system and asks for a ransom in exchange for removing this restriction”) Trojan that uses, among other means, email to spread.

Once your computer was infected it went on to encrypt some files from the hard drive.

The thing here is that, even though it’s easy to remove as a virus, the files it encrypted stayed still encrypted, unless you paid a ransom by a deadline.

The ransom used to be $ 400, although it could increase, and the number of infected computers was 500,000.

Make the numbers yourself… With only half paying the scammers, you could afford a house in Florida!

Thank God, Evgeny Bogachev, leader of the organization that operated with this virus was arrested and forced to return all encrypted keys.

Fun fact:

In the end, only 1.3% of those infected fell into the scam… That’s about 3 million dollars. Not bad at all!

Dimas P.L., de la lejana y exótica Vega Baja, CasiMurcia, periodista, redactor, taumaturgo del contenido y campeón de espantar palomas en los parques. Actualmente resido en Madrid donde trabajo como paladín de la comunicación en Pandora FMS y periodista freelance cultural en cualquier medio que se ofrezca. También me vuelvo loco escribiendo y recitando por los círculos poéticos más profundos y oscuros de la ciudad.

Dimas P.L., from the distant and exotic Vega Baja, CasiMurcia, journalist, editor, thaumaturgist of content and champion of scaring pigeons in parks. I currently live in Madrid where I work as a communication champion in Pandora FMS and as a freelance cultural journalist in any media offered. I also go crazy writing and reciting in the deepest and darkest poetic circles of the city.

 
 

 

About PandoraFMS
Pandora FMS is a flexible monitoring system, capable of monitoring devices, infrastructures, applications, services and business processes.
Of course, one of the things that Pandora FMS can control is the hard disks of your computers.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

數據中心架構將走向何方?

You know what data centers* are, we’ve told you a lot about the on this blog. Today, however, it is time to check out a particular aspect such as the singleness of their architecture**. In addition to what role they play in the present and which one they will play in the future.

* Physical facility that organizations use to host their information, applications, critical data…

**There’s a good example of alliteration, great rhetorical figure.

So let’s go!

Data center architecture, present and future

Lately with so much cataclysm and recession, it seems that the world is going backwards. However, there are things that improve. The Succession TV show is cooler every season and last summer they released a new variety of Magnum ice cream that is superior to the previous ones. For instance.

Technology is also evolving. In fact, you can see right now how all sorts of innovations take us to the next level.

Data centers are not left behind

About moving forward, I mean.

Why?

Well, because in recent years, IoT technology, the overwhelming need to accumulate data and our beloved Cloud have lovingly promoted the modernization of traditional data centers.

Otherwise these would be obsolete.

As many of you know, the design of a data center is based on a network of computing and storage resources that allows delivering shared data. 

Its key components include:

  • Routers. 
  • Switchgear. 
  • Firewalls. 
  • Storage systems.
  • Servers.
  • Etc.

This is when a number of companies are shifting to modern forms of data centers*.

*Which pose as many advantages as challenges. 

More than twenty years ago, when data center architecture became a hot topic, there was debate between the CISC (Complex Instruction Set Computer) and RISC (Reduced Instruction Set Computer) architectures, and between SMPs, mainframes, and small systems. 

All this happened before the surprising emergence of coprocessors, AISCs and other accelerators, to boost data access and optimize complex operations. 

Currently, data centers are mostly aligned on x86 CPUs, small two-socket servers, and a general standardization of the components that make up the modern data center. 

Even so, corporations continue to look for ways* to increase their efficiency and productivity by helping themselves with technological advances.

*Always at a lower cost.

Where do data centers come from and where are they headed to?

Like all technologies, from the pulley system to home ice-cream maker, data centers have also gone through a long way of transformation.

  • Before the 1990s, data centers were made up of large computer rooms. There, any computer error made them stand out within the system.
  • In the 1990s, as the Internet began to take shape and take center stage, data centers became popular among businesses. 
  • As the new century began, folks began to become more aware of the data centers and brought to light incredible improvements.  Such as data center services, outsourcing demands, shared hosting, application hosting, managed services, ISPs, ASPs, MSPs, etc. 

