securitylinkindia

Tenable Research Finds 72% of Organizations Remain Vulnerable to ‘Nightmare’ Log4j Vulnerability

Tenable®, the Exposure Management company, recently announced the results of a telemetry study examining the scope and impact of the critical Log4j vulnerability, known as Log4Shell, in the months following its initial disclosure. According to the data collected from over 500 million tests, 72% of organizations remain vulnerable to the Log4Shell vulnerability as of October 1, 2022. The data highlights legacy vulnerability remediation challenges, which are the root cause of the majority of data breaches. When Log4Shell was discovered in December 2021, organizations around the world scrambled to determine their risk. In the weeks following its disclosure, organizations significantly reallocated resources and invested tens of thousands of hours to identification and remediation efforts. One federal cabinet department reported that its security team devoted 33,000 hours to Log4j vulnerability response alone. Tenable telemetry found that one in 10 assets1 was vulnerable to Log4Shell as of December 2021, including a wide range of servers, web applications, containers and IoT devices. October 2022 data showed improvements, with 2.5% of assets vulnerable. Yet nearly one third (29%) of these assets had recurrences of Log4Shell after full remediation was achieved. “Full remediation is very difficult to achieve for a vulnerability that is so pervasive and it’s important to keep in mind that vulnerability remediation is not a ‘one and done’ process,” said Bob Huber, Chief Security Officer, Tenable, “While an organization may have been fully remediated at some point, as they’ve added new assets to their environments, they are likely to encounter Log4Shell again and again. Eradicating Log4Shell is an ongoing battle that calls for organizations to continually assess their environments for the flaw, as well as other known vulnerabilities.” Other key findings from the data include: 28% of organizations across the globe have fully remediated Log4Shell as of October 1, 2022, a 14-point improvement from May 2022. 53% of organizations were vulnerable to Log4j during the time period of the study, which underscores the pervasive nature of Log4j and the necessary ongoing efforts to remediate even if full remediation was previously achieved. As of October 2022, 29% of vulnerable assets saw the reintroduction of Log4Shell after full remediation was achieved. Some industries are in better shape than others, with engineering (45%), legal services (38%), financial services (35%), non-profit (33%) and government (30%) leading the pack with the most organizations fully remediated. Approximately 28% of CISA-defined critical infrastructure organizations have fully remediated. Nearly one third of North American organizations have fully remediated Log4j (28%), followed by Europe, Middle East and Africa (27%), Asia-Pacific (25%) and Latin America (21%). Similarly, North America is the top region with the percentage of organizations that have partially remediated (90%), Europe, Middle East and Africa (85%), Asia-Pacific (85%), and Latin America (81%)  

Read More

Genetec Releases 2022 State of Physical Security Report

Genetec Inc., a leading technology provider of unified security, public safety, operations, and business intelligence solutions, recently shared the results of its 2022 State Physical Security report. Based on insights from over 3,700 physical security leaders worldwide (including end users and systems integrators/ installers/ providers), the report looks at the security strategies organizations are putting in place to effectively navigate the realities of a changing landscape. The future of security is hybrid 54% of end-user respondents indicated that their organization’s target vision for security deployment is a blend of on-premises and cloud-based solutions. A hybrid approach enables organizations to optimize their existing on-premises investments while leveraging cloud options to save cost, increase security and efficiency, and enable remote access to systems and sensors.   Cybersecurity concerns are rising The convergence of information technology (IT) and security is inspiring new approaches to implementing and managing a strong cybersecurity strategy. 64% of IT respondents and 54% of security respondents indicated that cybersecurity tools are a top focus this year. Use of physical security for business operations The survey showed that almost two-thirds (63%) of all respondents and 7 in every 10 organizations with over 10,000 employees described physical security and related data as ‘mission-critical.’ Over the last few years, physical security has become a strategic asset to cope with a variety of challenges that go beyond just mitigating risk and is now playing a much more significant role in organizations’ digital transformation. Physical security gets unified Most respondents (64%) reported that they run both video surveillance and access control in their physical security deployments. Of those, 77% indicated that their organization had implemented either integration between video surveillance and access control systems from different vendors, or a unified video surveillance and access control solution from one manufacturer. “Every organization wants to get their hands on the latest technology. However, faced with budget constraints, talent shortages, and ever-changing priorities, security leaders are required to do more with less,” said Pervez Siddiqui, Vice-President of Offerings and Transformation at Genetec, “A unified security platform gives organizations a path to modernize their aging systems while leveraging their existing infrastructure. And they can do this without expensive and complex custom development.” Survey methodology Genetec Inc. surveyed physical security professionals from August 25 to September 21, 2022. Following a review of submissions, 3,711 respondents were included in the sample for analysis. Survey samples were run across all regions including North America, Central America, Caribbean, South America, Europe, Middle East, Africa, East Asia, Southern Asia, South-Eastern Asia, Central Asia, Western Asia, and Australia-New Zealand.  

