DH2i Collaborates with Red Hat to Accelerate the Delivery of Intelligent Applications Across the Multi Cloud

Posted in Commentary with tags on December 13, 2022 by itnerd

DH2i a world leading provider of always-secure and always-on IT infrastructure solutions, today announced that DH2i’s DxEnterprise multi-platform smart high availability clustering software has earned Red Hat OpenShift certification on Red Hat Enterprise Linux. This certification verifies that DxEnterprise is a containerized solution that is fully supported on Red Hat OpenShift and Red Hat Enterprise Linux to accelerate the delivery of intelligent applications across hybrid and multi cloud environments.

A flexible, stable, and reliable foundation for modern IT and hybrid cloud environments, Red Hat Enterprise Linux delivers a trusted platform that empowers innovation and increases operational efficiency within an organization—no matter where users choose to run their workloads. Consistency across infrastructure footprints — including physical, virtual, private and public clouds, and edge deployments — allows users to manage applications, workloads and services using the same tools and staff throughout their infrastructure. And by giving users a platform that satisfies the needs of both development and operations teams, Red Hat Enterprise Linux reduces deployment friction and operating costs while shortening time to value for critical business workloads. In fact, when used as the underpinning foundation for other Red Hat products like Red Hat OpenShift, the security capabilities, performance, interoperability, and innovation of Red Hat Enterprise Linux extends throughout a customer’s infrastructure to deliver more value. As a result, users can build and operate a hybrid cloud environment that keeps pace with their business needs.

DxEnterprise is multi-platform Smart High Availability clustering software for Windows Server, Linux and containers. DxEnterprise delivers an all-in-one clustering solution for any application, any OS, any server configuration and any cloud. DxEnterprise is particularly optimized for instance or containerized Microsoft SQL Server deployments on any platform such as Red Hat OpenShift.

DxEnterprise (DxE) features a new container sidecar to enable application-level high availability (HA) clustering for stateful containers in OpenShift. That means when OpenShift must restart a failed pod, DxE has already failed-over the compromised process to another healthy container ensuring zero application downtime. In the specific case of Microsoft SQL Server running on Red Hat OpenShift, DxE provides a cluster management solution that enables fully automatic failover of SQL Server Availability Groups on Red Hat OpenShift. DxEnterprise Smart High Availability Cluster Management on Red Hat OpenShift unlocks 5 key benefits:

  1. Isolation: The primary application can run independently in one container while the DxE sidecar hosts complementary HA clustering services. This independence can help isolate failures.
  2. Quick deployment: It’s easier to deploy a DxE sidecar container — certainly easier to build and maintain a combined primary application/DxE container image.
  3. Scalability: Once you have the DxE sidecar containers in place, it’s easier to scale up to support as many pods as needed.
  4. Application-level HA: DxE sidecar provides zero downtime for stateful containers in Red Hat OpenShift.
  5. Management simplicity: DxE sidecar is fully certified enabling single pane of glass management in Red Hat OpenShift.

The End Is Near For Elon Musk And Twitter…. Here’s Why That’s The Case

Posted in Commentary with tags on December 13, 2022 by itnerd

Yes, I know. I’ve been predicting doom and gloom for Twitter since Elon Musk took over. But it seems that we’re now in the end game. Starting with the fact that Twitter has disbanded its ‘Trust and Safety Council’:

The company said in the email that it was “reevaluating how best to bring external insights into our product and policy development work. As part of this process, we have decided that the Trust and Safety Council is not the best structure to do this.”

The move comes as Twitter’s new owner Elon Musk is undoing many of the policies and practices put in place before he took over the social media company.

A page on Twitter’s website, which has now been removed, explained that the council was made up of external expert organizations that advised on issues including online safety, human and digital rights, suicide prevention, mental health, child sexual exploitation, and dehumanization.

“Together, they advocate for safety and advise us as we develop our products, programs, and rules,” Twitter previously explained.

Keep in mind that three members of this council quit over the weekend and pretty much highlighted that Elon wasn’t the least bit interested in taking their advice. I am going to go out on a limb and say that this is his reaction to that. An alternate view is that more members of this council might have been about to quit and he pre-empted that. Either way, this will not end well for Elon. Advertisers who are already skittish at advertising on Twitter are going to be even more skittish, and move their advertising budgets elsewhere. Which of course will cost Elon money. Plus this more will push users away from Twitter. We’ll come back to that shortly.

