Security Concerns over Cloud Storage

Many more businesses are moving their data storage requirements to cloud service providers but are they making provision for the securing of that data, asks Managing Director of data security company Digital Pathways, Colin Tankard.

“ The responsibility for securing your data being stored in the cloud remains with you, as it would if you held it on your own server. I wonder how many businesses understand this? ” says Tankard.

Using the cloud offers great benefits especially in terms of cost reduction. However, as businesses face increasing pressure regarding issues of compliance and privacy the need to ensure robust data security increases expotentially.

“I think some businesses may well be put off using the cloud because of the security issue but there are good solutions out there in the form of robust encryption products.

“Digital Pathways, for example, offers its clients the Vormetric data security product for Amazon web services which offers rapid deployment, is granular, offers separation of duties, is simple and portable.

“One thing is certain, employing the best data security is an absolute must for all businesses situations but especially if you are going to use the cloud” concludes Tankard.

Source: Joy Moon. PR Consultant for Digital Pathways

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.

Lieberman Software warns on new hacking trend of malware-driven pervasive memory scraping

Reports are coming in of a new trend in hacking techniques. Known as ‘pervasive memory scraping,’ the technique relies on the fact that certain areas of Windows memory are only occasionally overwritten, meaning that data from software that has been closed down on the PC, can still remain for some time after.

According to Lieberman Software the red flag was raised recently by the SANS Institute about this new hacker technique. Since then hackers have used the technique to grab personally identifiable information (PII) from users' PCs.

“The SANS Institute is reported to have spotted evidence of this type of attack methodology on an increasing basis. This means that, where a Windows PC user loads a secure application to view data, views that data and then closes the application, there is a chance that the data may continue to reside in the computer's memory for some time after," said Phil Lieberman, CEO of Lieberman Software.

“Put simply, this means that, even if the secure software checks for the presence of trojans and similar credential scanning malware - and locks down the malware whilst it is loaded - once the application is closed, the contents of the computer memory can still be subsequently lifted by a remote scanning piece of malcode,” he added.

The solution to this is quite simple said Lieberman. Users must either use a secure Web browser with a memory sandbox feature - meaning all trace of the viewed data disappears along with the browser as it closes - or that secure data should not be loaded on to the computer in the first place.

Secure/sandbox browser sessions, he explained, are easy to set up and use, but their functionality and interaction with third-party applications on the host computer is severely restricted.

This means, said Lieberman, that the only real solution to the problem of pervasive memory scraping is to store and control private data on a centrally-managed basis.

Using this methodology, he added, ensures that private information is stored and accessed using a data-centric, policy-based protection basis across all endpoints.

"It also, unlike secure/sandbox Web browsing, means that there is minimal impact on the user experience and operational processes in the course of regular business operations," he said.

“The fact that the SANS Institute has expressed concern about this security issue should be a red flag in itself. IT security managers need to be aware of this problem, and how to remediate it without it costing the earth, and causing efficiency issues within their organisation,” he said.

For more on the Pervasive Memory Scraping security issue: http://bit.ly/ijhU2m

For more on Lieberman Software: www.liebsoft.com

Source: Eskenzi PR Ltd.

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.

95% of parents found children accessing internet pornography

Survey reveals that while most respondents use parental controls, teenagers often succeed in uninstalling or unlocking this software

BitDefender®, an award winning provider of innovative internet security solutions, has today announced the results of a new study that shows 95% of parents have noticed that their children had accessed internet pornography, especially during homework time. According to the study, the average age of a child starting to look for adult content sites is just over 11 years old.

The BitDefender study is based on interviews with 1,570 parents from five different countries, focusing on their children’s internet usage habits and their own habits, especially those related to sexually explicit materials. The study also found that while 97% of respondents used parental control software to block access to adult websites, 12% of the teenage sons or daughters succeeded in uninstalling or unlocking this software.

“One of the most interesting findings from this study is related to parental control. Even if the parents understood the necessity of such a piece of software and the need to monitor their teenagers’ activity on social networks and on the internet in general, children will always find a way to access adult content,” said Sabina Datcu, BitDefender E-Threats Analysis and Communication Specialist and author of the study. “BitDefender believes this sends a clear message to parents - it’s more important than ever to take steps to protect children from exposure to sexually explicit materials found on the internet.”