During later years, data centers became stabilized as a concept in society. The focus, then, was on energy efficiency, refrigeration technologies and management facilities.

Is this the end of ordinary data centers?

Today, a good Intel CPU is considered the most powerful on the market. 112 cores, an incredible number of features to handle all kinds of workloads or technical machine learning activities. 

Even so, companies seek, as police hounds, a new solution.

They are aware that big data analytics, machine learning, artificial intelligence, the so-called “Internet of Things” and other high-spectrum technologies are changing the approach to data centers. 

Modern technologies, as they have been doing from the pulley system to home ice-cream makers, try to minimize costs.

That’s why, if we take into account the money, efficiency, power and optimization in a modern data center, you’ll find old architectures no longer work. 

They consume more energy and take up more space. 

Furthermore, there are already better services, more attractive ones

GPUs are being used, for example, for specialized tasks that suppress single-core CPU performance. 

In fact, GPU-enabled platforms have caused a readjustment of system designs, addressing the data-avid nature of processors.

Despite what it may seem, in recent times, cloud providers are switching to independent data centers, and, of course, large corporations are following suit. 

In the immediate future, the evolution of data centers is expected to approach a new paradigm, probably because the Covid 19 pandemic has pushed the world to work in the cloud like no one imagined.

About PandoraFMS
Pandora FMS is a flexible monitoring system, capable of monitoring devices, infrastructures, applications, services and business processes.
Of course, one of the things that Pandora FMS can control is the hard disks of your computers.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Cloud IAM 安全漏洞是如何被利用的

What is IAM Security?

IAM is an abbreviation for identity access management. Identity access management systems allow your organization to manage employee applications without checking in to each app as an administrator. IAM security solutions allow organizations to manage a variety of identities, including people, software, and hardware.

IAM Infrastructure

Over the past few years, businesses have been making the move from on-prem to cloud-based operations for their business. This has been majorly contributed by the rise of SaaS applications that have allowed businesses to increase operational efficiency through the cloud.

While this brings numerous business advantages, it has further complexified the array of required appliances and services needed to keep the business running smoothly. Many organizations often use multiple different cloud service providers across numerous different services.

This has increased infrastructure complexity, while making security management more difficult. Added to this is the fact that cloud environments constantly operate and run whenever they are. This availability allows the business to run smoothly without fail, but also leaves them vulnerable to exploitation whenever a malicious actor wants to access them.

IAM security layers have become an increasingly popular attack vector as things have moved to the cloud. Such attacks utilize phishing-acquired security tokens to a devastating degree, allowing a cybercriminal to assume any role within the network.

Cloud providers such as Amazon Web Services (AWS), Microsoft Azure and Google Cloud all have various IAM security measures when managing their platforms. Using Amazon Web Service’s IAM policies as an example, we will look at how a malicious attacker could exploit a vulnerability and assume roles.

IAM Security Roles

First, we need to understand how IAM roles come into play. Authentication tokens are assigned to each user identity in AWS. But suppose you wanted to offer network access to a third-party application, tool, or web server. Creating and maintaining users account for each service could prove quite difficult.

AWS considered this issue and created a solution known as the IAM role. A role lacks a username/password or access key, as it doesn’t pertain to a specific user. IAM roles serve as a distinct identity with assigned permissions that determine what the identity can and can’t do within AWS. When users can take on different responsibilities, other roles can be assigned to them.

IAM Security Vulnerabilities

The complexities of enterprise cloud infrastructure have increased the exploitation of IAM security vulnerabilities. Exploitation can occur in various scenarios, such as when debugging in a DevOps environment, where an administrator is provided permissions for testing. This may be forgotten after testing is completed, allowing an attacker to potentially reuse the administrator credentials to access other parts of the cloud environment.

