Showing posts with label Data Protection. Show all posts
Showing posts with label Data Protection. Show all posts

Wednesday, January 1, 2020

New Greenliant NVMe U.2 EnduroSLC Industrial Enterprise EX Series offers high performance and ultra high endurance

Greenliant is now sampling its NVMe U.2 EnduroSLC Industrial Enterprise EX Series solid state drives (SSDs) to customers that require ultra high endurance primary storage with sustainable low latency and high performance in extreme environments. 

Designed with Greenliant’s EnduroSLC Technology, NVMe U.2 Industrial Enterprise EX Series SSDs provide ultra robust data retention and ultra high system-level lifetime endurance of 30 drive writes per day (DWPD) for five years.


The NVMe U.2 EnduroSLC Industrial Enterprise SSDs with 1-bit-per-cell (SLC) NAND includes ultra high endurance that reaches 30 DWPD for five years; delivers high capacity offered from 800 GB to 1.92 TB; with high performance that reaches up to 2,600/1,900 MB/s read/write. 

It also offers on-chip adaptive RAID that improves SSD reliability; power interrupt data protection that helps prevent data corruption during power failures; industrial temperature that operates between -40 and +85 degrees celsius, and data security functionality that supports AES 256-bit encryption and crypto erase.


“For the highest levels of data integrity, Greenliant’s NVMe U.2 Industrial Enterprise SSDs implement on-chip adaptive RAID,” said Xuanhui Li, vice president of business development, Datacenter Products, Greenliant. “With Greenliant’s NVMe U.2 Industrial Enterprise SSDs, customers can achieve the efficiency and scalability required to meet the demands of write intensive applications in harsh environments.”

Greenliant is sampling its new G7200 Industrial Enterprise EX Series SSDs to customers now, and expects to start shipping in volume production by end of 2019. Greenliant also plans to ship its 3-bit-per-cell (3D TLC NAND) Enterprise PX Series SSDs in capacities from 960 GB to 3.84 TB in the first quarter of this year. 

Saturday, December 28, 2019

Greenliant SATA 2.5-inch EnduroSLC industrial enterprise SSDs deliver SLC data storage that provide ultra high endurance

Greenliant is currently sampling its SATA 2.5-inch EnduroSLC Industrial Enterprise EX Series solid state drives (SSDs) for primary storage applications that require ultra high endurance under extreme temperature conditions. 

Designed with Greenliant’s EnduroSLC technology, SATA 2.5-inch Industrial Enterprise EX Series SSDs provide ultra robust data retention and ultra high system-level lifetime endurance of 30 drive writes per day (DWPD) for 5 years. EnduroSLC is a proprietary 3D NAND management technology that delivers high reliability applications requiring superior data retention and endurance in extreme temperature, high stress environments. 



With advanced hardware ECC capabilities and NAND flash management algorithms, EnduroSLC Technology significantly extends the write endurance of 1-bit-per-cell (SLC) SSDs reaching industry leading 250K+ program-erase (P/E) cycles. EnduroSLC enabled products meet robust data retention requirements under complex temperature conditions and support wide cross-temperature ranges between data programming and reading. Further, due to its substantially lower bit error rate, an EnduroSLC SSD provides better consistency in read/write performance throughout product lifetime. 

The SATA 2.5-inch EnduroSLC industrial enterprise SSDs with 1-bit-per-cell (SLC) NAND include ultra high endurance that reaches 30 DWPD for five years; high capacity offered from 800 gigabytes to 1.92 terabytes; on-chip adaptive RAID that improves SSD reliability; power interrupt data protection that helps prevent data corruption during power failures; industrial temperature that operates between -40 and +85 degrees Celsius; and data security supports AES 256-bit encryption and crypto erase.

By leveraging over 25 years of solid state storage design expertise, Greenliant is dedicated to developing durable, reliable and secure storage solutions for embedded systems and enterprise data centers. The company is headquartered in Silicon Valley with product development centers in Santa Clara, Beijing, Shanghai, Xiamen and Hsinchu.


“Greenliant has brought its SLC NAND expertise to the enterprise with its new line of EnduroSLC Industrial Enterprise EX Series SSDs,” said Xuanhui Li, vice president of business development for datacenter products, Greenliant. “With high reliability and outstanding quality of service, Greenliant’s industrial enterprise storage products are ideal for mission critical, I/O intensive applications in aerospace, defense, transportation, energy and power, communications and industrial control.”

The SATA 2.5-inch Industrial Enterprise EX Series expands the EnduroSLC product family, which also includes SATA M.2 2242/2280, mSATA, SATA 2.5-inch and CFast ArmourDrive, and SATA 6Gb/s NANDrive and 100-ball/153-ball eMMC NANDrive ball grid array (BGA) SSDs.

