Tag Archives: adding

GandCrab ransomware adds NSA tools for faster spreading

With version 4, GandCrab ransomware has undergone a major overhaul, adding an NSA exploit to help spread and targeting a larger set of systems.

The updated GandCrab ransomware was first discovered earlier this month, but researchers are just now learning the extent of the changes. The code structure of the GandCrab ransomware was completely rewritten. And, according to Kevin Beaumont, a security architect based in the U.K., the malware now uses the EternalBlue National Security Agency (NSA) exploit to target SMB vulnerabilities and spread faster.

“It no longer needs a C2 server (it can operate in airgapped environments, for example) and it now spreads via an SMB exploit – including on XP and Windows Server 2003 (along with modern operating systems),” Beaumont wrote in a blog post. “As far as I’m aware, this is the first ransomware true worm which spreads to XP and 2003 – you may remember much press coverage and speculation about WannaCry and XP, but the reality was the NSA SMB exploit (EternalBlue.exe) never worked against XP targets out of the box.”

Joie Salvio, senior threat researcher at Fortinet, based in Sunnyvale, Calif., found the GandCrab ransomware was being spread to targets via spam email and malicious WordPress sites and noted another major change to the code.

“The biggest change, however, is the switch from using RSA-2048 to the much faster Salsa20 stream cipher to encrypt data, which had also been used by the Petya ransomware in the past,” Salvio wrote in the analysis. “Furthermore, it has done away with connecting to its C2 server before it can encrypt its victims’ file, which means it is now able to encrypt users that are not connected to the Internet.”

However, the GandCrab ransomware appears to specifically target users in Russian-speaking regions. Fortinet found the malware checks the system for use of the Russian keyboard layout before it continues with the infection.

Despite the overhaul of the GandCrab ransomware and the expanded systems being targeted, Beaumont and Salvio both said basic cyber hygiene should be enough to protect users from attack. This includes installing the EternalBlue patch released by Microsoft, keeping antivirus up-to-date and disabling SMB version 1 altogether, which is advice that has been repeated by various outlets, including US-CERT, since the initial WannaCry attacks began.

MapR Data Platform gets object tiering and S3 support

MapR Technologies updated its Data Platform, adding support for Amazon’s S3 application programming interface and automated tiering to cloud-based object storage.

MapR is known for its distribution of open source Apache Hadoop software. It contributes to related open source projects designed to handle advanced analytics for large data sets across computer clusters. The 6.1 release of the MapR Data Platform — formerly MapR Converged Data Platform — adds storage management features for artificial intelligence applications that require real-time analytics.

MapR Data Platform 6.1, scheduled to become generally available this quarter, features policy-based data placement across performance, capacity and archive tiers. It also added fast-ingest erasure coding for high-capacity storage on premises and in public clouds, an installer option to enable security by default and volume-based encryption of data at rest.

Providing real-time analytics for AI requires coordination between on-premises, cloud and edge storage, said Jack Norris, senior vice president of data and applications at MapR, which is based in Santa Clara, Calif.

“What we’re seeing increasingly is that the time frame for AI is decreasing. It’s not enough to understand what happened in the business. It’s really, ‘How do you impact the business as it’s happening?'” Norris said.

MapR storage additions

MapR Data Platform 6.1 expands storage features by adding policy-based tiering to automatically move data. It now supports a performance tier of SSDs or SAS HDDs; a capacity tier of high-density HDDs; and an archival tier of third-party, S3-compliant object storage. Customers supply the commodity hardware.

The storage management features follow the 2017 addition of MapR-XD software to MapR Converged Data Platform. MapR-XD is based on the company’s distributed file system that was released in 2010. It includes a global namespace that can span on-premises and public cloud environments and support tiers of hot, warm and cold storage.

MapR writes all data to the performance tier and then determines the most appropriate way to store it, Norris said. Its tiering is independent of data format. Norris said the system could write NFS and read S3, or the reverse. For instance, MapR can place and store data as an object on one or more clouds and later pull back the data and restore it as a file transparently to the user.

“We do constant management of the data to account for node failure, disk failure, rebalancing of the cluster and eliminating hotspots,” he said.