IAM security threats might also stem from other vulnerabilities such as:

Server-Side Request Forgery (SSRF)

Assume a cyber attacker discovered a website running an unpatched application with a common server-side request forgery (SSRF) vulnerability. An SSRF vulnerability allows an attacker to force a server-side application to send HTTP queries to a random domain of the attacker’s choice.

In most cases, the webpage will display the English version via eng.php. Nevertheless, if an attacker modifies the eng.php file to refer to a another URL, the web server will comply. Since the request originated from an internal source, it will then answer if the destination of the request is from an inside resource (such as the instance metadata server).

Misconfigurations

Misconfigurations are another major cause of breaches in IAM and cloud environments, often leading to data loss or unauthorized access to cloud systems. They often arise due to a poor understanding of their complex cloud environment. Fortunately, there are various tools and methods that organizations can use to address this.

Companies should implement a solution that can identify both malicious and unintentional misconfigurations in cloud setups from all entry-points, while enabling a multi-cloud environment. Along with detecting misconfigurations, this solution should offer a means to correct them.

Cloud-Native Application Protection Platform (CNAPP)

Cloud-native application protection platforms offer a solution to common IAM vulnerabilities such as these. A CNAPP analyzes both the cloud infrastructure plane and workloads to give you a complete picture of both. Logging offers one such effective measure for mitigating IAM vulnerabilities by providing insight into who and what is active within a given network.

It is important for enterprises to gain complete visibility of their complex cloud environments to mitigate IAM security threats. Since entry to a network can be granted either directly or indirectly, graph models can be easily used to clearly illustrate the specific relationships between identities and their respective rights. Since each organization’s structure and demands are unique, the ability to leverage granular insight of this data is critical.

Cloud IAM Security: Final Thoughts

Implementing the above steps to increase and manage your network visibility, data logging, and misconfiguration detection will help mitigate cloud IAM security vulnerabilities while preventing major security breaches before they happen.

About Portnox
Portnox provides simple-to-deploy, operate and maintain network access control, security and visibility solutions. Portnox software can be deployed on-premises, as a cloud-delivered service, or in hybrid mode. It is agentless and vendor-agnostic, allowing organizations to maximize their existing network and cybersecurity investments. Hundreds of enterprises around the world rely on Portnox for network visibility, cybersecurity policy enforcement and regulatory compliance. The company has been recognized for its innovations by Info Security Products Guide, Cyber Security Excellence Awards, IoT Innovator Awards, Computing Security Awards, Best of Interop ITX and Cyber Defense Magazine. Portnox has offices in the U.S., Europe and Asia. For information visit http://www.portnox.com, and follow us on Twitter and LinkedIn.。

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

2022 年網絡峰會關於引導您的業務的 4 條要點

Most startups aim to score a big round of venture capital funding and then focus on growing the company. In today’s economic climate, startups are keenly aware of how much money they have and, most importantly, how much they lack. But for some, the option of having outside financing is not the best option or may not be an option at all. In such cases, bootstrapping, or self-financing through personal funds or initial sales, comes into action.