Read More

Gallagher Named Security Software Manufacturer of the Year at the 2022 Security & Fire Excellence Awards

Global security manufacturer, Gallagher has been awarded the Security Software Manufacturer of the Year accolade at the 2022 Security & Fire Excellence Awards. The Security Software Manufacturer award category was created to celebrate the efforts of a security software vendor who has gone above and beyond in the areas of innovation; marketing; commitment to high physical, integration and cybersecurity standards; being a great employer, and building products that meet or exceed the latest environmental and energy usage standards. On winning the award, Gallagher’s Regional General Manager for the UK and Europe, Richard Huison said, “We’re absolutely delighted to be named ‘Security Software Manufacturer’ of the year and to be recognised for the all-round excellence of our Gallagher Security Command Centre software. “Our customers are at the forefront of what inspires our innovation and I believe that our ability to consistently deliver such a high standard of product and service is a direct reflection of the outstanding levels of knowledge and skill held by our employees. “This culture of innovation and excellence ensures that Gallagher remains a market leader and creates the enduring and successful partnerships we experience with our customers.” Command Centre is the powerful software at the heart of Gallagher’s integrated security solutions, a centralised platform that gives unparalleled control of every aspect of a site. Fully scalable and supported by continuous investment in research and development, Command Centre supports future growth and changing security requirements. Providing perimeter solutions, intelligent access control and building management, for critical sites with some of today’s highest security requirements, Command Centre is designed with people, site, business and building management in mind. Now in their twenty-third year, the Security & Fire Excellence Awards highlights the very best people, projects and processes that the security and fire sectors have to offer.  

