Archive for July, 2020

Aptum Survey Shows Canadians Setting Pace As Global Businesses Embrace Cloud Services

Posted in Commentary with tags on July 29, 2020 by itnerd

While Canadian organizations have often been perceived as conservative when it comes to adopting new technologies, a new survey from Aptum, a global hybrid cloud and managed services provider, demonstrates exactly how essential cloud computing has become in the country. Seven out of 10 (69 per cent) Canadian organizations said the cloud is very important.
In a recent global survey of 400 senior IT professionals from organizations in industries including financial services, manufacturing, public sector, retail and telecom, more than half (51 per cent) of respondents from Canada strongly agreed that cloud computing is essential in enabling business continuity within their organizations (compared to 49 per cent globally). Canadians are slightly ahead of their global counterparts in how much they rely on cloud with 51 per cent of respondents saying they strongly agree cloud computing is essential to the financial security of their organizations (compared to only 40 per cent globally). 

This level of strategic importance placed on cloud has translated into organizational confidence in technology to help businesses maintain continuity throughout the current COVID-19 pandemic. For example:

  • 53 per cent have used cloud services to provide customers with critical services (48 per cent globally);
  • 77 per cent had used cloud to enable their remote workforces (76 per cent globally).  

Even though Canadian organizations seem to have fully embraced the cloud, they still find picking the right solutions and plotting a course through different technologies difficult with 72 per cent of respondents somewhat or strongly agreeing that complexity and abundant choices make choosing the right cloud strategy difficult (62 per cent globally). A majority of respondents in Canada (77 per cent) even wanted to accelerate cloud adoption but needed expertise or help to make it happen (69 per cent globally). 

Canadian businesses looking to adopt cloud services also face significant challenges in these areas: 

  • Getting full visibility into all cloud environments through a single portal (23 per cent in Canada versus 21 per cent globally)
  • Control and governance of access to cloud environments (25 per cent in Canada versus 18 per cent globally)
  • A clear mechanism to detect and respond to security threats across all cloud environments (24 per cent in Canada versus 21 per cent globally)

The global survey of 400 senior IT professionals in Canada, the U.K, and U.S. was conducted between May and June 2020. 

There is a blog post from Aptum which uses global numbers from the survey: https://aptum.com/blog/cloud-technologies-leading-businesses-through-covid-19-crisis/

Also of note, all of Aptum’s data centers in Ontario, Quebec, British Columbia and England are now open and allowing access to their customers with clear guidelines and procedures to remain COVID-19 secure.

Half Of Canadian Businesses Not Confident They Can Support Remote Work Long Term: OVHcloud Survey

Posted in Commentary on July 29, 2020 by itnerd

Half (48 per cent) of Canadian businesses said they were unprepared for the immediate technological changes necessitated by COVID-19, according to a recent survey by OVHcloud in conjunction with data service solutions company Maru/Blue, with 48 per cent concerned they will need to maintain long-term remote operations.  

In fact, only a third of companies (32 per cent) feel ‘very confident’ in their ability to seamlessly scale cloud capabilities for the new realities of work. And while most organizations (90 per cent) would of course like to speed up their digital operations, only 32 per cent feel very confident they can. According to the survey, two thirds (66 per cent) of businesses surveyed believe that the impact of COVID-19 on their organization would have been less severe if they had had a more robust digital strategy in place to manage online operations.  

In addition to expressing regret when looking back, these companies also lack confidence about the future. Those in Ontario (73 per cent) were particularly likely to agree that a digital strategy would have minimized the immediate COVID-19 impact, while businesses based in Quebec were less likely to agree (53 per cent). Those in British Columbia were less likely to have the right infrastructure in place (32 per cent). 

When it comes to cloud operations, only one in three Canadian businesses (33 per cent) strongly believe their cloud service provider is prepared to help them shift workloads to the cloud. For companies with under 100 employees, 23 per cent do not think their IT team has the necessary experience to manage, or use, cloud services. Four in ten companies (40 per cent) also worry their organization lacks the proper IT infrastructure to manage hybrid cloud or multi-cloud operations and that they do not have the resources to speed up their digital strategy (38 per cent). 