Greenliant is sampling its new G3200 Industrial Enterprise EX Series SSDs to customers now, and expects to start shipping in volume production by end of this year. Greenliant is also shipping its 3-bit-per-cell (3D TLC NAND) G3100 Enterprise PX Series SSDs in capacities from 480 GB to 3.84 TB. 

Tuesday, December 24, 2019

Keyfactor researchers discover RSA certificate vulnerability, break nearly 250,000 distinct RSA keys

Keyfactor released research findings identifying a vulnerability across active RSA certificates. RSA certificates and the RSA algorithm are commonly used to securely transmit data to a remote source. Using minimal computing resources, researchers were able to collect and analyze 175 million RSA certificates and keys used to protect real-world Internet traffic.


The active and publicly available RSA keys (which consist of the product of two large, randomly chosen primes) were mined to identify common factors. Any keys sharing one of their prime factors with another key are compromised by this technique. The analysis found over 435,000 certificates with a shared factor, with researchers able to rederive the private key.

“The findings are alarming,” said Ted Shorter, chief technology officer and co-founder at Keyfactor. “The research finds inordinate rates of compromise impacting IoT devices with design constraints and limited entropy. These devices could include cars, medical implants and other critical devices, that if compromised, could result in life-impacting harm.”


“In a real-world attack scenario, a threat actor with a re-derived private key for an SSL/TLS server certificate could impersonate that server when devices attempt to connect,” said JD Kilgallin, senior integration engineer and researcher at Keyfactor. “The connecting user or device cannot distinguish the attacker from the legitimate certificate holder, opening the door to critical device malfunction or exposure of sensitive data.”

When these devices include medical implants and cars, the impact of the malfunction can be devastating. The research stresses the importance of security best practices, random number generation for connected systems and use of cryptography to securely install firmware and software updates through the lifecycle of the device.

“Security at design is paramount for device manufacturers,” said Shorter. “Current-generation connected devices and systems must be equipped to defend against a new generation of security risks. Cryptography is essential in ensuring new and emerging devices are able to adhere to and scale with security best practices.”


Researchers built a database of 75 million active RSA keys using Keyfactor’s proprietary SSL/TLS certificate discovery capabilities. The dataset was augmented using 100 million certificates available through certificate transparency logs and analyzed on a single virtual machine in Microsoft Azure, using Keyfactor’s scalable GCD algorithm to find shared factors. 


SolarWinds Backup for Office 365 delivers cloud-first data protection for Office 365 Exchange, OneDrive, SharePoint

SolarWinds, provider of IT management software, launches SolarWinds Backup for Office 365, designed to extend data protection services by helping ensure the retention and recoverability of Office 365 data.

Backup for Office 365 backs up and helps restore Exchange, OneDrive and SharePoint data, managed from the same web-based dashboard used to protect servers, workstations, and critical business documents. The need for effective and affordable tools to help MSPs reduce the potential impact of malicious external attacks or internal user error is growing. 


Related data retention, recoverability, and the ability to demonstrate regulatory compliance is becoming even more critical, as more businesses continue to adopt SaaS applications and shift resources to the cloud.

With Backup for Office 365, users are able to save administrative time by managing Office 365 backups alongside server and workstation backups, keep recoverable copies of Exchange data for seven years, and archive OneDrive and SharePoint data for one year. Backup storage in SolarWinds’ private cloud is included, with more than 30 data centers worldwide to help meet data locality requirements.


Users can often unwittingly (or purposely) delete important emails, or OneDrive or SharePoint files. If this happens, SolarWinds Backup offers the ability to search for, and recover what is needed. If employees leave and the company does not want to continue paying a subscription fee to store their email and shared documents, then the SolarWinds Backup for Office 365 offers an additional way to retain and access this data. If the enterprise must comply under regulations with data-retention requirements, SolarWinds Backup is designed to help retain and archive critical data.

With SolarWinds Backup for Office 365, users can manage Office 365 Exchange, OneDrive, and SharePoint backups from a single web-based dashboard. They can also view and manage backup status across customers, and several devices and data types. SolarWinds Backup also helps strike the right balance between automation and control. Users can manually select which accounts and mailboxes they want to protect, or automatically add newly created Office 365 accounts to the backup schedule.


“Backup for Office 365 has assisted us in making our clients feel more secure and comfortable with cloud solutions because they’ve regained control over their data backups,” said Kelvin Tegelaar​, CTO, Lime Networks. “This solution is easy to manage, is super-efficient, and gives our customers an extra layer of protection and continuity.”