His workforce, or more accurately what’s left of it is another issue for Elon. And moves like this won’t help the situation:

Musk on Friday sent an email to Twitter staff, saying the company could sue workers who leak confidential information, a source told Insider.

Employees had until 5 p.m. PT on Saturday to sign a pledge agreeing not to leak and to abide by non-disclosure agreements they signed when they joined the company, according to the email which Platformer’s Zoë Schiffer obtained and cited in a Twitter thread on Saturday morning.

However, some staff didn’t respond to the pledge because they weren’t looking at their emails over the weekend, per Platformer’s recent report. These employees discovered on Sunday they had been cut off because they were unable to access company systems, the report said.

Twitter then sent another email about the pledge to its workforce, Platformer reported. The company requested staff to send an email to a certain team, confirming their decision to remain loyal to their non-disclosure agreements, the report said. The email said employees had until December 15 to respond, per Platformer.

I can totally see a scenario where this whole debacle sends more employees running for the exits. In effect, instead of gaining their loyalty, Elon has effectively pushed them away. Which makes his ability to run Twitter more difficult.

Speaking of that, if Elon reads this piece from PC Magazine, he’ll lose his mind:

Elon Musk will have a lot more abandoned Twitter usernames to hand out in the coming years, a new research note from Insider Intelligence predicts.

This forecast released Tuesday(Opens in a new window) sees Musk’s erratic stewardship of his $44 billion purchase inciting “an exodus of users next year and beyond,” with 32.7 million of Twitter’s estimated 368.4 million monthly active users worldwide logging off by 2024—almost 9% of the total.

“This is the first time we’ve predicted a drop in worldwide Twitter users since we began tracking the company in 2008,” Insider’s report comments in boldface type. 

A 9% drop doesn’t sound like a lot. But it basically shows that to borrow one of Elon’s favourite phrases, “Vox Populi, Vox Dei” which is Latin for “the voice of the people is the voice of God”. In this case the people leaving Twitter have spoken in terms of Elon’s ability to run the platform and make it a place to spend time on. Which is that Twitter is not a place that they want to spend time on. Any reasonable person who sees a report like this should be trying to figure out how to make sure that this scenario doesn’t play out. But Elon over the last few weeks has proven that he’s not a reasonable person. So I expect this scenario to play out as is, or worse. And here’s an example of worse:

Sunday, the Wall Street Journal reported that ad traffic on Twitter, as measured by the firm Similarweb, had plunged to record lows in early December—”traffic volume now so low it doesn’t even meet the firm’s threshold necessary to track and measure it.”

That’s a huge problem for Elon. And it’s a safe bet that his Twitter Blue relaunch won’t solve that problem. Which is why I can safely say that when it comes to Twitter, we’re now in the end game.

Elon Musk Is Censoring Posts About Mastodon On Twitter…. WTF???

Posted in Commentary with tags on December 12, 2022 by itnerd

If you want proof that Elon Musk is so thin skinned that he cannot handle any competition, here’s a great example of that. People are starting to notice that Twitter posts that have the word “Mastodon” or links to a Mastodon account, or both in it are starting to look like this:

How is this possibly sensitive content? Oh yeah. It’s sensitive to Elon because it illustrates that Twitter is dying a slow death under his watch because of his gross incompetence. Because all this is going to do is to drive people who weren’t sure about fleeing Twitter to head to Mastodon. And it’s also going to make people like yours truly who still had Twitter accounts close them and go all in with Mastodon. Both will deprive Elon of eyeballs, which in turn will make advertisers not want to advertise on Twitter. That in turn will take money out of his pockets and accelerate the death spiral that Twitter is in.

Congratulations Elon, you played yourself. Again.

A Trio Of Members Of Twitter’s Trust And Safety Council Quit This Past Weekend

Posted in Commentary with tags on December 12, 2022 by itnerd

Three prominent members of Twitter’s Trust And Safety Council resigned over the weekend by Tweet. I encourage you to read the Tweet in question as it is eye opening:

This council has more than 70 members on it and has existed since 2016 according to Slate. This is what they did:

The council is a voluntary group of experts and civil society organizations tasked with advocating for user safety and guiding Twitter policy to “improve the health of the public conversation.” The body, which started in February 2016 after a moment of company crisis—including the departure of several key leaders and an all-time-low stock price—has long advised Twitter leadership on hefty issues like human rights, harassment, and suicide prevention, with the input of executives from prominent groups like Article 19 and the Committee to Protect Journalists.

