Virtual Desktop Tools

VMware Report Warns of Deepfake Attacks and Cyber Extortion

VMware | August 09, 2022 | Read time : 03:15 min

VMware
At Black Hat USA 2022, VMware, Inc. released its eighth annual Global Incident Response Threat Report, which takes a deep dive into the challenges faced by security teams amid pandemic disruptions, burnout, and geopolitically motivated cyberattacks. Sixty-five percent of defenders state that cyberattacks have increased since Russia invaded Ukraine, according to report findings. The report also shines a light on emerging threats such as deepfakes, attacks on APIs, and cybercriminals targeting incident responders themselves.

“Cybercriminals are now incorporating deepfakes into their attack methods to evade security controls,” said Rick McElroy, principal cybersecurity strategist at VMware. “Two out of three respondents in our report saw malicious deepfakes used as part of an attack, a 13% increase from last year, with email as the top delivery method. Cybercriminals have evolved beyond using synthetic video and audio simply for influence operations or disinformation campaigns. Their new goal is to use deepfake technology to compromise organizations and gain access to their environment.”

Additional key findings from the report include:
Cyber pro burnout remains a critical issue. Forty-seven percent of incident responders said they experienced burnout or extreme stress in the past 12 months, down slightly from 51% last year. Of this group, 69% (versus 65% in 2021) of respondents have considered leaving their job as a result. Organizations are working to combat this, however, with more than two-thirds of respondents stating their workplaces have implemented wellness programs to address burnout.

Ransomware actors incorporate cyber extortion strategies. The predominance of ransomware attacks, often buttressed by e-crime groups’ collaborations on the dark web, has yet to let up. Fifty-seven percent of respondents have encountered such attacks in the past 12 months, and two-thirds (66%) have encountered affiliate programs and/or partnerships between ransomware groups as prominent cyber cartels continue to extort organizations through double extortion techniques, data auctions, and blackmail.

APIs are the new endpoint, representing the next frontier for attackers. As workloads and applications proliferate, 23% of attacks now compromise API security. The top types of API attacks include data exposure (encountered by 42% of respondents in the past year), SQL and API injection attacks (37% and 34%, respectively), and distributed Denial-of-Service attacks (33%).

Lateral movement is the new battleground. Lateral movement was seen in 25% of all attacks, with cybercriminals leveraging everything from script hosts (49%) and file storage (46%) to PowerShell (45%), business communications platforms (41%), and .NET (39%) to rummage around inside networks. An analysis of the telemetry within VMware Contexa, a full-fidelity threat intelligence cloud that��s built into VMware security products, discovered that in April and May of 2022 alone, nearly half of intrusions contained a lateral movement event.

“In order to defend against the broadening attack surface, security teams need an adequate level of visibility across workloads, devices, users and networks to detect, protect, and respond to cyber threats, When security teams are making decisions based on incomplete and inaccurate data, it inhibits their ability to implement a granular security strategy, while their efforts to detect and stop lateral movement of attacks are stymied due to the limited context of their systems.”

Chad Skipper, global security technologist at VMware

Despite the turbulent threat landscape and rising threats detailed in the report, incident responders are fighting back with 87% saying that they are able to disrupt a cybercriminal’s activities sometimes (50%) or very often (37%). They’re also using new techniques to do so. Three-quarters of respondents (75%) say they are now deploying virtual patching as an emergency mechanism. In every case, the more visibility defenders have across today’s widening attack surface, the better equipped they’ll be to weather the storm.

Methodology
VMware conducted an online survey about trends in the incident response landscape in June 2022, and 125 cybersecurity and incident response professionals from around the world participated. Percentages in certain questions exceed 100 percent because respondents were asked to check all that apply. Due to rounding, percentages in all questions may not add up to 100 percent.

VMware Explore
In addition to VMware’s presence at Black Hat USA 2022, there will be more than 100 security talks at VMware Explore, the global multi-cloud industry event taking place August 29 – September 1, 2022 at Moscone Center in San Francisco. Register today to begin building your agenda.

About VMware
VMware is a leading provider of multi-cloud services for all apps, enabling digital innovation with enterprise control. As a trusted foundation to accelerate innovation, VMware software gives businesses the flexibility and choice they need to build the future. Headquartered in Palo Alto, California, VMware is committed to building a better future through the company’s 2030 Agenda.