When it comes to scaling up their cloud operations for the new digital world, organizations believe their greatest challenges are cyber security and privacy risks (44 per cent) and cost (37 per cent). Additionally, 58 per cent of businesses say they are concerned about security as they embrace more robust digital strategies.

Issues of data sovereignty are also top of mind for Canadians. As companies grow a dependence towards more digital services, a reliance on the proper laws and government structure for said data also exists. Despite this, only 32 per cent of respondents felt very confident that their cloud provider had the proper structures in place to respect and protect their organization’s data sovereignty.  

Responding to the new challenges faced by Canadian businesses, OVHcloud recently enhanced its Canadian portfolio of cloud solutions by adding web hosting offers to dedicated servers, Private Cloud and Public Cloud offerings. With a diverse set of tools, OVHcloud’s offerings are easy to use and scale for a wide variety of users, ranging from small companies to large multi-faceted organizations. OVHcloud helps support professional websites, blogs, online retailers, web agencies – any project that needs the support of the cloud to launch and scale, while ensuring a Cloud Act emancipated offering for Canadian businesses.  

Tech CEOs To Get Grilled By Congress Today…. Here’s How To Watch

Posted in Commentary with tags , , , on July 29, 2020 by itnerd

Apple, Amazon, Google, and Facebook are set to be grilled by Congress today. Specifically the Judiciary Committee. The hearing is to find out if tech companies are using their dominant market positions to stifle competition which would be harmful to consumers. It will be interesting to see how this plays out as this is an election year which means that you might see some things might happen for no other reason than to increase the chances of re-election for some politician. If you’re interested in watching the “fun”, here’s a link to watch it live starting at noon ET:

Expect some feedback from yours truly once this is over.

Fresh Off Of Banning TikTok, India Looks To Ban Hundreds Of Chinese Made Apps

Posted in Commentary with tags on July 29, 2020 by itnerd

India recently banned TikTok as part of an ongoing spat with China where India cites security reasons for the ban. But news out of India indicates that this may not be the end as the Indian government is looking to ban hundreds of Chinese apps citing the same security reasons:

India has drawn up a list of 275 Chinese apps that it will examine for any violation of national security and user privacy, signaling heightened scrutiny and the possibility of more Chinese internet companies being banned in the country, according to people aware of the developments. This follows the high-profile ban of 59 Chinese apps last month, including short video app TikTok, amid simmering geopolitical tensions between the two Asian giants. 

The list, reviewed by ET, includes gaming app PubG, Zili by phonemaker Xiaomi, AliExpress by ecommerce giant Alibaba as well as apps like Resso and ULike from TikTok-owner ByteDance. “The government may ban all, some or none from the list,” said one person cited above. A spokesperson for the union home ministry did not respond to queries from ET on the developments. However, official sources said reviews aimed at identifying more Chinese apps and their funding is underway. “Some of these apps have been red-flagged due to security reasons while others have been listed for violation of data sharing and privacy concerns,” an official explained. This is in addition to examining the alleged flow of data from these apps to China that poses a threat to sovereignty and integrity of India, according to officials who pointed to what they termed as China’s data-sharing norm that requires companies of Chinese-origin to share data with the home country, irrespective of where they operate.

This is going to be interesting to watch because other countries such as the US and the UK are looking to do something similar. So depending on how bad the blow back is from the government of China, that will likely govern if this spreads. As for the privacy issues that these apps may or may not pose, the makers of these apps could make this go away by providing definitive proof that their apps pose no threat. To date they haven’t done that. But the need to if they don’t want to be banned from the biggest markets on the planet.

South African Social Development Department Improves Service Delivery with OpenText

Posted in Commentary with tags on July 29, 2020 by itnerd

 OpenText™ today announced the Department of Social Development of South Africa has deployed OpenText™ Documentum™ xCP, a case management framework to digitize its social assistance appeals process. The solution enables the department to provide a more effective, efficient, and accessible social assistance appeals service for its citizens and reduce legal expenditures.