Tom Okman, Co-founder of Nord Security Since the establishment of Nord Security and until this year, we have operated without external funding – and we have learned many lessons. Last week, I had the great honor of presenting our main takeaways from this bootstrapping journey on the stage of Web Summit. Here are the four main insights that I shared for founders focused on bootstrapping their business: #1 Perfect your company’s mission Your company’s mission is not just a catchy slogan you place on your “About” page and then forget about it. Your mission is the underlying DNA of every meeting and every creative solution, and it works in the background every time your people decline offers from other companies. When you raise funding, it’s easy to lose sight of why you started your company in the first place. But when you are bootstrapping, your mission and your customers guide your business path. So bootstrapping founders, instead of focusing on raising the next round of funding, look for innovative ways to turn their mission into a reality. They are also more receptive to what customers are saying to them. That feedback naturally helps polish and evolve your mission over time, which in turn helps improve your corporate and product strategies. And it comes with a bonus – the company develops a solid internal culture. #2 Build local, ship global Some entrepreneurs are wary of using local talent pools, especially if the business is starting outside established startup hubs like Silicon Valley or Israel. However, that was not the case in our story. In fact, we were fortunate to start our company in Lithuania. While funding was scarce when we started, the local ecosystem, partners, and infrastructure helped us immensely in getting our business off the ground. People in Lithuania are talented and keen to prove themselves to their international peers. So one of our best decisions early in the business was to tap into that talent pool and support from local associations and policymakers. Today, more than ever, talent and support for entrepreneurs are spread throughout Europe, both in traditional tech hubs and rising startup center’s. As a result, the startup world is getting flatter, so now is the best time to take advantage of building locally while shipping globally. #3 Focus on the customer Customers are royalty, especially when entrepreneurs operate without external funding. In such cases, customers become leading investors and the most sustainable source of financing, and startups must focus on them above all else. So to be successful, entrepreneurs have to build a product that their customers will love and want to pay for, meaning that creating a market fit for products becomes central to a startup’s survival. Unfortunately, you don’t have a large treasure chest on your side when you are bootstrapped, so the key is to be efficient in adapting to your customer’s feedback. #4 Take risks and be nimble The bootstrapping route empowers entrepreneurs to take charge of the big decisions when it comes to vision, hiring, operations, or finances. That gives self-funded startups an edge because they can be much more flexible, agile, and tenacious than other companies. But at the same time, not taking outside financing pushes entrepreneurs to be hungrier in finding ways to improve their business. Because knowing that customers are critical, you can’t simply spend your way out of problems. In Nord Security’s case, it usually meant taking risks and being the pioneer in educating the market and customers about a new use case, product feature, or upcoming challenges. While such a situation might sound precarious, in a way, it also means returning to what makes startup culture great – the ability and willingness to be inventive and take risks. But it is essential to be decisive when things need to be fixed and be bold in pivoting because inertia can sometimes be more dangerous than recklessness. This combination can prove extremely potent if entrepreneurs allow themselves to be guided by their leading investors – the customers – and their mission-driven culture. But only if founders are willing to lean into it fully.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Nord Security
The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

計算 AU 許可證的(經常性)成本

How much is keeping users on Archive User licenses costing your business and how much could you save if you used CloudM Archive instead?

Gone but not forgotten.

Even years after an employee has left your business, data compliance regulations such as GDPR and Freedom of Information requests require you to keep their data in some form.

You obviously don’t want to keep these legacy leavers on a full Google license as it is a) expensive and b) it means that if the former employee (or someone else) can access the account, they can use your business’s applications and access sensitive business data.

So, businesses like yours have had to find ways to keep the data (and allow it to be searchable and restorable) without allowing access, and preferably, cheaper.

Historically, they would simply change the user’s full license to a VFE (Vault Former Employee) license. This license SKU was free and archived the data to Vault. Perfect!

What is the issue then?
Well, Google introduced the AU (Archive User) license as a replacement for the VFE, and charged for it (currently ~$60 per user per year). If you had 1000 users on a VFE, this would cost you $60,000…every year (+ any additional offboarded users you apply an AU license too).

Now, this is obviously cheaper and more secure than a full license. But, it’s not exactly pocket change when it’s coming out of your budget (especially when it used to be free).

How does CloudM Archive solve the issue?
The only real legal requirements for data when an employee leaves is to make sure that it is stored somewhere, can easily be restored or retrieved (down to a single file or email) if required, and deleted after a set amount of time. CloudM Archive does all of that for you!

CloudM Archive will automatically send the data of any offboarded user straight to a Google Storage bucket that you own and control, as an optional step in our innovative Offboarding Workflow process. If the step is in the workflow for the user, you do not need to do anything except press a button to trigger the offboarding.

If you need anything back (e.g. you receive a Freedom of Information request), CloudM Archive allows you to see all the data stored in the Storage bucket, indexed by user, so you can quickly find and restore any and all the data you want, and you can restore it to any user within CloudM Manage. All in a matter of minutes.