Spotlight

VMware and Google Cloud make it easier than ever to move mission critical workloads to the public cloud and obtain business insights. Discover how this powerful partnership helps accelerate your cloud-first business strategy and multiplies your potential.


Other News
Server Virtualization, Backup and Disaster Recovery

Tackle.io announces a collaboration with AWS to help ISVs accelerate revenue through Cloud go-to-market

prnewswire | July 27, 2023

Tackle.io, an end-to-end solution for B2B software companies to generate revenue through the cloud, announced today a collaboration with Amazon Web Services (AWS) to help independent software vendors (ISVs) accelerate their Cloud go-to-market (Cloud GTM) journey with AWS. This collaboration provides ISVs the software and services they need to scale with AWS by driving a complete go-to-market motion through co-sell and AWS Marketplace. Through this collaboration, AWS Partners will be able to capitalize on these opportunities by leveraging the Tackle Cloud GTM Platform for cloud buyer intent data, direct integrations with the AWS Partner Network Customer Engagement (ACE) program, tools for streamlining AWS Marketplace transactions, and integrated capabilities with Salesforce designed to further drive sales productivity and stronger relationships with AWS, leading to faster deal cycles and higher win rates. "Cloud marketplaces and co-sell have become the center of how ISVs go-to-market with AWS," said John Jahnke, CEO of Tackle. "We continue to innovate to help sellers build their Cloud GTM through a combination of product strategy, business strategy, services, and expert support, all with the goal of driving strategic revenue." This collaboration will uplift three key goals for ISVs as they scale: Training and enablement to spin the Cloud GTM flywheel - As Cloud GTM is a relatively new route to market for many ISVs, they benefit from expert guidance on how to build and scale their growth engine with AWS. Tackle's Strategic Services offer a variety of workshops, enablement, coaching, and managed services that delve into the intricacies of operationalizing a co-sell + AWS Marketplace motion, providing proven methodology, expertise, and best practices for participation in AWS Partner programs. AWS Marketplace excellence to drive co-sell transactions and revenue - ISV sales teams benefit from Tackle's cloud buyer intent data that helps identify the right accounts to co-sell with AWS, tools to streamline the creation, delivery, and tracking of AWS Marketplace private offers, as well as continuous support for new AWS functionality and features including direct AWS Marketplace sales, renewals and expansions, and channel sales via Channel Partner Private Offers (CPPO). Integration into your system of record to operationalize Cloud GTM - Tackle's Salesforce integration puts both co-sell operations and AWS Marketplace private offers in the hands of the ISV sales team so they can manage each opportunity from creation to co-sell to close all within their system of record to streamline manual processes and increase seller adoption. "It's great to see AWS and Tackle collaborating toward even better experiences for AWS Partners like us," said Michael Musselman, senior director, Technology & Strategic Alliances at Lacework. "We're excited to leverage Tackle to bring our co-sell and AWS Marketplace motions together and streamline that into Salesforce so our cloud alliance, operations, and sales teams can improve productivity and accelerate deals." "AWS continues to invest deeply in the AWS Partner experience to provide resources that allow ISVs to grow," said Chris Grusz, managing director, Technology Partnerships at AWS. "Our longstanding relationship with Tackle is a great enhancement of the AWS Partner experience as it directly supports partner scale by accelerating co-sell and AWS Marketplace growth through the Tackle platform and provides ISVs with the latest cloud GTM and co-sell expertise through workshops and coaching." About Tackle Tackle is a leading solution built to help software companies generate revenue through a data-driven Cloud go-to-market (Cloud GTM). Tackle works with more than 550 software companies including Auth0, CrowdStrike, HashiCorp, Lacework, New Relic, Snyk, VMware, and many more at every stage—from companies scaling their go-to-market to the largest software companies in the world. We are venture backed by three of the world's top SaaS investors—a16z, Bessemer Venture Partners, and Coatue—to execute on our mission to positively transform the way that software is sold.