Read More

Evolutionary eDVR Series with eSSD Technology

Hikvision recently added the eDVR Series into its expanding portfolio of security solutions for SMBs. Powered by embedded solid state drive (eSSD) technology, Hikvision’s eDVRs are compact, durable, easy-to-use, and energy-efficient. All this means they are ideal for small-to-medium-sized businesses and residential applications. “The eDVR Series is smarter, faster, more durable and more energy efficient than anything that’s gone before, not only helping to minimize negative environmental impacts, but also delivering major energy and cost savings for our customers,” said Wenson Zhou, Product Director at Hikvision. New possibilities for efficiency and sustainability Eco-friendliness and 45% energy saving The ultra-low power consumption of chip-level eSSDs makes Hikvision eDVRs more sustainable. Since these devices don’t have spindle motor engines built in, their energy consumption is 45% lower than that of the conventional DVRs, not only helping users to make long-term savings on their electricity bills, but also enabling them to reduce carbon emissions. In addition, the use of eSSDs makes the products more durable than conventional DVRs that use HDD drives. This is because there are fewer moving parts, such as actuator arms. With longer product life cycles, the eDVR Series contributes to eco-efficiency and sustainability. Endurable storage with a 25% improvement in efficiency Being powered by ‘eSSD’ technology, with solid-state storage components down to chip level, the Hikvision eDVRs have exceptional storage efficiency and system stability. The storage efficiency of eDVR Series is further enhanced by ‘scene adaptive bitrate control technology,’ which automatically optimizes encoding for video footage, and improves the coding efficiency by 25%. Specifically, complex scenes with human or vehicle movements are allocated higher bitrates to ensure great video quality. At the same time, low-complexity scenes with little or no movement are assigned a lower bitrate to optimize storage efficiency. Compact design for ease of use and simplicity of installation As the eDVRs are embedded with SSDs and have a ‘screwless’ design, tool-free installation is made possible. Besides, without the traditional horizontal mounting requirements of conventional HDDs, the devices are also easier to assemble and set up. Thanks to this ease and flexibility of installation, both end-customers and installers can save time and reduce their maintenance and operating costs. Compared to conventional SSD DVRs, Hikvision’s eDVRs are highly compact, helping to save on space. They can fit anywhere – be it behind a monitor, under a table, on a bookshelf, or hidden inside a custom stand. Smart motion detection Embedded with Motion Detection 2.0 technology, the eDVR Series can distinguish human beings and vehicles from other objects in any given environment, enabling property owners to respond much more quickly and effectively to potential security breaches. The technology also enable property owners to search video footage based on the appearances of people or vehicles during a specific period of time, saving time and reducing their workloads and costs. Effective for residential and SMB applications The innovative features of the Hikvision eDVR Series make these solutions equally effective for residential, SMB, and commercial applications. In all cases, end-customers benefit from an easy and flexible installation process, low energy consumption, minimal maintenance requirements, and high performance video capture, storage, and processing. The compact format of Hikvision eDVRs also increases the solution’s versatility. For example, eDVRs can easily fit into residential homes. The devices’ storage drives also operate with virtually no noise or vibrations, and generate very little heat, which makes them ideal for residential applications. These advantages, along with the eDVRs’ affordability, functionality, and sustainability, also make the product range an ideal choice for SMBs such as convenience stores, grocery shops, restaurants, workshops, bars, and more.  

Read More

Matrix Presented its Enterprise Grade Solutions Covering Security and Telecom at Matrix Partner Connect, Lucknow