“If you’re relying on storage to do the job of backup, you’re putting your data at risk. Anything from an overzealous email cleanup to a deliberate ransomware attack can leave you scrambling if your data isn’t safely backed up. Microsoft is focused on the availability of active email and data, but potential gaps exist around the recoverability of accidentally deleted or overwritten data that are only solved by an effective backup product,” said Mav Turner, group vice president of products, SolarWinds MSP. “Backup for Office 365 is designed for peace of mind; you retain control over the retention and recoverability of your customers’ data in Office 365 and can be ready to help them in their time of need. Your backups will run seamlessly in the background, and the only difference you’ll notice will be increased trust that your data is safe, no matter what.”

Saturday, December 21, 2019

Symantec releases its Holiday Wishlist, with key cyber safety tools making it to the Holiday Shopping listing

As consumers head into the end-of-year holiday celebrations, they are expected to go shopping. But as they trek to the malls or go online, shoppers need to consider the security implications of the vast array of cool, connected devices now on the market.

After a hacker accessed a security camera and harassed an 8-year-old, the chilling recording of the encounter sends a clear warning to shoppers this holiday season. This could happen with anyone using smart-home devices can potentially be hacked or modified to lock out. General device privacy and security concerns apply here to protect users from the misuse of their data.


Consumers must make purchases from reputable manufacturers, and make sure to change the default passwords that these devices come with and don’t forget to use security software to help prevent malware from infecting devices on home network. 

Smart watches and activity trackers are soaring in popularity with nearly 85 million people around the world last quarter discovering the convenience of having the power of the internet within reach. But these accessories don't stand alone. Rather, they serve as extensions of smartphones and collect personal information. So, carefully read the privacy policies regarding the information that the user intends to share, including reviewing geographical location settings.


Increasingly, smart watches are gaining access to certain functions in smart homes, such as the ability to remotely unlock the front door. That sounds great until the device gets lost or stolen. If it does, review all passwords to make sure they’re protected with two-factor authentication. Even though some accessories include security settings that ought to help protect users in case of loss or theft, be sure to understand the tradeoffs of convenience.

Any internet-connected, voice-enabled TV has the capability to track what you are searching and watching. What’s more concerning is attackers can hack into smart TV webcams for spying or capitalize on software vulnerabilities to insert malware that can move through  connected devices. Also, when shopping for a unit, don’t forget to ask whether it has a camera. Also, does it come with a physical cover or is there one that can be added?

It’s worth researching whether the brand has a good or bad reputation when it comes to privacy and data collection. Once the user brings it home, think about whether they want to be tracked for advertising purposes. Most smart TVs do come with an option for users to turn off such tracking, but it may not be the default setting. So, check the fine print before turning on or turning off features on the smart TV.


A general rule with Smart TV software (and any computing device), to keep the software up to date or turn on automatic updates if there’s such an option.

Another great convenience of the last few years, robot vacuum cleaners have become a must-have appliance for many. Independent research finds that the devices enjoy off-the-chart loyalty with 89 percent of people who own robot cleaners saying they would recommend them to friends and family.

But don’t ignore the privacy implications. Many robot cleaners have cameras to map the house floor layout and optimize operation. This poses potential areas of concern if the robot is connected to the internet. Ensure the manufacturer is protecting the mapped layout data and that it is not shared. Also ensure the cameras are not capturing additional data from within the home.


Another point to consider is that unlike most other devices users may own around the house, this is a machine that physically moves inside the home. As such, a compromised vacuum potentially can enable other types of creepy activity.

So again, ask whether the user trust the manufacturer and whether the company not only can build a vacuum, but also safeguard data. If the answer to that question is yes, also inquire how they go about doing it. Don’t take “why, of course we protect you” as the final answer. Do the research and focus on reputable manufacturers. 

NPR and Edison Research estimates that there are now about 120 million smart speakers in U.S. homes, representing 78 percent year-over-year growth. But most of these devices have “always on” speech listening and recognition features so that they can identify the “wake word” — even while they are standing by?

It’s no longer exceptional to read about people complaining that their private conversations somehow triggered the device’s wake word to start eavesdropping. So, before buying a smart speaker for the home, ask whether they are comfortable with this?


Many of users see this as a small price to pay for the convenience being offered. But always-on listening means that such devices can not only listen to what the user says (and potentially use it — for advertising, for instance), but they can also capture ambient noise that reveals a lot of other things about the user.

The electronic/computing system of a car controls most of its operation and is far more vulnerable than, say, a gas-guzzling station wagon from yesteryear. Increasingly, our cars are turning into the equivalent of iPads on four wheels as vehicles incorporate more and more electronic gadgetry each year to add customer convenience.