Read More

Virtual Desktop Strategies, Virtual Server Management

Workspot Extends its Intelligent VDI Platform with Workspot Trends™ Revealing Actionable Insights into Key End-User Satisfaction Metrics

businesswire | August 09, 2023

Workspot, the intelligent VDI platform built for the multi-cloud era, announced today that Workspot Trends™ is available to its customers. Through this new offering, the company enables organizations to make data-driven decisions that help deliver outstanding performance to end users. Historically, virtual desktop adoption has been hindered by poor end-user satisfaction. Workspot’s cloud-native VDI platform solves performance problems associated with latency and takes performance monitoring, troubleshooting, and optimization to new levels. Workspot Trends collects key performance metrics, including direct, in-product, end-user survey results for every session, and user. IT teams can view the summary performance ratings, and begin to drill down into virtual desktop pools that show weaker end-user satisfaction ratings and compare them with pools that have higher ratings. This comparison yields insights into the specific conditions, whether that is CPU or memory usage, network conditions, round-trip time, and more, so IT teams can resolve the issue at the individual or pool level quickly. Building upon comprehensive observability features inherent in the platform, including continuous collection and real-time analysis of millions of data points across endpoints, gateways, virtual desktop agents, enterprise connectors, and multiple clouds, Workspot Trends adds current and historical end-user satisfaction feedback to its performance analysis algorithm. Through this new solution, IT teams obtain actionable insights into the end-user experience over time. “There is tremendous value in connecting performance data to the end-user experience,” said Richard Binning, Vice President, Technology at Nelson Worldwide. “With Trends, we’ll be able to have quicker insight into any issues people may be experiencing and resolve them faster. Additionally, our helpdesk and infrastructure teams can leverage these insights to proactively create ideal environments enabling the best possible performance for our teammates.” “For too long, IT teams have been forced to trade off end-user satisfaction to achieve the security and flexibility benefits virtual desktops can deliver. We believe that understanding the end-user experience is critically important for delivering a working environment that supports maximum productivity and makes end users happy,” said Jimmy Chang, Chief Product Officer at Workspot. “With Workspot Trends, that tradeoff is no longer necessary. IT teams can gain deep visibility into how end users are experiencing their virtual desktops and apps, take action to fine-tune the overall virtual desktop estate, and deliver the best possible performance globally – while achieving the benefits of stronger security and greater business agility.” About Workspot Workspot is the only cloud-native, unified VDI platform that delivers enterprise-class virtual desktops and apps from multiple clouds and on-premises data centers to any device. This innovative service lets IT securely stream the right compute capabilities for each end user, to any device, anywhere they want to work. As the only cloud-native VDI solution that operates across all the major public clouds – Microsoft Azure, Amazon Web Services, and Google Cloud – as well as on-premises data centers, Workspot is uniquely positioned to address today’s remote work challenges by providing a highly-customizable approach to end-user computing. Enterprises can expect simplicity without compromises as they deploy, manage, and scale their virtual desktop and app estate globally. End users benefit from a seamless work experience - featuring outstanding performance for even the most graphics-intensive workloads - that boosts productivity and overall work satisfaction.

Read More

Virtual Server Management, Security

Scale Computing Expands HE100 Edge Computing Appliance Line, Collaborates with Simply NUC for Reliable and Secure Edge Solutions