New MapR release adds file stubs

The MapR software handles data transformations between file and object formats in the background. With past releases, the MapR system had to go through an intermediate step to shift data between file- and object-based storage. With 6.1, MapR retains file stubs to represent data that the system has shifted to cloud-based object storage. The stub stores the location of the data.

“When you need to access that data, we’re just pulling back an individual file,” Norris said. “You don’t want to pull back a whole directory or a whole volume. If you look at cost economics in the cloud, it’s expensive, because you get charged by data movement.”

The newly added support for the Amazon S3 API includes all core capabilities, such as the concept of buckets and access-control lists, Norris said.

MapR’s new erasure coding spreads pieces of data across disks. Norris said the MapR erasure coding preserves snapshots and compression.

The MapR Data Platform is available in Enterprise Standard and Enterprise Premium editions. The Enterprise Standard offering includes MapR-XD, MapR-Document Database, MapR Event Data Streams and Apache Hadoop, Spark and Drill. The Enterprise Premium software tacks on options such as real-time data integration with MapR Change Data Capture, Orbit Cloud Suite extensions and the ability to add the Data Science Refinery toolkit.

Deviation from Hadoop

Carl Olofson, a data management software research vice president at IDC, said MapR’s file system emulates the Hadoop Distributed File System, but its indexes and update-in-place capabilities set it apart. The challenge for MapR is the potential skepticism of having a “data lake solution that deviates so far from the Hadoop project code,” Olofson said.

“The good news there is that even the other Hadoop vendors are no longer solely focused on Hadoop, so MapR may be on top of an emerging trend,” he wrote.

Policy-based storage tiering is the key new capability in the MapR Data Platform 6.1, Olofson claimed. “As people move data lake technologies to the cloud, they are initially in sticker shock because of the storage costs associated with it,” he said. “The MapR approach not only addresses that, but they say it does it automatically.”

MapR’s competition includes Cloudera, Hortonworks and various open source technologies, according to Mike Matchett, principal IT industry analyst at Small World Big Data. He noted concerns that MapR is “at heart a closed proprietary platform.” But Matchett said he gives MapR an advantage over plain open source in terms of supporting mixed and now operational workloads.

“The theme for MapR in this release is to support big data AI and ML [machine learning] alongside and with business applications,” Matchett wrote in an email.

Lustre-based DDN ExaScaler arrays receive NVMe flash

DataDirect Networks has refreshed its Storage Fusion Architecture-based ExaScaler arrays, adding two models designed with nonvolatile memory express flash and a hybrid system with disk and flash.

In a related move, the high-performance computing storage vendor acquired the code repository and support contracts of Intel’s open source Lustre parallel file system for an undisclosed sum. The Lustre file system is the foundation for DDN ExaScaler and GridScaler arrays.

The fourth version of DDN ExaScaler combines parallel file storage servers and Nvidia DGX-1 high-performance GPUs with Storage Fusion Architecture (SFA) OS software. SFA 200NV and SFA 400NV are 2U arrays, with slots for 24 dual-ported nonvolatile memory express (NVMe) SSDs. The difference between the two is in compute power: SFA 200NV has a single CPU per controller, while the SFA 400NV has two CPUs per controller.

The arrays embed a 192-lane PCIe Gen 3 fabric to maximize NVMe performance. DDN claims the dense ExaScaler flash ingests data at nearly 40 GBps.

DDN also introduced the SFA7990 hybrid system, which allows customers to fill 90 drive slots with enterprise-grade SSDs and HDDs.

AI and analytics performance driver

Adding NVMe is a natural fit for DDN, which provides scalable storage systems to hyperscale data centers that require lots of high-performance storage, said Tim Stammers, a storage analyst at 451 Research.

“NVMe is going to help drive performance on intensive applications, like AI and analytics. It makes storage faster, and in return, AI and analytics will drive the takeup of NVMe flash,” Stammers said.

Data centers have the option to buy DDN ExaScaler NVMe arrays as plug-and-play storage for AI projects. The DDN AI200 and AI400 provide as much as 360 TB of dual-ported NVMe storage in 2U. The 4U AI7990 configurations scale to 5.4 PB in 20U.

The AI turnkey appliances include performance-tested implementations of Caffe, CNTK, Horovod, PyTorch, TensorFlow and other established AI frameworks.