Cleary Elon Musk has no time for this group which is why these departures happened. He’ll likely regret that as the EU has already put him on notice that he can’t do whatever he wants in terms of “free speech”. That means that other jurisdictions will likely be doing the same. And when he can’t demonstrates that he has a credible group of people to deal with things like misinformation, hate speech, etc., Elon will be in deep trouble. And I for one won’t feel the least be sorry for him.

A New Email #Scam Is Making The Rounds Claiming That You Broke The Law…. Let’s Dive In And Have A Look At It

Posted in Commentary with tags on December 12, 2022 by itnerd

I haven’t done one of these in a while because to be frank, there isn’t anything new on the extortion phishing email front. But I had a reader reach out to me to bring one to my attention that is new and different.

Here’s the email that you will get. It is titled “READ OR GO TO JAIL”:

Hi, I keep the whole story short.

Your device got infected with my private trojan, it gave me access to all your files, accounts and contacts.

Check the sender of this email, I sent it from your email account.

I stole all your data and then I removed my trojan again, to not leave any traces.

I KNOW EXACTLY ABOUT YOUR ILLEGAL ACTIVITIES!

It won’t take a long time to send your data with the proof of your activities to the police.

If you want to avoid jail time, send 1400$ in Bitcoin (BTC) to my address.

You can easily buy Bitcoin (BTC), just Google: “Where to buy Bitcoin (BTC)?”.

My address is: [REDACTED]

Yes, that’s how the address looks like, just copy and paste it, the address is (CaSe-SenSitiVE).

You are given not more than 4 days after you have opened this email.

Once I get the payment, I will remove everything, be sure, I keep my promises.

Next time keep your device updated with the newest security patches.

So let’s start with the fact that it was sent from the recipients email address. This is what is known as “email spoofing”. If you want to go into weeds about how this works, click here. But scammers will use this technique to convince you that you’ve been hacked, when in fact you have not been hacked. There are ways to stop this, but it requires you to have control of your own email server to implement a number of suggestions that are listed in the article that I linked to. But even that may not solve the problem. If you want to take additional steps to protect yourself from email spoofing, talk to your hosting company to see what they can do for you.

The next thing about the email is that he infected you with a trojan and then removed it to cover his tracks after stealing your data. This is meant to prey on all the stories about companies getting hacked and data being held for ransom. While that does happen, it isn’t happening in this case as any real threat actor would have not only provided you proof that you had been hacked, but they would not have contacted you in this manner. And if you are concerned about being infected with something or getting infected with something, use a trusted antivirus application or two to make sure you are clear. Or get a trusted IT professional to look at your computer.

Now about the part about going to jail. That’s to give you an incentive to pay the $1400 in Bitcoin that this scammer wants because nobody wants to have the cops knocking on their door. I’ll also point out that there is no way for this guy to know that you paid him because Bitcoin is anonymous. So that’s another hint that he’s lying. And checking the wallet that he had in the email, there was nothing in it. Which means that either he just started this scam, or he’s having no success if it has been around for a while.

Hopefully this allows you to recognize scams when they hit your inbox so that the only person who has a happy holiday is you.

Uber Announces Keep Ukraine Moving Donation Campaign

Posted in Commentary with tags on December 12, 2022 by itnerd

Starting today, Canadians will be able to donate through the Uber app to support the people of Ukraine. And Uber will match every donation up to $1 million. All donations will go to a charity partnering with UNITED24 to provide the Ministry of Health of Ukraine with funds for urgently needed ambulances. 

Ukraine has now endured more than nine months of horrific war since Russia’s full-scale invasion. Attacks have devastated cities, destroyed families, and unleashed a refugee crisis unlike any Europe has seen since World War II. In the days following the February invasion, Uber made a commitment to help for as long as the war continues. So as we approach the end of the year, we’re launching this new donation campaign spotlighting the bravery and selflessness of Ukrainian drivers.

