Cool Connector: Calgary Tech Showcase and Open House

This coming Thursday October 28, 2010 from 3:30PM- 6:00PM, Wedge Networks will be at the 11th Annual Tech Showcase and Open House put on by CTI and UTI. The coolest of the cool, there will be 30 great companies showcasing their products and ideas to over 400 visitors who are interested in seeing the technology Calgary has to offer.

Come visit us at our booth in the Alastair Ross Technology Centre at 3553-31 ST NW Calgary, to learn more about Wedge Networks, Deep Content Inspection, and current Malware Trends or Outbreaks among others.

For more information click  Tech Showcase .

See you there!

Posted in Wedge Channel Partner Forum, Wedge News | Tagged , , , , , , | Leave a comment

Gamania Secures On-Line Gamers Against Malware And Identity Theft

CALGARY, AB. October 26, 2010 — Wedge Networks Inc. (Wedge), the technology leader in high performance web security solutions, announced today that its BeSecure Web Security appliance is the product of choice; providing the most accurate anti-malware security protection and the performance to handle network traffic demands for Gamania Digital Entertainment’s web-based game hosting and internal development IT infrastructure.

Gamania is one of the global leaders in web-based entertainment with millions of subscribers, and is dedicated to bringing the best experience in online gaming to its users. To ensure their online content is free from viruses, and to further ensure that gamers’ personal information is completely secure, Gamania deployed Wedge’s BeSecure appliances within its network.

“Gamania puts IT security as its top priority“, says Jackal Huang, Manager of the Corporate Information Security Department. “When the game operations are infested with malware, it causes our game servers and networks to act abnormally. Every single second of service downtime means lost revenue for us. When we are attacked, the virtual weapons / tools and user account information can be leaked. These virtual weapons / tools are the most precious assets of our game players. From the player’s point of view, they are priceless.”

As one of the world’s largest online digital entertainment companies, Gamania’s business depends on maintaining subscribers’ confidence in the company’s ability to deliver terrific products and services through the web without having to worry about viruses and malware.

“As a leader in the global online entertainment industry Gamania is very sophisticated in its approach to IT Security,” said Dr. Hongwen Zhang, Founder and CEO of Wedge Networks. “We take pride in the fact that Wedge is playing a role in ensuring that millions of Gamania’s customers can experience the best in online entertainment, and can be secure while doing so.”

According to Jackal Huang the BeSecure hits his three key components of accuracy, ease of use, and cost effectiveness:

1. The BeSecure’s ability to utilize and scan against the full embedded Kaspersky malware signature database with little to no performance loss (other solutions are only able to use portions of the database or face succumbing to performance degradation) makes it by far the most accurate anti-malware appliance available, which is key in protecting the high-bandwidth network that Gamania utilizes.

2. The BeSecure is simple and easy to manage: the configurations are very simple to use. No complex configurations were required to deploy the appliances and there was no need to change any of Gamania’s network configurations.

3. It is very cost effective: compared with similar products in the market, the BeSecure, with its powerful WedgeOS Deep Content Inspection Engine, has the best performance and accuracy in protecting networks from viruses and malware. We do not have to worry about inadequate capacity and the need to continuously upgrade.

“There are more and more malicious websites these days. They are the main source of infections,” explained Jackal Huang. “If we were to remove the Wedge BeSecure, our online operations would face substantially significant increased risk and large costs to protect against this risk.”

Posted in Wedge News | Tagged , , , , , | Leave a comment

Breaking Bread with SPIEs!

Lunch two Thursdays ago was a unique experience.  We got to meet and present to Calgary‘s SPIE – a special interest group made up of the who-is-who in Calgary’s Internet Security Profession.  Calgary, Canada’s Oil Capital, and without a doubt, companies in this sector fare the toughest – from hacktivism to pure evil crime with financial and business motives.

We discussed several topics (Presentation can be found here), but the most important points were:

  1. Rules of the Malware game have changed, from a focus 0n generating publicity to a multi-billion dollar industry funded by very organized and savvy criminals (you can read more about the malware industry’s business model here).  And yes, they do have websites that sell botnets and that do provide support too!

    Website that advertises Botnets For Sale

    To this end, malware being written these days are designed to “hide” in compromised systems so that hackers can continue to use the computers’ resources for criminal activity while remaining undetected as long as possible.

  2. Newest attack vector is Application Vulnerabilities, and even more so web-applications, as shown in the diagram.  Notice that Operating System/Browser Vulnerabilties are now taking a back seat, with Application (e.g., Adobe Reader) vulnerabilities becoming the vector of choice for malware writers.

    Frequency of Application-based Attacks

  3. Deep Content Inspection is the logical choice for combating this evolving threat- it is no longer sufficient to scan some packets against a limited set of viruses and to believe that is good enough.  I will address this in next week’s blog.
  4. Layered approach to security is needed with network security being a lifecycle, and not a process.

I found this seminar to be very, very beneficial.  Thanks to security vendors, CIOs are now marketing-shielded (yes, you heard it here first!).  When the rubber hits the road, network security is accuracy and without performance compromise.  It is good to break bread with SPIEs, ISSAs, etc.