prnewswire | July 14, 2023

Scale Computing, the market leader in edge computing, virtualization, and hyperconverged solutions, today announced that Scale Computing Platform (SC//Platform) has been qualified on the Lenovo M90Q and the Simply NUC Topaz and is available as a part of the HE100 series of products. The company also announced that SC//Platform is now available from Simply NUC as a pre-integrated enterprise offering through their website. Scale Computing's award-winning SC//Platform allows users to run and manage applications from anywhere with cloud-like simplicity and performance built for edge computing. "No matter what hardware configuration customers choose, it is the same innovative software and simple user interface powering their infrastructure and managing the heterogeneous fleet of hardware. SC//HyperCore and SC//Fleet Manager make it easier for IT to manage edge infrastructure and for customers to afford," said Jeff Ready, CEO and Co-founder of Scale Computing. "We are excited to partner with Simply NUC; they are a trusted and reliable partner with extensive knowledge of the NUC and other small form factor systems. By combining the power, simplicity and reliability of Scale Computing Platform with Simply NUC's expertise, expansive network and online configuration tools, we are providing organizations with a comprehensive and scalable edge computing solution with the fastest path from pilot to production." SC//Platform is a powerful, all-in-one platform uniquely designed for running applications at the edge. Lightweight software is packaged for uncontrolled, non-IT environments and managed centrally, making it easy to run applications anywhere they are needed, while also reducing workloads for IT teams. Using patented HyperCore™ technology, the self-healing platform identifies, reduces, and corrects problems in real time. Users achieve results quickly and easily, even when local IT resources are scarce. SC//HyperCore makes ensuring application uptime simple for IT to manage and more affordable for customers. Also available as part of SC//Platform is Scale Computing Fleet Manager with zero-touch provisioning (ZTP) and Secure Link features. ZTP provides cloud-like simplicity for administrators, allowing them to centrally configure clusters in SC//Fleet Manager prior to nodes arriving on-premises, decreasing the installation time by 90% or more. Secure Link enables cloud-like simplicity for administrators, allowing them to access the HyperCore UI for in-depth cluster management with the click of a button without needing expensive or complex remote access solutions. Edge deployments are just a click away on any browser, on any device, anywhere. "Scale Computing is the leader in delivering highly performing, highly available, and highly reliable IT infrastructure solutions. SC//Platform is unique in that it provides expandable, fault-tolerant architecture, automated intelligence for self-healing, and remote management with cloud-like orchestration, creating the most highly available environment for edge computing," said Aaron Rowsell, Simply NUC CEO and Founder. "Today's business leaders need efficient application deployment and management, which SC//Platform on Intel® NUC and other small form factor devices delivers — with high performance, in a smaller, easier to manage solution. We're excited to partner with Scale Computing to take Simply NUC's offerings to a new level for distributed enterprise and edge computing." About Scale Computing Scale Computing is a leader in edge computing, virtualization, and hyperconverged solutions. Using patented HyperCore™ technology, Scale Computing Platform automatically identifies, mitigates, and corrects infrastructure problems in real-time, enabling applications to achieve maximum uptime, even when local IT resources and staff are scarce. Edge Computing is the fastest-growing area of IT infrastructure, and industry analysts have named Scale Computing an outperformer and leader in the space, including being named the #1 edge computing vendor by CRN. Scale Computing's products are sold by thousands of value-added resellers, integrators, and service providers worldwide. When ease-of-use, high availability, and TCO matter, Scale Computing Platform is the ideal infrastructure platform.

Read More

Virtual Desktop Tools

Ekinops' SixSq announces three new App vendors in Nuvla Marketplace

prnewswire | June 28, 2023

Ekinops (Euronext Paris - FR0011466069 – EKI), a leading network access and virtualization specialist, today announced an additional three new application vendors joining their Nuvla Marketplace of business applications, built by SixSq to accelerate the delivery and monetization of edge computing solutions. SixSq's Nuvla is a proven B2B digital platform for industrialization and automation of containerized edge applications and device management. Nuvla enables, among other things, the deployment of these applications on the Ekinops OneAccess branded network equipment through OneOS6 middleware. The latest innovative vendors selected to join the Nuvla App Vendor Programme are: Varnish Software: Powerful caching and content delivery solutions. LatenceTech: Monitor and predict network low latency in real-time. Relimetrics: AI-based quality audit and process controls for manufacturing. Customers from any business sector can easily procure, deploy and manage these cutting-edge apps using the Nuvla marketplace, either individually or in combination with any of the apps in the marketplace. The benefits include data sovereignty, cost savings and improved business continuity. The Nuvla marketplace gives app vendors and customers tools to interact in a seamless way, including clear pricing and contractual terms. App vendors wishing to join the App Vendor Programme to have their apps published on the Nuvla marketplace are invited to get in touch with the SixSq team. AboutEkinops Ekinops is a leading provider of open, trusted and innovative network connectivity. We enable our customers’ success by delivering high value-added software-driven solutions. Our programmable and highly scalable solutions enable the fast, flexible and cost-effective deployment of new services for both high-speed, high-capacity optical transport as well as virtualization-enabled managed enterprise services. Our product portfolio consists of three highly complementary product and service sets: EKINOPS360, OneAccess and Compose. EKINOPS360 provides optical transport solutions for metro, regional and long-distance networks with WDM for high-capacity point-to-point, ring and optical mesh architectures, and OTN for improved bandwidth utilization and efficient multi-service aggregation. OneAccess offers a wide choice of physical and virtualized deployment options for Layer 2 and Layer 3 access network functions.

Read More