With its establishment three decades ago, Matrix has been a growing name across Telecom and Security domains internationally. Matrix covers the entire security and communication needs of organizations ranging in all sizes with its extensive solution range in the domain of Video Surveillance, Access Control, Time-Attendance, and Telecom. Matrix focuses on providing customer-centered technology-driven solutions by providing world-class products indigenously researched, designed, and developed in India. With research and development consisting of 40% of its human resources, Matrix has a wide range of 60+ technologically advanced products spread across its 4 domains. With a worldwide network of 2500+ Partners serving over 1 million users globally, Matrix solely focuses on sales through its channel partners. With intensive research at the forefront, Matrix builds innovative enterprise-grade solutions on a national and international scale. To highlight these latest innovations in the security and telecom domain, Matrix presented its ideation event – MATRIX PARTNER CONNECT 2022. To bridge the gap surrounding the pandemic, through this event, Matrix converged with partners and system integrators for furthering business possibilities. Working hand in hand with its channel partner – MIRACLE AUTOMATION, Matrix rolled out its next episode of MATRIX PARTNER CONNECT in the city of Lucknow. With its status as a defense corridor, fastest-growing infra, and largest spiritual circuitry, Lucknow has become a city with a growing industrial presence. Especially with full-fledged connectivity to various nearby industrial hubs, Lucknow – this ‘heart-of-the-nation’ location is a spot with extensive potential for growing Matrix Business and its SI network. The event was held at the Centrum, Lucknow. In this edition of Partner Connect, Matrix put out its entire IP Video Surveillance solutions that consist of server-based enterprise-grade NVRs, UL-listed Cameras, Matrix VMS, and more. Focusing on customer challenges such as bandwidth utilization, storage cost, managing multi-site offices, and reactive security, Matrix supplements all organizational needs. On-display Cameras included the Matrix range of Turret, Dome, Bullet, and PTZ Cameras. Ranging from 2MP to 8MP, Matrix Cameras are stamped with UL Certification, a global standard for safety, and NEMA Certification for protection against environmental hazards, providing high-clarity images for better scenario detailing. Alongside this, Matrix put forth its Server-based Enterprise grade NVRs on display. With Pre-installed Video Management Software supporting redundancies and hot-swappable hard disks – HDD/ SSD capable of up to 144TB storage capacity, this tech marvel suffices all organizational security concerns. When it comes to Access Control and Time-Attendance, Matrix is the only OEM that manufactures all the elements ranging from panels, door controllers, and readers to software in-house. Within the segment of Time-Attendance, Matrix presented its Aadhaar Enabled Biometric Attendance Device (AEBAS) designed explicitly for government organizations – COSEC VEGA FAXQ. Using Aadhaar information from the UIDAI server securely, this device helps the government accurately mark the attendance of their employees. Besides this, Matrix displayed its best-in-class facial recognition-based door controller boasting high accuracy, an identification speed of less than 0.5 sec, and a massive user capacity of 50K – COSEC ARGO FACE. Incorporating multiple connectivity options such as Wi-Fi, PoE, and Ethernet, these devices provide the best for modern organizations. In Access Control Domain, Matrix showcased its Multifaceted Site Controller controlling up to 255 COSEC door controllers and 25,000 Users – COSEC PANEL200P. Also, Matrix brought its pure access door controller with multiple benefits over the conventional access control terminal – COSEC ARC DC200P. Its PoE abilities and multiple mounting options make it easy to install even in constrained spaces with minimalistic wiring. This event showcased the entire Matrix access control product range. In the domain of Telecommunications, Matrix is the sole OEM that puts forward all the business communication products and solutions. Under the umbrella of Telecom solutions, Matrix presented its product and solutions consisting of PBXs, IP-PBXs, Server-based PBXs, Media Gateways, Communication endpoints, and softphones. Anil Mehra, Senior VP-Sales and Marketing stated, “With its exclusive event – Matrix Partner Connect 2022, Matrix wishes to bring all System Integrators and Business prospects on the same platform. Through this event, one of our major aims is to connect with organizations through system integrators, present our successful case studies internationally, and demonstrate how Matrix caters to various verticals through our enterprise-grade solutions.”  