Customers can combine an SFA cluster with DDN’s NVMe-based storage. Lustre presents file storage as a mountable capacity pool of flash and disk sharing a single namespace.

The DDN ExaScaler upgrade provides dense storage in a compact form factor to keep acquisition within reach of most enterprises, said James Coomer, vice president for product management at DDN, based in Chatsworth, Calif.

“At this early stage, customers don’t necessarily know where they’re going with AI,” Coomer said. “They may need more flash for performance. For AI, they need an economical way to hold data that’s relatively cold. We give them a choice to expand either the hot flash area or augment it in the second stage with hard-drive tiers and anywhere in between.”

Recent AI enhancements to the SFA operating system include declustered RAID and NVMe tuning. Declustered RAID allows for faster drive rebuilds by sharing parity bits across pooled drives.

Inference and training investments planned

DDN’s Lustre acquisition includes the open source code repository, file-tracking system and existing support contracts from Intel. Coomer said DDN plans to make investments to enable Lustre to support inference and training of data for AI workloads. The open source code will remain available for contributions from the community.

DDN is a prominent contributor to Lustre code development, and it has shipped Lustre-based storage systems for nearly two decades.

“DDN says they’re going to make Lustre easier to use,” Stammers said. “What they’re banking on is that it will lead more enterprises to use Lustre for these emerging workloads.”

Avaya adds real-time speech analytics to contact centers

Avaya has updated its workforce optimization software for contact centers, adding real-time speech analytics and automated quality management tools. The vendor also released new data privacy features to help businesses comply with the General Data Protection Regulation (GDPR).

The workforce optimization upgrades are Avaya’s latest initiative to bring AI and automation to the contact center. In April, the vendor announced a partnership with the startup Afiniti for intelligent call routing.

All major contact center vendors have begun investing in workforce optimization, either through native software development or partnerships with other vendors, said Robin Gareiss, president of Nemertes Research, based in Mokena, Ill.

The upgrades Avaya highlighted this week should help contact center customers increase sales and boost customer satisfaction, but they are not revolutionary, Gareiss said. Instead, businesses can already get the same tools from legacy vendors such as Cisco and Genesys, as well as cloud startups such as Five9.

“Without these announcements, Avaya would fall behind,” Gareiss said. “And given it’s the platform for so many huge contact centers around the world, it’s crucial for Avaya to continue to improve agent evaluation through speech analytics, as well as formal customer feedback and ratings.”

Some startups in the contact center market have placed workforce optimization at the core of their offerings. The cloud vendor Sharpen Technologies Inc., for example, uses a customizable algorithm to rate agents and uses an AI platform to monitor and flag trends within the contact center.

“Workforce optimization has become a huge area of focus for customer engagement,” Gareiss said. “It’s really all about making the contact center agents more productive and efficient to provide continuously improving customer experience.”

Avaya tries to keep pace with competitors

Avaya’s real-time speech analytics software will help businesses monitor conversations between agents and customers. The system can provide helpful contextual information to agents during the call, or suggest next steps based on the customer’s tone or word choice.

The tool can also alert managers to conversations that require immediate intervention, such as if an agent fails to get the proper consents or provide the necessary compliance disclosures, at the outset of a discussion with a customer.

Avaya highlighted real-time speech analytics as one tool for monitoring GDPR compliance within a contact center. The vendor also added a feature that will let businesses securely delete recordings in response to “right to be forgotten” requests.

Meanwhile, a new quality management system can automatically evaluate agents after every customer interaction, freeing managers of a time-consuming task.

Businesses must purchase a separate license to use Avaya’s workforce optimization tools, which are sold individually and as a suite. Avaya’s contact center customers can install the software in their data centers or subscribe to it as a hosted cloud service.

Polycom, Crestron expand Zoom room video conferencing partnerships

Polycom has expanded its partnership with Zoom by adding support for Zoom Rooms video conferencing to its Polycom Trio conferencing phones and camera technology. Polycom announced the expanded partnership last week at InfoComm 2018, an audiovisual trade show in Las Vegas.