62% of adults admitted that they themselves had searched for and accessed adult content sites. Moreover, 87% said they would allow their children to look for sexually explicit materials if the children were 19 years old or older.

BitDefender’s Internet Security 2011 software includes parental control features to help monitor and control what websites children can visit. More details of the survey can be found on MalwareCity.com. For a full list of BitDefender 2011 features and benefits by product, please visit www.bitdefender.co.uk or follow BitDefender on Twitter for daily malware alerts.

BitDefender is the creator of one of the industry's fastest and most effective lines of internationally certified security software. Since its inception in 2001, BitDefender has continued to raise the bar and set new standards in proactive threat prevention. Every day, BitDefender protects tens of millions of home and corporate users across the globe - giving them the peace of mind of knowing that their digital experiences will be secure. BitDefender security solutions are distributed by a global network of value-added distribution and reseller partners in more than 100 countries worldwide. More information about BitDefender and its products are available at the company’s security solutions press room. Additionally, BitDefender’s www.malwarecity.com provides background and the latest updates on security threats helping users stay informed in the everyday battle against malware.

Source: Media Safari

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.

Parallels to leverage Scality RING technology in its "Parallels Automation for Cloud Infrastructure"

Orlando, FL - February 2011 - Cloud storage pioneer Scality announced an OEM partnership that will see Scality RING provide the underlying Cloud Storage technology in Parallels' newly announced "Parallels Automation for Cloud Infrastructure". Parallels' cloud infrastructure solution enables service providers to rapidly and profitably deliver the infrastructure needed for cloud computing and cloud storage services to SMBs and developers - in particular, enabling service providers to compete with established cloud players.

Scality CEO Jérôme Lecat said: "Once a new technology has been deployed and proven, the key to success is speeding up adoption, and this is where Scality RING is today. After deployment with seven service providers in Europe during 2010, Scality needs partners who can accelerate adoption of our ground-breaking technology for the Hosting Service Provider market.

"Parallels is the perfect fit, thanks to the company's experience in distributed storage and its understanding of the needs of these customers. Parallels Automation for Cloud Infrastructure provides the ultimate level of manageability for service providers who want to offer a complete suite of Cloud Services, ranging from computing and virtualization to storage. As a trusted partner with extended experience of service providers, Parallels will leverage our technology to deliver the perfect product for its customers," he added.

Amir Sharif, Vice President of Virtualization and IaaS at Parallels, said: "We were introduced to Scality by a customer, who had already deployed it. After conducting a deep analysis, we were impressed by the maturity of the technology and its market viability. Scality enables us to deliver a fully integrated Cloud Storage solution to our customers."

Parallels Automation for Cloud Infrastructure is the industry's only infrastructure cloud solution that supports all key hosting processes like provisioning, billing and self-service management. Unlike competitor products, Parallels Automation for Cloud Infrastructure can be managed through an integrated management panel enabling IT professionals to self-create, self-scale, and self-manage virtual datacenters.

The Scality RING platform creates a series of nodes that are built using off-the-shelf servers. Each node on the RING controls its own segment of the overall storage pool. By monitoring other segments and constantly replicating - as well as load-balancing - the data, the storage becomes self-healing in the event of a drive or segment of the pool failing for whatever reason. Scality technology is used by service providers to deploy Storage-as-a-Service offerings, by email providers to store emails for millions of users, and by web service providers managing billions of files with very high performance expectations, either for Web 2.0 or business applications.

Scality is the developer of RING, a software platform enabling cloud storage to easily scale up to exabytes using commodity server hardware with direct attached storage.

Scality delivers the performance and reliability of a SAN- or NAS-based architecture without the hassles of volume management at one third to half of the cost.

Scality is used by Service Providers to deploy Storage-as-a-Service offerings, by Email Providers to store emails for millions of users, and by web services managing billions of files with very high performance expectations, either for Web 2.0 or business applications. Scality RING is based on a patented object storage technology, which delivers high availability, ease of operations and total control of your data.

For more information please visit www.scality.com or follow Scality on Twitter: @Scality.

Parallels is a global leader in virtualization and automation software that optimizes computing for consumers, businesses, and Cloud services providers across all major hardware, operating systems, and virtualization platforms. Founded in 1999, Parallels is a fast-growing company with more than 700 employees in North America, Europe, and Asia. For more information, please visit www.parallels.com.