Here’s snapshot of the actions that Uber taken so far:

  • Expanded Uber services to 18 cities across Ukraine
  • Provided more than 100,000 free rides to Ukrainian refugees, internally displaced families, and aid workers
  • Rolled out free transport for medical staff and patients at 100+ hospitals, and delivered medications for those in need
  • Built a customized logistics platform for United Nations relief agencies and delivered more than 220 truckloads of emergency food, medicine, and winter shelter supplies at no cost
  • Built a custom version of the Uber app to provide free on-demand transport to teams of conservationists from Ukraine’s Ministry of Culture to locate and protect thousands of artifacts of irreplaceable value to Ukrainian cultural heritage and independent national identity
  • Raised more than $5 million – and counting – in charitable donations to support Ukrainians in need

You can read more about in this blogpost here

Trend Micro’s ZDI Lifts the Lid on Vulnerabilities and Diffuses Danger

Posted in Commentary with tags on December 12, 2022 by itnerd

Trend Micro Incorporated today announced the winners of its fall Pwn2Own competition held through the Zero Day Initiative. $989,750 in prizes were awarded throughout the event with the purchase of 63 unique zero days. The real-world impact if these vulnerabilities were weaponized would amount to 10x in time, data and financial loss.     

An estimated 80% of US employees are currently working from home some or all of the time, according to Gallup. However, that can expand the corporate attack surface if devices like routers, smart speakers, printers and network attached storage (NAS) are not properly secured. Vulnerabilities in household devices disclosed through Pwn2Own and Trend Micro’s Zero Day Initiative inform Trend Micro’s industry-leading threat intelligence that secures increasingly entangled consumer and enterprise networks.

Several waves of Deadbolt ransomware that compromised global NAS devices this year highlight the potential risk for businesses.

Attackers could also use compromised small office/home office (SOHO) connected devices as a jumping-off point for lateral movement within a network, potentially leading to a device connected to corporate resources. 

That’s why this year’s fall Pwn2Own competition featured a “SOHO Smashup” category that challenged hackers to exploit a Wi-Fi router and connected device. If contestants were able to take complete control of both devices within 30 minutes, they could earn $100,000 and 10 Master of Pwn points.

Raising awareness of the risks to SOHO equipment comes amidst government moves to enhance buyers’ confidence, in a technology where responsibility for security often falls between employee and enterprise.

In the EU, legislation is being proposed to mandate minimum security requirements of connected device vendors, while in the US there are moves afoot to launch a new labelling system akin to Energy Star.

Pwn2Own was held from 6-8 December 2022 in Trend Micro’s Toronto offices, with Trend Micro offering to reimburse up to $3,000 in travel expenses for teams participating in person. Those unable to attend were able to log in remotely.

The overall Master of Pwn winner was DEVCORE with 18.5 points and $142,500 in prizes. The top five contestants were:

To read more about the Pwn2Own Toronto event and the final competition winners, please visit: https://www.zerodayinitiative.com/blog/2022/12/9/pwn2own-toronto-2022-day-four-results-and-master-of-pwn

Guest Post: Hisense Canada Has Recommendations For The Best Viewing Experience During The World Cup

Posted in Commentary with tags on December 12, 2022 by itnerd

It is one of the most watched sporting events in the world, and as the quarter-finals continue onto semi-finals and then to the final game, you will want to make sure your viewing experience is as good as the action on the pitch. 

The FIFA World Cup of Soccer regularly draws more than three billion viewers worldwide. The quadrennial tournament is the sport’s pinnacle event and deserves no less than the best from its fans. And Hisense Canada, official sponsor of the FIFA World Cup Qatar 2022, has some tips on shopping for the best TV for watching sports.

Hisense recommends looking for the following:

  • Laser — If you have the budget, the new generation of laser TVs are the way to go. Hisense’s Trichroma laser engine in the L9G series reaches up to 3,000 lumens of peak brightness, earning it the title of King of the Ultra Short-Throw Projectors. Laser TVs offer massive screens, with true-to-life images that exceed the standard 4K colour range. The image produced by the laser light is precise without unwanted light dispersion, meaning the image on the screen looks more natural.
  • QLED — Quantum dots are semiconductor nanocrystals that produce pure red, green and blue light. In a Hisense QLED TV, that means a display that is brighter, with sharper contrasts between the more than one billion colours it projects. The picture is pure and close to real. A TV with quantum dot technology is almost 20 times brighter than your standard computer monitor. The Hisense U78H series comes equipped with a Sports Mode feature that is automatically activated enhancing details and smoothness that will provide soccer lovers with an exquisite FIFA World Cup™ watching experience.
  • Clarity — Most TVs nowadays boast 4K resolution, but the more important feature you should be looking for is HDR — short for High-Dynamic Range, it means the TV has a massive range of colours, which appear brighter and in greater contrast, and provides more detail to the image on the screen — think seeing the blades of grass on the field swaying gently in the wind.
  • Smoothness — Soccer moves fast, and if your refresh or motion rate is low the images on the screen will blur. Look for a refresh rate of 120Hz for a crisp, clear view of the wide receiver streaking up the sideline. Also look to see if it has an MEMC chip (Motion Estimation / Motion Compensation). MEMC is used to interpolate extra images on your TV, which is a fancy way of saying it works with the refresh or motion rate to smooth out the picture and reduce the risk of blurred action on the screen. The HDR10+ feature runs a scene-by-scene adjustment sequence for brightness, colour saturation and contrast to produce an image that is far more realistic. 
  • Dolby Vision & Atmos — Working with HDR10+, they turn your TV into an entertainment powerhouse. Developed in the cinema, they provide amazing realism that you will see, hear and feel. Support multiple speakers with Atmos, transmitting sound to every corner of the room and creating a 3D theatre audio experience.
  • Sound — What you hear from the stadium is a huge part of the viewing experience in soccer. Surround yourself with the sounds of the game with a compact sound bar — big sound without taking up a lot of space, and without having to run wires all across your room. And added subwoofer will ensure you hear and feel the crunch of every hit. Absent a sound bar, or separate home theatre system, look for a TV with Dolby Atmos or dbx-tv® for a superior audio experience right from the television.

For more information, please visit hisense-canada.com.

Silverfort announces partnership with Howden Group Cyber Insurance Provider

Posted in Commentary with tags on December 12, 2022 by itnerd

International insurance broker, Howden Group, and Unified Identity Protection leader, Silverfort, today announced a partnership to make it easier for organizations to comply with the increasingly strict identity security controls now being required in cyber insurance policies. 

With attackers taking advantage of narrowly deployed MFA solutions, and a lack of protection for non-human identities (Service Accounts) to spread ransomware, steal data and compromise critical systems, the cost of cybersecurity insurance policies has been increasing and exclusions have become stricter. To counter this, many carriers are now mandating identity security controls with greater breadth and depth.  

The partnership seeks to address this compliance need by offering Silverfort’s Unified Identity Protection solution. This will enable Howden Group’s global customer-base to extend MFA to all their sensitive resources, including previously ‘unprotectable’ ones such as legacy applications and directories, Command Line Interfaces and other admin access tools, network infrastructure, industrial OT systems and more, without the need to modify these systems. It also allows customers to discover, monitor and secure the automated Service Accounts often used by attackers in lateral movement – quickly and easily.

As a large global broker with around $30bn in Gross Written Premiums, Howden Group helps insure some of the largest organizations in the world. Silverfort will be offered to the company’s customer-base alongside a set of complimentary products designed to prevent a wide range of risks, including endpoint protection, security awareness training and more.

More information on how Silverfort and Howden Group are working together can be found here https://www.silverfort.com/silverfort-insurance-howden/

Radiant Logic Strengthens Customer Commitment and Fortifies Leadership Team

Posted in Commentary with tags on December 12, 2022 by itnerd

Radiant Logic, the enterprise Identity Data Fabric company, has announced the appointment of the company’s first Chief Customer Officer (CCO) and new Chief Revenue Officer (CRO). Dieter Schuller, Radiant Logic’s long-time sales leader and customer advocate, will move into his new role as CCO. Mike Price, former Senior Vice President of Americas Sales at ForgeRock, will take over as CRO.  

Dieter Schuller, Chief Customer Officer, has been instrumental in developing Radiant Logic’s customer-centric approach for 20+ years and is a key aspect of the company’s 95% retention rate across the Fortune 500 and the federal government. As CCO, Schuller will be responsible for driving outstanding customer experience and advocating for the customer across all facets of the organization, incorporating their insights into future product innovation.  

As Chief Revenue Officer, Mike Price will focus on scaling Radiant Logic’s operations to meet growth objectives while improving sales performance and delivering customer satisfaction in conjunction with the CCO. Price brings 20 years of experience in Identity and Access Management (IAM) and looks forward to helping organizations understand how an Identity Data Fabric approach can reduce organizations complexity to enable millions of dollars in savings, as according to Forrester Consulting’s Total Economic Impact study of Radiant Logic, released in October.