Oh, and when the time comes when you want are legally obliged to delete the data, CloudM Archive will use data retention policies to automatically purge the data when it’s been stored for a set time. Remember John who left 7 years ago? Of course you don’t. You started 4 years ago. CloudM will remember to delete his data on time so you don’t have to (and so you don’t get hit with a massive data regulation fine too).

And, best of all, you don’t need to pay for a Google license (full or AU) for the user you just archived. You just need to pay for CloudM Archive and the cost of storing your data in your Google Storage buckets, which, even when combined, works out considerably cheaper than an AU license. We’ve done the math and some businesses could be saving up to 75%. Whether that’s Euros, Dollars, Pounds or Pesos, that’s gotta look good on your balance sheet.

The full Google license can even be removed from the user and returned to your license pool as part of the offboarding workflow, ready to be instantly reassigned. You will only ever need to pay for the licenses you actually use.

This all sounds great, right? But, what if it would actually work out cheaper to keep a specific power user’s data on an AU license instead of incurring the cost of storage? Well, we’ve got you covered as well. Simply create a Smart Team of Power / High Volume users and create a bespoke offboarding policy that has the “Apply Google Archived User (AU) license” step included.

CloudM Archive is already helping (and saving) organizations around the world, big and small. If you would like the opportunity to cut the costs and manual effort of keeping former employee data, why not have a quick 15 minute call with one of our expert CloudM Team.

About CloudM

CloudM is a management platform designed for Microsoft 365 and Google Workspace. It simplifies IT management with core functions that include: seamlessly migrating data to the cloud, automating employee onboarding and offboarding processes, and securely backing up and archiving data. Its goal is to save businesses time, reduce errors, and efficiently utilize cloud resources.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

CloudM 智能團隊

If you manage a Google Workspace domain, you will be very familiar with Organizational Units (OUs) and how they can be used to group users together, making managing a large number of employees significantly easier.

But, one of the disadvantages we found when using OUs was that, inherently, they were very structured and hierarchical – A user could only belong to one OU at a time.

If a user was in the Marketing OU, they would have access to all the shared Marketing resources. But, if you wanted to add the Marketing Team Lead to another “Manager” OU so you could assign a more complex offboarding policy, they would lose access to the Marketing resources. Far from ideal. Far from flexible.

So, we created a way to give you the flexibility to group users together, without breaking your OU structure, whilst assigning bespoke workflows and automations to meet the requirements of their role. We call these group types Smart Teams.

Let’s take a look at a “Manager” Smart Team, as an example, and explore some of the cool things you can do in CloudM:

  • You can make the Smart Team dynamic and set it so users that have a tag added to their profile (e.g. Manager) will be added to the group automatically.
  • You can set a bespoke Email Signature template for all Managers. For example, you may wish for your Management Team to have their personal LinkedIn accounts displayed instead of the company account.
  • You can automatically share access to Management calendars and documents.
  • You can set a different offboarding policy that might include additional steps (such as requiring manual confirmation or archiving data to a different Storage bucket).
  • You can set a custom Security policy that requires a Manager to use a more complicated, and secure, password to access CloudM (as they are more likely to have admin access to features).

Smart Teams aren’t just reserved for creating custom policies for Management, and you don’t have to make such wholesale changes as shown on the previous example.

In fact, some of the best uses of Smart Teams are when you want to make one small change to a few policies or share resources with a select group of employees.

  • You can add a custom footer to the bottom of the email signature of any user that is going to attend an event or convention, so that your customers, partners and suppliers that are attending know you will be there.
  • You can share calendars and documents with all your First Aiders, regardless of location or department.
  • You can set a quicker, less detailed offboarding policy for all temporary/seasonal staff.

Want to find out more?

Check out our Smart Teams video on YouTube and visit our CloudM website, or book a 15 minute discovery call to speak to one of our brilliant team.

YouTube

About CloudM

CloudM is a management platform designed for Microsoft 365 and Google Workspace. It simplifies IT management with core functions that include: seamlessly migrating data to the cloud, automating employee onboarding and offboarding processes, and securely backing up and archiving data. Its goal is to save businesses time, reduce errors, and efficiently utilize cloud resources.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.