OpenText™ Documentum™ xCP helps ensure compliance and enables department staff to promptly inform stakeholders of required action, escalate long-running appeals and generate audit reports for reference.

The department worked with local OpenText partner Faranani DocTec to implement the solution. The cost savings achieved by using OpenText™ Documentum™ xCP have been reallocated for the improvement of the Department of Social Development’s business services, including administration of appeals. These bottom-line benefits have also been put towards increasing awareness among potential applicants and beneficiaries of social assistance.

OpenText™ Documentum™ xCP features a low-code development environment for rapid design and deployment of robust case management solutions, bringing new efficiency and agility to complex information-centric processes, from loan applications to benefit approvals, across a range of industries. 

For more information on OpenText Documentum xCP, click here.

Zoho Touts 15 Million Users On Its Enterprise Collaboration Platform

Posted in Commentary with tags on July 28, 2020 by itnerd

Zoho Corporation today shared the latest adoption numbers on Zoho Workplace, its enterprise collaboration platform.  In the last quarter, Zoho Workplace has seen a dramatic increase in adoption and now supports 15 million users globally. The company explained this unprecedented growth as a consequence of the pandemic as well as high demand from business users seeking better business application integration. More than 25 percent of new Zoho Workplace customers have made the decision to switch over from G Suite and Microsoft. 

Business users are increasingly seeking a convergence of collaboration, productivity, business, and communications tools as indicated by a recent study by Beagle Research. According to the study, 67.2 percent of respondents across North America felt that their work is chaotic due to non-integrated systems. Zoho Workplace uniquely fills this gap as competitors such as Zoom, Dropbox, and Slack fail to provide a seamless experience from start to finish. In addition, platform-centric competitors such as Microsoft and Google do not easily support contextual work environments where collaboration needs to happen within business applications. 

Zoho Workplace provides a unified platform including email, chat, audio and video conferencing, shared file storage, and online office suite that enhance the productivity of employees, anywhere. It is an online workspace that allows users to intuitively and securely work together, meet, collaborate and accomplish goals in a contextual setting. The platform includes:

  • Zoho Mail: Custom domain-based, secure business email with Calendar,  Tasks, Notes and Bookmarks.
  • Zoho CliqSecure instant messaging with audio and video call capabilities. Zoho Cliq has seen a 225 percent increase in messages sent and 1200 percent increase in calls made per day since March.
  • Zoho MeetingOnline meeting and conferencing application. Zoho Meeting has seen a 772 percent increase in meeting sessions since March.
  • Zoho ShowTimeOnline training and virtual classroom solution.  Usage has increased 1100 percent since March.
  • Zoho ConnectIntranet for organization and organization specific social-media platform for employees.
  • Zoho Office Suite: Online office suite with enhanced co-creating, reviewing and collaboration features. Suite includes Zoho WriterZoho Sheet, and Zoho Show
  • Zoho WorkDrive: Cloud storage for the entire organization with ability to share files securely. Usage has increased 300 percent since March.

Zoho Workplace enables single sign-on across these applications where work streams follow users as they move from screen to screen. This convergence of business, communication, productivity, and collaboration applications allows users to effectively work in context within teams, across their organization or with external stakeholders. Zia and Zia Search boost user productivity as AI and search work across all 9 apps on the platform. Instead of having to extract data across multiple solutions, users can complete projects, from start to finish, all on Zoho. IIFL, Equitas Bank, Lambda Students, India Cements and Don Franklin Auto have chosen Zoho Workplace instead of other solutions because they require tight integration across their enterprise collaboration and business applications.

Zoho Privacy Pledge

Zoho Workplace also ensures a level of confidentiality that no other vendors in this space can guarantee. Zoho does not allow any third-party trackers to monitor usage behavior and never sells any data to ad-based companies. Because Zoho owns, and has built its entire technology stack, the company is able to offer the most secure experience to its 50 million users without any compromise on data privacy. Zoho Workplace users have the assurance that their data is confidential and protected, and only users themselves maintain ownership of that data. 

