securitylinkindia

Major Data Breaches that Happened During the COVID Pandemic

  The COVID pandemic has caught everyone unaware. While we’ve all been busy adjusting to the new normal, cybercriminals have been making merry. They are taking advantage of the disrupted environment to carry out cyber attacks. This is evident as a recent study shows that the number of data breaches in 2020 has almost doubled with 3,950 confirmed breaches against 2,103 recorded breaches in 2019, with the year far from the end. About 80 per cent of the data breaches have occurred due to simple brute force attacks, which should raise serious concerns regarding data security. These cyber-attacks are also not limited to technologically weak enterprises but rather impacted big names that have strong data security measures in place. Here’s a look at six such enterprises that faced major data breaches during the COVID pandemic. Whitehat Jr. Whitehat Jr. recently reported a data breach exposing data of 2.8 lakh students and teachers due to multiple vulnerabilities in their infrastructure in November 2020. The exposed data contained student names, age, gender, profile photos, user IDs, parents name, and progress reports of minor students forming a major part of the exposed data. Salary details of WhiteHat Jr employees, as well as its internal documents and dozens of recorded videos of online classes being conducted by the platform, were also exposed, according to the researcher. Big Basket BigBasket, the popular Indian online grocery vendor was reported to have faced a data breach that affected the data of over  2 crore customers. As a result of this data breach, personal information such as email IDs, full names, IP addresses has been compromised and is reported to be put up for sale on the dark web. The data lost in the BigBasket breach, which was mostly that related to customers’ personal details, more than being critical to business operations warrant an extra degree of security. That’s because losing this data can not only be disastrous from a public relations perspective but can also land companies in legal trouble which can last for years and cost crores of rupees in damages. Twitter The Twitter data breach occurred on the 15th of July 2020. Cybercriminals hacked verified accounts of influential and well-known personalities on Twitter. How influential and well-known, you ask? Well, the hacked accounts included the names of Elon Musk, Barack Obama, and Bill Gates, to name a few. The criminals behind the hack then proceeded to post fake tweets from the compromised accounts. The tweets promised USD 2,000 for every USD 1,000 sent to a Bitcoin address. The hackers had a big payday as they managed to make over a hundred thousand dollars in Bitcoin transactions. Marriott International The Marriott data breach happened on March 31, 2020. The data breach exposed data of more than 5.2 million guests who used the hotel’s loyalty application. The attack was carried out by using the login credentials of two Marriott employees. These employees had access to the customer data regarding the hotel chain’s loyalty program. Hackers accessed names, birthdays, travel and loyalty program information data in the data security breach. This is the second such attack faced by the hotel chain. The company reported a data breach in 2018, which compromised the data of around 500 million guests. Zoom Zoom, a video conferencing app, gained massive popularity during the pandemic. It simplified business meetings by allowing 100 participants for video conferencing at a time when enterprises over the world faced difficulties communicating with their workforce. This rising popularity made it the subject of a major data breach shortly. In the first week of April 2020, Zoom faced a major cyberattack. Around 500,000 Zoom account passwords were stolen and were available for sale on the dark web. Besides, the victims’ personal meeting URLs and HostKeys were available too. Clearview AI Clearview AI, a major firm dealing with facial recognition technology, became a victim of a data breach on February 26. The perpetrator of the attack gained unauthorized access to the Clearview AI’s entire client list. The data breach also left exposed around 3,000,000,000 photos scraped by the firm from social media sites such as Facebook, Instagram, and YouTube. Moreover, the number of user accounts opened by clients and the number of searches they had conducted were also compromised. The firm’s clientele includes major law enforcement agencies in the US, including the FBI and the Department of Homeland Security, and other corporate firms. The firm is already mired in controversy regarding its use of facial recognition technology for matching social media images against suspected criminals’ photos provided by the police department. The data breach further adds fuel to the fire. While most of the data security breaches were due to external cyber attacks, there were some instances where data breach was internal and unintentional. The main reason for these data breaches were poor data security standards that left the data exposed to unauthorized individuals. Let’s have a look at some of these instances. Social media accounts data breach On August 1st, 2020 it was discovered that around 235 million Instagram, Tiktok and Youtube user profiles were compromised. This data security breach happened due to an improperly secured cloud database. A HongKong based company, Social Data was storing the data without password protection on their clouds. The data could be accessed by any individual easily as it was available freely on the internet. The data contained the following records: Profile name. Full real name. Engagement statistics. Number of followers. Age. Gender. Follower demographic. While most of the data mentioned above are available publicly, what’s alarming is that the database contained about 20% of the records contained a phone number or an email address. Such private information is susceptible to cyberattacks, and hence, a cause of major concern. 2. Virgin media A Virgin media database that contained personal details of 900,000 users were accessible online for about ten months before being discovered. The data security breach occurred due to an unsecured database, as it is reported that the database was ‘incorrectly…