Source: Omarketing, for Scality

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.

Connectria selects Scality to launch a public cloud storage service

Scality's first 'Storage as a Service' customer in North America

San Francisco, February 2011 - Scality announced that Connectria - one of the longest-standing, most experienced, enterprise-class hosting businesses in North America - has selected Scality RING as the core technology of its new Storage as a Service offering.

Rich Waidmann, founder and CEO of Connectria, said: "At Connectria, we are relentless in our pursuit of excellence, because many businesses depend upon us and, as our customers, they deserve the best - we have made this philosophy a cornerstone of our business since 1998 and it's held us in good stead.  With that in mind, that we are happy to become Scality's first Storage as a Service customer in North America says everything you need to know about how we view Scality and Scality RING."

The Scality RING platform creates a series of nodes that are built using off-the-shelf servers. Each node on the RING controls its own segment of the overall storage pool. By monitoring other segments and constantly replicating - as well as load-balancing - the data, the storage becomes self-healing in the event of a drive or segment of the pool failing for whatever reason.  Scality technology is used by service providers to deploy Storage-as-a-Service offerings, by email providers to store emails for millions of users, and by web service providers managing billions of files with very high performance expectations, either for Web 2.0 or business applications.

Serge Dugas, chief sales & marketing officer for Scality, said: "After a year of successes in EMEA markets, 2011 is poised to be a very strong year in North America for Scality.  We are proud to have been selected by Connectria after a thorough review of storage infrastructure solutions by Connectria's Rusty Putzler, vice president - engineering."

Scality is the developer of RING, an application centric cloud storage system, enabling cloud storage to easily scale up to exabytes using commodity server hardware with direct attached storage.

Scality delivers the performance and reliability of a SAN- or NAS-based architecture without the hassles of volume management at one half of the cost.

Scality is used by Service Providers to deploy Storage-as-a-Service offerings, by Email Providers to store emails for millions of users, and by web services managing billions of files with very high performance expectations, either for Web 2.0 or business applications. Scality RING is based on a patented object storage technology, which delivers high availability, ease of operations and total control of your data.

For more information please visit www.scality.com or follow Scality on Twitter: @Scality.

Connectria Hosting (www.connectria.com) is a profitable and growing global provider of cloud, managed and complex hosting services. Packaged or customized solutions are available for technologies including OS, virtualization, database, email/collaboration and application/web servers. Connectria's hosting expertise represents one of the industry's widest range of supported platforms from a variety of vendors, including Microsoft, IBM, Oracle, HP, Dell, SUN, Citrix, VMware and Open Source (e.g. Linux/LAMP, MySQL).

A privately held company, Connectria has built its business through reinvesting profits and without any debt or equity financing. Connectria operates world-class Data Centers, Network Operations Centers, and Engineering Centers located in St. Louis, Missouri and Philadelphia, Pennsylvania. From these facilities, Connectria operates as a virtual extension of its clients' IT organizations.

Source: Omarketing, for Scality

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.

Flash disk security is very different to magnetic drives says Origin Storage

Reports that certain types of flash disks lack a secure deletion facility highlights the fact that solid state storage devices are very different in their architecture than magnetic drives, says Andy Cordial, managing director of storage systems specialist Origin Storage.

"A lot of companies have made the understandable mistake of presuming that flash drives are a slot-in replacement for magnetic drives, when in fact nothing could be farther from the truth," he said.

"And as prices have fallen, a lot of firms have gone for solid state drives (SSDs) to tap into the advantages of rapid boot times, especially or relatively smaller capacity flash drives," he added.

Cordial says that researchers at the University of California have discovered that the electronic data shredding procedures - aka data sanitisation - do not always work the same on SSDs as on magnetic drives .

This, he explained, is due to the complex electronics on some of the latest generation of SSDs, which intercepts a data delete request and often only deletes the header, rather than the full data clusters that go to make up a given file on a magnetic drive.

This means, the Origin Storage MD says, that so-called `disk doctor'

programs, which allow data retrieval on a sector-by-sector basis, without resorting to requiring header data, as an operating system normally does, can effectively undelete supposedly sanitised data files on an SSD.