But as with any technology device, it’s wise to take precautions that mitigate security risks. For instance, in this case the USB ports in certain newer cars might be manipulated to read files on the cell phone or install malware on the device. This is the latest practice known as Juice Jacking, where malware gets installed onto a device or information and can be stolen via the USB charging port.

Also, hackers may be able to launch attacks against audio systems in a bid to control the vehicle remotely. Similar vulnerabilities have also been found with key fobs and certain apps that get used to communicate with the cars. Users must take basic precautions, and be extremely careful with car port dongles that are plugged into the car control port. As with any other computing devices, it is vital to apply software updates in a timely manner and fix any potentially relevant recalls. Don’t make an attacker’s job any easier for them.

Every year more devices become part of the Internet of Things, and that includes children’s toys. But now that digital toys and devices come with built-in cameras and GPS trackers, users need to consider benefits with the potential security risks. Some toys may interact with smart speakers, which introduces a new category of threats.


Like other connected digital devices, they are potentially vulnerable to hacks and any data they collect may not be private — or secure. The threat is not theoretical. Symantec has seen instances in which companies neglected to protect their online storage system and hundreds of thousands of records, including childrens’ names, ages and voice recordings, got exposed.

That puts the onus on parents to use complicated passwords for every connected toy they buy for their kids. Also, never let children access the internet from an unsecure Bluetooth or Wi-Fi connection.

Many wireless headphones now come with integrated voice assistants and involve security issues with which users are familiar. Also, if users can connect over Bluetooth, there’s always the risk it may not be secure, especially outdated versions of the protocol which likely have unpatched security holes. One easy precaution: Just turn off Bluetooth when the users are not using it, or near anyone who do not trust.

Asigra’s latest program defends public/non-profit organizations against cyber-attacks targeting backup data

Asigra announced a new program focused on defending the backup repositories and data of Canadian public and non-profit organizations against cyber-attacks. The purpose of the program is to ensure the recovery of data that otherwise may have become compromised as a result of malicious malware or ransomware Attack-Loops that prevent the recovery of mission-critical data and often put large volumes of personally identifiable information (PII) at risk.

Cyber-attacks on public/non-profit organizations have put citizen data at risk like never before as new variants of ransomware and other attacks continue to infiltrate and expose sensitive data to unknown and possibly criminal entities.


In a recent attack covered by the Toronto Star, medical test provider LifeLabs agreed to pay the ransom of attackers in order to retrieve millions of customer records. In a statement, the organization said, “The personal information of over 15 million customers was compromised, mostly in British Columbia and Ontario, including name, address, email, login, passwords, date of birth, health card number and lab test results.”

Like many organizations dealing with a cyber-attack, the last resort for recovery relies on a functioning disaster recovery or backup solution in place. Unfortunately, hackers have now designed ransomware and other malware to seek out secondary storage systems (aka: disaster recovery and backup data) in order to compromise a clean retrieval of the information. 


As a result, these organizations no longer have a way to reinstate their data, and therefore are faced with either relinquishing or paying a ransom which can be exceptionally high for public and non-profit entities.

As a Canadian company, Asigra is planning to help protect these organizations by partially donating a large percentage of its cybersecurity-enabled backup technology to Canada’s extensive list of public and non-profit organizations. Those establishments in the country that can issue a tax-deductible receipt may contact Asigra to receive the company's complete anti-ransomware/backup software suite with the cost covered in large part by a donation-in-kind.

Asigra’s cloud-based data recovery platform is unique in the industry for converging data protection and cybersecurity for effective malware/ransomware detection and prevention that ensures safe, secure and reliable data recovery. 


The advanced software includes initial zero-day Attack-Loop preventative technology using bi-directional cyber-threat detection, zero-day exploit protection, variable repository naming, and multi-factor authentication (MFA) for a full defensive suite against aggressive ransomware and other cyber-threats targeting backup data. This is complemented by FIPS 140-2 certification and military-grade data encryption to ensure enterprise-grade data security, making user data unreadable without the proper encryption key.

“The majority of cybersecurity analysts today agree that cyber-attacks are evolving from the perspective of what they target, how they impact organizations and the changing methods of attack,” said David Farajun, CEO, Asigra. “For the past year, we have seen an increasing number of cyberthreats begin to target the number one method of data recovery – the backup repository. As a specialist in this area, we have developed a very effective solution to fight against this and now offer the technology to public and non-profit organizations we share our data with.”

Masimo secures FDA clearance for neonatal RD SET Pulse Oximetry sensors with improved accuracy specifications

Masimo announced that RD SET sensors with Masimo Measure-through Motion and Low Perfusion SET pulse oximetry have received FDA clearance ...