Anti-Ransomware: All About Architecture

As I read the “we solve ransomware” emails in my inbox and saw comments on Twitter and Slack, I started to think about how to solve ransomware once and for all. It sounds like a difficult task, but I think it is all about an architecture: an architecture that uses modern ideas. A solution needs to combine …

The Attack Seen Around the World

The attack seen around the world. In one of my more recent posts, I brought attention to the release, or better yet the data dump of exploits and hacking tools targeting Microsoft’s Windows OS, Linux, firewalls, and others. One of the main purposes of my post was to bring attention to the grave dangers that these exploits bring to the world and as such, I really hoped that there would be enough interest from individuals in the industry to get a copy of the exploits and contribute to the countermeasures that would be needed to defend against exploits to better protect and defend the companies and corporations that we all represent. I was absolutely sure that there would be many individuals around the world that would be reverse engineering the exploits for more devious purposes and it appears that we have just experienced the first, of what I believe, to be just the beginning attacks seen around the world.

Ransomware Makes for a Bad Night

I was reading a Reddit request for help regarding ransomware. The title was “Got hit BAD tonight.” That title describes the catastrophe simply and to the point. The ransomware in question attacked the hypervisor. Then, it  proceeded to encrypt all backups and other systems connected to the hypervisor. This is the exact issue that virtualization …

Finding your Sensitive Data to Protect

A bane of having data is the need to know: the need to know where all your sensitive data resides, what that data is, who has accessed it, and how it was accessed. Managing the who, what, where, why, and how of data is a struggle that’s as old as time. Scale changes this struggle. …

AWS Has Taught Us about Fragile Cloud Architectures

The recent Amazon Web Services Simple Storage Service (S3) outage has taught us quite a bit about fragile cloud architectures. While many cloud providers will make hay during the next few weeks, current cloud architectures are fragile. Modern hybrid cloud architectures are fragile. We need to learn from this outage to design better systems: ones …

Security Disaster Recovery Plan

In the last three virtualization and cloud security podcasts, Mike Foley, Sr Technical Marketing Architect for vSphere Security, mentioned security disaster recovery plans. There is a growing need for such plans. The 174th podcast covered this need, as well as the why and the how of putting such plans together. Unlike traditional disaster recovery, security disaster …