The Zoom Rooms partnership is available in three bundles to support different conference room deployments. The huddle room bundle includes the Trio 8500, EagleEye Mini camera and Dell OptiPlex PC. The midsize conference room bundle includes the Trio 8500, EagleEye IV MPTZ camera for HD video and Dell OptiPlex. The large conference room bundle includes the Trio 8800, EagleEye IV MPTZ, Dell OptiPlex and advanced speakers for higher-quality audio. The bundles will be available in July.

Polycom also announced new capabilities for the Polycom Trio to support the high-end room video conferencing capabilities required in large meeting rooms and auditoriums, such as facial tracking and dual-monitor support. The new capabilities will be available in a July software update to Polycom Trio and Group Series codecs.

In July, Polycom will support guest access in its Pano wireless content-sharing system to allow users to connect and share content through guest Wi-Fi systems.

Crestron expands interactive whiteboard collaboration

Also at InfoComm, Crestron debuted AirBoard, a network whiteboard-capture device that allows local and remote users to see whiteboard content on a main conference display and on personal devices. AirBoard is a camera with an arm that attaches to any electronic whiteboard with a mounting kit.

An Ethernet cable connected to the LAN is required for video, power and a secure connection to the network and Crestron ecosystem. Users can capture and share content via Crestron touchscreens and integrated devices.

Content shared through the AirBoard can be saved and sent to a central webpage or to invited meeting participants. Remote participants can access whiteboard sessions like they would with Crestron AirMedia, a wireless presentation service.

Crestron has also expanded its Zoom partnership to its TSW Touch Screen line for audiovisual (AV) presentation, conferencing and collaboration in larger, integrated meeting spaces. The partnership integrates Zoom with the entire Crestron ecosystem of control, such as its DM NVX video encoder/decoder and AV framework.

ViewSonic debuts interactive whiteboards

ViewSonic Corp. announced at InfoComm two new models in its ViewBoard interactive whiteboard IFP60 series. The new ViewBoard interactive whiteboards offer 4K video resolution and annotation software. The new models come pre-installed with ViewSonic vBoard collaboration software and ViewBoard Cast functions. ViewBoard Cast allows mobile devices to share content to the flat panels.

The interactive whiteboards include advanced annotation tools and enterprise-level security with AES-256 encryption. They also offer single sign-on and sign-off, as well as cloud-based portability to store and retrieve files.

The new IFP6560 is a 65-inch display that will retail for $4,999. The IFP7560 is a 75-inch display that will retail for $7,999. Both of the flat-panel displays will be available in July.

The ViewBoard also integrates with Zoom room video conferencing using Zoom’s API platform. The integration with Zoom allows users to connect Zoom credentials to ViewBoard software, conference calls and document sharing with remote participants.

Microsoft Teams mobile app matures, but interoperability lags

Microsoft has been building out the capabilities of the Microsoft Teams mobile app in recent months, adding features more advanced than those traditionally supported by unified communications mobility clients. Nevertheless, the vendor has more work to do to catch up with rival Cisco and to provide a seamless mobile experience to businesses.

Microsoft is on par with the meeting features in Cisco Webex Teams mobile, but Cisco can give users a more seamless experience for scheduling and joining meetings from their mobile phones. That’s because Cisco Webex Teams and Cisco Webex rely on the same back-end cloud infrastructure, said Zeus Kerravala, founder and principal analyst at ZK Research in Westminster, Mass.

“Cisco has been very, very mobile-centric for a long time, so I wouldn’t expect Microsoft to have the same maturity in the mobile client,” Kerravala said. Nevertheless, recent improvements to the Microsoft Teams mobile app are “a good start.”

Microsoft users must juggle multiple UC mobile apps

Microsoft still has separate mobile apps for Teams and Skype for Business that require users to toggle between apps. Users can generally only access Teams meetings from within the Microsoft Teams mobile app, rather than from the mobile apps for Outlook or Skype for Business.

“The ability to schedule and join calls or meetings needs to be a lot more consistent,” Kerravala said. “So, if I’m in Outlook mobile and I can start a Skype for Business meeting, I should be able to start a Teams meeting.”

This gap in interoperability could cause headaches for businesses, as they attempt to migrate users from Skype for Business to Teams in keeping with Microsoft’s directive that it will eventually phase out the former.