EnGenius Announces The New Rugged ECW260 Cloud Managed Wi-Fi 6 Outdoor Wireless Access Point

Posted in Commentary with tags on July 28, 2020 by itnerd

EnGenius Technologies Inc., a high-profile multinational networking company for over two decades, today announced the release of its new EnGenius ECW260 Cloud Managed Wi-Fi 6 Outdoor Dual-Band Wireless AP designed to handle enormous crowds on multiple devices using the fastest speeds available.

The AP uses the latest in Wi-Fi 6 (802.11ax) technology to support the ever-growing bandwidth demands of densely congested outdoor environments such as airports, smart cities, campuses, parks, and massive industrial sites—all while reaching combined wireless speeds of up to 1.8 Gbps.

Easy Cloud Management: The EnGenius Cloud solution can manage an unlimited number of APs from anywhere. Devices can be quickly scanned, registered, pre- & auto-configured, and remotely monitored and troubleshot. EnGenius Cloud’s dashboard quickly checks network health, provides managed device status, and displays overall top network performance and insights including client applications & operating systems.

Rugged Weatherproofing: Backed by EnGenius’ decades-long expertise in outdoor wireless networking, the redesigned hardware form-factor ECW260 is armored by an IP67-rated dust and water-resistant enclosure, fully capable of withstanding harsh weather.

Security: Each ECW260 AP securely communicates with EnGenius Cloud using two-factor authentication, non-sequential serial numbers, and MAC address verification to ensure only authorized cloud devices are connected. It also uses the latest, most advanced wireless security WPA3 and WPA3 Enterprise to strengthen encryption. EnGenius Cloud offers MAC filter, event-based alerts and push notifications to divert and prevent network hacks and other security threats.

Powerful coverage: The ECW260 AP has a 2.5 GigE PoE-compatible port for easy placement where power outlets are scarce. It also features four detachable 360° antennas that boost signal strength and allows users to swap them out for bigger, better antennas. When meshing, the AP uses high power radios to extend the distance between itself and other access points.

Unmatched Affordability: The ECW260 AP is valued at $499 and—like all EnGenius cloud managed access points—comes with no access point licensing or subscription fees. 

For more information, visit https://www.engeniustech.com/engenius-cloud/hardware.

EvilCorp: The Criminal Hackers Behind The Garmin Ransomware Attack

Posted in Commentary with tags on July 28, 2020 by itnerd

Now I have spent a lot of time talking about the Garmin ransomware attack that has pretty much crippled Garmin and pretty much infuriated users of of their products. And I’ve mentioned that the word on the street is that the people behind this want $10 million in ransom. But now that Garmin’s services appear to be coming back on line, it’s time to talk about who the people are behind this ransomware attack?

The ransomware that is apparently being used is “WastedLocker” made by a group of hackers calling themselves “Evil Corp.” MalwareBytes has more info on both:

The ransomware name is derived from the filename it creates which includes an abbreviation of the victim’s name and the string “wasted”.

For each encrypted file, the attackers create a separate file that contains the ransomware note. The ransom note has the same name as the associated file with the addition of “_info”.

The ransom demands are steep, ranging from $500,000 to over $10 million in Bitcoin. Given that the operators make every effort to go after any backups, some organizations may feel the need to pay up. Where other ransomware operators are adding the exfiltration and even auction of stolen data to their arsenal, the Evil Corp gang has shown no inclination in that direction yet.

Historically the Evil Corp gang targets mostly US organizations and it looks like they are staying on that track with a few victims in Europe. The main players in the group are believed to be Russian.

The ransomware itself is very interesting in terms of how it operates:

The ransomware itself is custom built for each client so there is nothing to be gained by doing a full analysis. The attacks do have some commonalities though which we will discuss here.