Read More

Synology Records 100% Growth in India YoY since 2019

Synology, a pioneer and one of the world leaders in data storage and management, recently unveiled its game plan for achieving 300% growth in 2023, riding on its track record of 100% growth YoY in India since 2019 and the strength of its new range of data storage and backup, file collaboration, video surveillance, and network infrastructure solutions. Synology has been growing exponentially YoY in revenue, units shipped, installed base, customers, and active partner accounts since 2019. Synology server deployments in India have doubled YoY, especially among Small and Midsize Businesses (SMBs), emerging as key growth drivers for the company. The manufacturing sector, seeking multi-site solutions to share and sync mission-critical data, accounts for more than 30% of Synology revenues in India. Professional services (ex. hospitals) seeking on-demand data protection, security and backup solutions, and the entertainment industry seeking PETA volume data storage and high I/O data management solutions follow with a 15% share each. Events since 2019 have changed the way businesses and their employees manage and share data, testing organization-wide IT resilience. During the pandemic, Synology NAS used for file collaboration and remote access fulfilled a critical need for SMBs and enterprises to have an integrated infrastructure providing networking, collaboration, security, and file storage solutions, to minimize IT efforts and enable them to focus on running their business in a challenging environment. Designed to simplify and empower users, regardless of skill level, to tackle common IT issues, Synology NAS servers enhanced the business resilience of SMBs. “The Indian economy is poised for exponential growth in 2023 and beyond. Our new line of data management solutions enables us to address unmet market demands and drive digital transformation for customers in India,” said Michael Chang, Regional Sales Head, Asia Pacific, Synology. Staying at the forefront of data management, Synology is bringing new possibilities to the table, including solutions for data storage and backup, file collaboration, video surveillance, and network infrastructure – all designed with one goal in mind – presenting a centralized platform to simplify IT administration while driving digital transformation for enterprises, SMBs and SOHO users in India. Encompassing all products and spanning data management, data protection, and IT infrastructure security, the newly launched Synology solutions will transform the way data is stored and managed setting the bar even higher for reliability, security, and scalability. Data Management Solutions Protect Data Against Ransomware and Cyberthreats With DSM 7.2 Expected in early 2023, DSM 7.2 will introduce full-volume encryption, offering greater peace of mind while boosting storage performance by 48% over shared folder-based encryption. DSM 7.2 will also introduce ‘write once, read many’ (WORM) folders. These tamper-proof folders prevent modification or deletion of data during a set period of time. And just like new immutable backups in Hyper Backup, which bar any changes after creation, it helps protect data against ransomware and cyberthreats. Share and Collaborate with Ease Using Synology Drive Updates to Synology’s private cloud solution, Synology Drive, help keep files safe during sharing between teams with watermarks and download policies. Remote wipe capabilities help minimize security risks by removing synced folders from stolen Windows and macOS clients. Automatic login with AD credentials following mass deployment, as well as the provisioning of backup and syncing tasks, make mass deployment simpler. Sharing data over SMB will be safer and more efficient in SMB multichannel transfer support makes use of all network connections available between servers and clients to greatly boost SMB file transfer performance. Scale Out NAS – Next-Gen Storage ServersDSM 7.2. Cross-protocol file locking between SMB file shares and Synology Drive ensures that in-use files are not edited or overwritten. And SMB multichannel transfer support makes use of all network connections available between servers and clients to greatly boost SMB file transfer performance. Scale Out NAS – Next-Gen Storage Servers Also launching in 2023 are new scale-out systems designed for file and object storage. Scale-out clusters will be considerably faster than Synology’s current largest solutions, with near linear scaling of performance and capabilities as more units are added. The first generation of scale-out systems will support clusters of up to 60 servers for more than 12PB of effective storage, over 60GB/s sequential write performance, and more than 80,000 concurrent connections. The clusters will offer upwards of 99.99% availability and support Synology’s Hyper Backup and Active Backup data protection suites. Data Protection Solutions Worldwide Backup Management Platform A new management platform for Active Backup and C2 Backup aims to enable seamless management, deployment, and monitoring of backup tasks across an organization’s IT infrastructure, regardless of location or scale. The new platform brings together Synology on-premises and cloudbased solutions, providing IT admins and MSPs with the most efficient tools to protect and ensure timely recovery of any device or service. Video Surveillance Synology 500 Series AI-Powered Cameras Launching in early 2023, Synology 500 Series IP cameras will offer superior performance, security, and integration, with all camera settings managed directly from Surveillance Station. Edge AI capabilities, such as guarding intrusion detection zones, free up recording server resources to allow larger AI-powered deployments, while dedicated processing speeds up people and vehicle searches anywhere in the video frame. Coming in two form factors, Synology 500 Series cameras feature 5MP sensors for wide-angle 16:9, 3K (2880×1620) recording at 30fps. The cameras support PoE and are weatherproof (IP67), enabling flexible placement indoors or outdoors. Synology 500-series cameras are US NDAA/ TAA compliant and are designed for security, introducing similar security innovations and hardening methods found on Synology enterprise products. Networking Solutions WRX560 Wi-Fi 6 Router with Advanced Networking Features Building on the SRM 1.3 platform, the new WRX560 brings the same high-end network management features from the RT6600ax into a more affordable price point. With powerful internal dual-band radios and a 2.5GbE LAN/ WAN port, WRX560 can easily be added as a mesh node to any RT6600ax router or utilized as a standalone solution for homes and offices. Hybrid-Cloud Services Active Insight – Automated Breach and Misuse Detection Active Insight is evolving to automatically prevent user…

Read More