Read More

DS-K1T642 Series MinMoe

Prama Hikvision, India’s leading video security solution provider has introduced DS-K1T642 series MinMoe face recognition terminal product range for touch-free access control and attendance checking with a special feature of Face Mask Wearing Alert. Hikvision’s DS-K1T642 series MinMoe face recognition terminal adopts deep learning algorithm, which helps to recognize the face faster with higher accuracy. It also supports multiple authentication modes – face/ card/ fingerprint authentication etc. It can be applied in multiple scenarios such as buildings, enterprises, financial industries, and other important areas. Hikvision DS-K1T642 series MinMoe face recognition terminal comes with a 4.3-inch touch screen 2MP wide-angle dual-lens. It has the face anti-spoofing feature. Embedded with deep learning algorithm, this face recognition terminal has 6,000 face capacity, 10,000 card capacity, 5,000 fingerprint capacity for device support fingerprint related functions, and 150,000 event capacity. Hikvision DS-K1T642 series MinMoe face recognition terminal has two special features (face mask wearing alert and forced face mask wearing alert) to support the organisations in the times of pandemic. Face mask wearing alert: If the recognizing face does not wear a mask, the device will prompt a voice reminder. At the same time, the authentication or attendance is valid. Forced mask wearing alert: If the recognizing face does not wear a mask, the device will prompt a voice reminder. At the same time, the authentication or attendance will be failed. Its other features include the following: Face recognition distance: 0.3m to 3m. Face recognition duration <0.2s/ user. Face recognition accuracy rate ≥ 99%, capture linkage and captured pictures storage. Transmits card and user data from or to the client software via TCP/ IP protocol and saves the data on the client software.  Imports pictures from the USB flash drive to the device or export pictures, events, from the device to the USB flash drive. Stand-alone operation, manage, search and set device data after logging in the device locally. Connects to one external card reader via RS-485 protocol. Connects to secure door control unit via RS-485 protocol to avoid the door opening when the terminal is destroyed. Connects to external access controller or Wiegand card reader via Wiegand protocol. Two-way audio with indoor station and master station. Supports 6 attendance status, including check in, check out, break in, break out, overtime in, overtime out. Supports multiple languages: English, Spanish, Arabic, Thai, Indonesian, Russian, and Vietnamese. Supports voice prompt customization for Hindi and Indian regional languages. Configuration via the web client, remotely opens door and starts live view via Hik-Connect. Supports ISAPI and EHome 5.0 protocol.  