The bottom line, says Cordial, is that `conventional' data overwrite commands which have worked well on magnetic drives since the earliest days of PCs in the 1980s, cannot be relied upon to function in the same manner with a flash drive.

"As the university researchers found, the erase procedures provided by manufacturers should be verifiable as well, so that users could easily check post-sanitisation that their data had been removed," he said.

"We could have told the researchers that. This is why we recommend SSDs for specific applications and magnetic drives for other uses. It's also why, where high levels of security are required, we recommend magnetic drives with additional levels of security, such as PIN/password entry system on our Data Locker Pro series ," he added.

For more on the SSD delete research findings: http://bit.ly/h0mgmM

For more on Origin Storage: www.originstorage.com

Source: Eskenzi PR

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.

New Financial Trojan OddJob Keeps Online Banking Sessions Open after Users “Logout”

We have found a new type of financial malware with the ability to hijack customers’ online banking sessions in real time using their session ID tokens. OddJob, which is the name we have given this Trojan, keeps sessions open after customers think they have “logged off”’, enabling criminals to extract money and commit fraud unnoticed.   This is a completely new piece of malware that pushes the hacking envelope through the evolution of existing attack methodologies. It shows how hacker ingenuity can side-step many commercial IT security applications traditionally used to defend users' digital - and online monetary - assets.  We have been monitoring OddJob for a few months, but have not been able to report on its activities until now due to ongoing investigations by law enforcement agencies. These have just been completed.

Our research team has reverse engineered and dissected OddJob's code methodology, right down to the banks it targets and its attack methods.  Trusteer has already warned Financial Institutions that OddJob is being used by criminals based in Eastern Europe to attack their customers in several countries including the USA, Poland and Denmark.

The most interesting aspect of this malware is that it appears to be a work in progress, as we have seen differences in hooked functions in recent days and weeks, as well as the way the Command & Control (C&C) protocols operate. We believe that these functions and protocols will continue to evolve in the near future, and that our analysis of the malware's functionality may not be 100 per cent complete as the code writers continue to refine it.

OddJob's most obvious characteristic is that it is designed to intercept user communications through the browser. It uses this ability to steal/inject information and terminate user sessions inside Internet Explorer and Firefox.

We have extracted OddJob’s configuration data and concluded that it is capable of performing different actions on targeted Web sites, depending on its configuration. The code is capable of logging GET and POST requests, grabbing full pages, terminating connections and injecting data into Web pages.

All logged requests/grabbed pages are sent to the C&C server in real time, allowing fraudsters to perform session hijacks, also in real time, but hidden from the legitimate user of the online bank account.

By tapping the session ID token - which banks use to identify a user's online banking session - the fraudsters can electronically impersonate the legitimate user and complete a range of banking operations.

The most important difference from conventional hacking is that the fraudsters do not need to log into the online banking computers - they simply ride on the existing and authenticated session, much as a child might slip in unnoticed through a turnstile at a sports event, train station, etc.

Another interesting feature of OddJob, which makes it stand out from the malware crowd, is its ability to bypass the logout request of a user to terminate their online session.  Because the interception and termination is carried out in the background, the legitimate user thinks they have logged out, when in fact the fraudsters remain connected, allowing them to maximise the profit potential of their fraudulent activities.

All matching is case-insensitive, and, using this process of pattern matching, fraudsters using OddJob are able to cherry pick the sessions and targets they swindle to their best advantage.

The final noteworthy aspect of OddJob is that the malware's configuration is not saved to disk - a process that could trigger a security analysis application – instead; a fresh copy of the configuration is fetched from the C&C server each time a new browser session is opened.

The good news is that Trusteer's Rapport secure web access software- which is now in use by millions of online banking customers - can prevent OddJob from executing.

It's important to note that OddJob is just one of several pro-active malware applications that our research team sees on a regular basis, but its coding methodology indicates a lot of thought on the part of the coders behind the fraudware.

Careful analysis and research is needed to reverse engineer and dissect fraudulent applications like OddJob, but our message to banks and their online banking users is unchanged. They need to maintain constant vigilance, apply software updates, maintain an awareness of new threats and deploy complementary security solutions that can defend against evolving attack methods.

For more information see http://www.trusteer.com/blog

Source: Eskenzi PR Ltd.

This press release is presented without editing for your information only.

Full Disclosure Statement: The ICT REVIEW received no compensation for any component of this article.