Microsoft is encouraging customers that use the cloud version of Skype for Business to begin using Teams simultaneously. The vendor recently gave users the ability to transfer contacts and groups from Skype for Business to Teams and made instant messaging exchanges between the two clients persistent for Teams users.

Recent features added to the Microsoft Teams mobile app included the ability to join audio and video meetings in Teams or request a meeting to call them on their mobile devices. Once in a meeting, the Microsoft Teams mobile app lets users upload files, share their screens and control presentations.

Team collaboration elevates mobile clients

Team collaboration apps like Microsoft Teams, Cisco Webex Teams and Slack are growing in popularity because they provide a single platform for communicating synchronously and asynchronously and for getting work done through third-party integrations.

That model for unified communications (UC) has made mobile clients even more significant, as vendors compete to deliver products that help users stay connected to colleagues and data whether they are in the office or working remotely, analysts said.

“The lines between communication, collaboration and conferencing are blurring,” said Alan Lepofsky, a principal analyst at Constellation Research Inc., based in Cupertino, Calif. “One of the biggest challenges for vendors is to create consistent experiences across various device types.”

Traditional UC mobile apps were built primarily around calling and messaging, but mobile phones already provide those same capabilities over cellular networks. The mobile apps for Microsoft Teams and Cisco Webex Teams now give users access to nearly all of the files and collaboration tools available to them on the desktop.

“For all the manufacturers in this space, their singular goal should be [the following]: Can the user eradicate the term, ‘I’ll take care of that when I’m back in the office?'” Kerravala said.

Seasonic Fanless PSU, WD 1TB 2.5″ HDD

Have various items for sale, will be adding more as I get round to it

SeaSonic PSU

Model SS-400FL, this is the original fanless version of Seasonic’s 400W 80+ Gold PSU. Has most of the original cables, at the moment is missing 1 cable with 2xSATA connectors.

  • 24 pin Motherboard connector
  • CPU 8/4 Pin Connector
  • PIC-E 8/6 Pin Connector
  • 2 x MOLEX Cable (x5 connectors total)
  • SATA Cable (x3 connectors)
  • Floppy (Y Adapter)

£50

Western…

Seasonic Fanless PSU, WD 1TB 2.5″ HDD

Seasonic Fanless PSU, WD 1TB 2.5″ HDD

Have various items for sale, will be adding more as I get round to it

SeaSonic PSU

Model SS-400FL, this is the original fanless version of Seasonic’s 400W 80+ Gold PSU. Has most of the original cables, at the moment is missing 1 cable with 2xSATA connectors.

  • 24 pin Motherboard connector
  • CPU 8/4 Pin Connector
  • PIC-E 8/6 Pin Connector
  • 2 x MOLEX Cable (x5 connectors total)
  • SATA Cable (x3 connectors)
  • Floppy (Y Adapter)

£50

Western…

Seasonic Fanless PSU, WD 1TB 2.5″ HDD

LG 29″ Ultrawide Monitor, Seasonic Fanless PSU, WD 1TB 2.5″ HDD

Have various items for sale, will be adding more as I get round to it

LG 29″ Ultrawide Monitor

Model LG29UM65P, this is a 29″ 21:9 IPS monitor, with max resolution 2560x1080p and built in speakers. Good condition, no scratches or dead pixels (from memory – will double check both things before any sale!). In original box.

Full specs: LG 29UM65: 29” Class 21:9 UltraWide® IPS Monitor (29.0 Diagonal) | LG…

LG 29″ Ultrawide Monitor, Seasonic Fanless PSU, WD 1TB 2.5″ HDD

LG 29″ Ultrawide Monitor, Seasonic Fanless PSU, WD 1TB 2.5″ HDD

Have various items for sale, will be adding more as I get round to it

LG 29″ Ultrawide Monitor

Model LG29UM65P, this is a 29″ 21:9 IPS monitor, with max resolution 2560x1080p and built in speakers. Good condition, no scratches or dead pixels (from memory – will double check both things before any sale!). In original box.

Full specs: LG 29UM65: 29” Class 21:9 UltraWide® IPS Monitor (29.0 Diagonal) | LG…

LG 29″ Ultrawide Monitor, Seasonic Fanless PSU, WD 1TB 2.5″ HDD