  • Deletes shadow copies, which are the default backups made by the Windows OS.
  • The main executable for the ransomware is copied to the system folder and gets elevated permissions
  • A service is created that runs during encryption.
  • During encryption the encrypted files are renamed, and the ransom notes are created.
  • A log file is created that lists the number of targeted files, the number of encrypted files, and the number of files that were not encrypted due to access rights issues.
  • The service is stopped and deleted.

This is very crafty and would almost be worthy of praise were it not for the damage that it causes.

Now over to Evil Corp. Their top guy is said to be a fellow by the name of Maksim Yakubets according to the FBI. His right hand man is said to be Igor Olegovich Turashev and both are Russian nationals wanted by the FBI. And if you’re interested in why the FBI wants to get them into a jail cell, this Wired article can help you with that. They’ve been around for a while and have become increasingly more sophisticated, which makes them a threat to computer users everywhere. And if they are truly behind the Garmin ransomware attack, they’ve now got the eyeballs of a whole lot of people behind them who would love to take them down. Especially if the rumors are true that Garmin paid the ransom to get themselves out of this. Thus I would not want to be them as there’s not a whole lot of places outside of Russia that they can go without the FBI being able to nab them. Plus with this latest attack, the FBI is going to work double time to get them into a nice cosy jail cell.

A Rumor Claims That Garmin “Obtained” The Decryption Key To Get Their Data Back…. The Facts Say That Garmin Is Down Again

Posted in Commentary with tags on July 27, 2020 by itnerd

A report from Sky News says that Garmin has “obtained” the decryption key to get them out of their ransomware mess:

Smartwatch maker Garmin has obtained the decryption key to recover its computer files from a ransomware attack last Thursday, Sky News has learned.

The thing is, Sky News offers up no proof whatsoever. At least when the news that Garmin had been pwned by ransomware first appeared, there was proof from a variety of sources to back this up. But that’s not the case here. And what makes this report questionable:

Security sources who spoke to Sky News said WastedLocker is believed to be developed by Evil Corp, a hacking group based in Russia which was sanctioned by the US Treasury last December

The sanctions mean that “US persons are generally prohibited from engaging in transactions” with the cyber criminals, although the US Treasury did not respond to questions about whether the general prohibition applied in the circumstances of extortion.

Sources with knowledge of the Garmin incident who spoke to Sky News on the condition of anonymity said that the company – an American multinational which is publicly listed on the NASDAQ – did not directly make a payment to the hackers.

So if Garmin did make the payment, they didn’t do so directly to try and evade the fact that paying Evil Corp would be illegal. That’s not unusual as I have heard of these third party payments to ransomware gangs happening in other situations. It all depends on how much the data is worth to the organization that got pwned.

But let’s move from rumor to fact. Garmin Connect is down again based on their status page as of 10PM Monday. Here’s a screenshot:

This has stretched the patience of Garmin users as it was partially up earlier today, which gave Garmin users some hope. But any hope is likely gone now and Garmin is now back to handling a PR disaster. If everything that happened over the weekend wasn’t going to drive Garmin customers to competitive products, I’m going to guess that this latest incident will.

It sure sucks to be Garmin right now.

UPDATE: As of 11:15 PM Garmin Connect appears to be back to being somewhat online.

Meet The Faces of The Rainbow Six Siege North American League: Canada Division

Posted in Commentary with tags on July 27, 2020 by itnerd

Since the official kick-off of the Rainbow Six Siege North America League: Canada Division, we’ve seen incredible matches between some of Canada’s top Esports players and it’s only getting more and more intense as the matches go by!

Just as important as the game we love so much to watch, is the teams and players behind the screens who put on a show for us every week and battle to become Canada’s top Rainbow Six Siege team.

Mirage Esports: 2 wins, 0 losses

R6:S Roster:

Nordik Esports: 1 win, 1 loss

R6:S Roster:

Altiora: 1 win, 1 loss

R6:S Roster:

LiViD Gaming: 0 wins, 2 losses

R6:S Roster:

Make sure to tune into https://www.twitch.tv/rainbow6 for all the action!