Read More

How to Manage the Flow of People through Very Busy Buildings

Normal daily life involves a lot of people moving around the inside of buildings. In bustling transport hubs, busy shopping centers, office blocks and warehouses, people are constantly moving past each other and between rooms and floors. But for the moment, this way of life has been forced to a halt – and understandably so. Within an enclosed space, there is a greater chance of transmission of illness. So to restrict transmission, businesses must also control the movement of people through very busy buildings. The challenge today is how to do this as efficiently as possible, without affecting business interests. As we adjust to a new way of life, businesses must embrace innovative ways to optimize the density and flow of people through their premises, to protect workers, customers and visitors, while also protecting their businesses. The good news is – AI-powered video technology can support businesses of all sizes in this endeavor. Protecting people and businesses with AI video I ntelligent video cameras such as those within Hikvision’s Flow Control Solution, use people-counting technology coupled with dynamic digital signage to display how many people are entering and leaving a building or indoor area. The cameras feature highly accurate 3D binocular vision and deep learning algorithms to accurately count the number of people flowing through, even in the busiest sites with multiple entrances and exits. The same cameras can also support social distancing in areas where crowds and standing in line is unavoidable. When the camera identifies that people are standing closer than the pre-determined threshold, it will trigger an alarm. The cameras can also be linked to digital signage, to display a visual notice. For even greater reassurance, businesses can add in thermal and mask-detection camera technology, to help ensure people are safe to enter a location in the first place. Hikvision’s AI-powered cameras can intelligently identify whether someone is wearing a mask, while also effectively checking their skin temperatures. Equipped with this information, staff can then take appropriate action to reduce the risk of viral spread. Putting the technology into practice At a time when it’s incredibly hard for businesses to balance profitability with safety, Hikvision knows from the projects that they’re working on that AI-powered video can offer business value. Hikvision technology enables people managing office blocks, warehouses and supermarkets to accurately count everyone that enters and leaves the premises, to ensure they never exceed safe capacity. This data can also be linked to access control solutions, to physically prevent people from entering until it is safe to do so. Retailers, especially, can make use of digital signage to display how many people are in a store, so that customers understand why they may need to wait in line. Indeed, in retail – where it’s normal for people to wait at checkouts or crowd together in narrow aisles – making use of a Hikvision dual-lens camera can help businesses to maintain vital social distancing rules. Meanwhile, in indoor transport hubs – where people are not only gathering, but travelling on to new locations – adding in thermal screening and mask detection is especially valuable. Safe building capacity can be managed, while any travelers that may show signs of a raised temperature or who are not wearing masks can be informed. Technology such as Hikvision’s can essentially help businesses to reopen as safely and profitably as possible. Get the full back-to-business story However, choosing the right technology is only one part of the back-to-business story. Businesses should also be aware of the compliance, legal and HR requirements when installing and using this technology. And the technology must be effectively and expertly installed, to ensure it achieves its full potential.  

Read More

Milestone Marketplace Helps Customers Explore Unmatched Possibilities to Extend their Video Solutions

Times are changing fast and so is the need for using and combining technologies in new ways. With the new edition of Milestone Marketplace, buyers will not only find the complementary hardware and software functionality, but they will also explore solution services when building best-of-breed video management solutions. COVID19 has forced businesses, cities, and entire countries to operate in new ways and increased the demand for new technologies and digital solutions. A versatile use of video solutions that can be expanded with more functionalities helps companies thrive when the world changes, whether the need is to ensure public safety, secure access to buildings, or check adherence to social distancing rules. Milestone Marketplace is empowering businesses to explore the unmatched possibilities of video solutions, relevant to companies looking for a new video solution and for existing users of Milestone XProtect looking to enhance the solution’s functionality. In addition to verified hardware and software, the new release of Milestone Marketplace also holds solution services with a total of more than 500 options to choose from. The global digital platform includes powerful technologies, like artificial intelligence, augmented reality, video analytics, GIS and GPS along with combined solutions tailor made to meet several business challenges. The partners behind this are all part of the Milestone Community, ready to help businesses use video solutions to solve new challenges. “Marketplace is primarily a connection platform to help end-users make the most of their XProtect investment. Through it, our customers in India can now connect directly with Milestone partners and seek their advice and expertise on different challenges, use cases, and technology. Being an open ecosystem it helps our customers with flexibility and future proofing, and the collaborative nature of Milestone Marketplace means new use cases can be explored and deployed in partnership with Milestone and other members” Explore, connect, deploy Milestone Marketplace allows buyers access to a vast catalog of Milestone Systems XProtect compatible software, hardware and solution services, as well as recommendations and guidance on how to solve specific challenges. Moreover, buyers can filter through a network of trusted Milestone integration partners to find the best fit for their business across the globe. Customer cases, documentation, implementation guides and demos are just some of the elements made available by the partners using Milestone Marketplace to allow customers to explore solutions available to them. “Since we first introduced Milestone Marketplace in 2019, we’ve been working to extend the experience for both customers and partners when searching for and creating XProtect compatible solutions. With this version we’ve onboarded integrators as a new partner type, improved the search functionality, and added use categories to name but a few, all with the aim to offer a future-proof platform open to integrating with innovation from around the world,” said Kenneth Hune Petersen, Chief Sales & Marketing Officer at Milestone Systems.  

Read More