Posted in Industry News, Wedge News | 1 Comment

A Great Article Put Out by Troy Media on Alberta IT Leaders

Alberta IT Leaders Taking Charge

September 24, 2010

By Wendy Peters
Senior Writer
Troy Media

CALGARY, AB, Sept. 24, 2010/ Troy Media/ – Breaking new ground, forging creative links, and educating by opening people’s minds to the beneficial wonders of cutting-edge technology is all in a day’s work for Alberta’s ICT leaders.

Web 2.0 security

…Enter Wedge Networks Inc., a leader in Web 2.0 security for enterprises and service providers worldwide.

Wedge Networks’ CEO Hongwen Zhang estimates there are about four million viruses transmitted via the Internet, and he warns that they are becoming more aggressive with the proliferation of Internet usage. “Because of our clear vision for a clean network, Wedge is taking a leadership role,” he says.

Zhang has more than 18 years of high-tech experience and notes that Wedge offers a security solution “that is revolutionary in the sense that it offers great cost savings and simplifies day-to-day management.”

Endorsements for Wedge Networks’ products come from such industry principals as Wmode, a global leader in content management for mobile networks, and media companies.

Describing the Internet today as “the nervous system of the human race,” Zhang also sees significance in promoting and sponsoring partnerships. “We try to foster an ecosystem where we can bring value to society,” he says…

Read more: Alberta IT leaders taking charge | Troy Media Corporation http://www.troymedia.com/?p=14923#ixzz10TCZYwbT

Posted in Wedge News | 1 Comment

Wedge Networks Named as a 2010 ASTech Award Honouree

The Alberta Science and Technology Leadership Foundation announced Wedge Networks as one of 36 outstanding ASTech honourees to be recognized at the 2010 ASTech Awards Gala slated for November 12th at the Shaw Conference Centre in Edmonton. The honourees represent the province’s brightest minds and most innovative enterprises, demonstrating the abundance of outstanding activity occurring in Alberta’s science and technology community and come from four key strategic areas: health solutions, bio sciences, energy and environment, and technology.

Please see HERE for the full details.

Posted in Wedge News | Leave a comment

Wedge BeSecure Network Appliance Protects More Than 30,000 EVOCO Inc. Account Users

BeSecure is the Network Security Appliance of Choice for Leading SaaS Provider

CALGARY, AB. September 21, 2010Wedge Networks Inc. (“Wedge”), the technology leader in high performance network-based web security appliances, announced today that its BeSecure Web Security Appliance is the product of choice for Evoco Inc. (“Evoco”), one of Canada’s fastest growing companies according to PROFIT Magazine.

Evoco, a leading provider of project management software for construction, remodel and facility management initiatives, deployed Wedge’s BeSecure to protect its entire network. As a Software-as-a-Service (SaaS) company, Evoco is dedicated to ensuring consumer confidence and meeting their service-level requirements, making maximum security imperative.

“Web-based companies continually face the challenge of ensuring networks are properly protected to accommodate high-traffic and growing enterprise demands,” said Alice Reimer, President, Evoco Inc.  “With more than 30,000 account users, Evoco’s customer promise is greater than 99.5 percent uptime. We pride ourselves on being a top quality software provider and are fully committed to meeting the high-performance needs of our network and rapidly growing user base. To accomplish this, Evoco insists on having the best network-based security system integrated into our infrastructure.”

Evoco selected Wedge’s BeSecure Security Appliance because it was able to meet Evoco’s high standards for top network performance, accurate content inspection, and scalable bandwidth. In addition, Evoco found that BeSecure offered sophisticated reporting features and an effective management console and superior customer service.

“We are pleased our BeSecure appliance was selected by Evoco to protect their networks and their users worldwide,” said Dr. Hongwen Zhang, CEO of Wedge Networks. “Evoco is one of Canada’s fastest growing companies and we are happy to be able to support their continued growth and success.”

For more information, please visit www.wedgenetworks.com

Posted in Wedge News | 1 Comment

Wedge Networks Wins TechRev Innovators 2010 Awards

Calgary Based Company Leading Advancements in Network Security


Calgary, Alberta – September 20, 2010 – Wedge Networks Inc. (Wedge), the leader in high performance network-based web security solutions, announced it has been awarded a 2010 TechRev Innovators Award for leadership and excellence in technology innovation.

Honoured at a reception for key industry players, Wedge Networks was recognized for its patented operating system: WedgeOS. WedgeOS has broken the performance barrier in providing transparent Deep Content Inspection of network traffic, enabling organizations to protect themselves from web based threats that traditional scanning methods have difficulty controlling. This compelling technology was selected after a rigorous application process which included over 300 companies being evaluated on a number of elements including those relating to financial performance, operational growth, and market viability.

“We are delighted that our company was recognized at this prestigious event that highlights new advancements in technology” said Hongwen Zhang, Wedge President & CEO. “This award validates Wedge Networks’ direction as an innovator in providing solution to solve the performance and accuracy problems faced when inspecting high bandwidth and complex networks. Recognition like this showcases the abilities of a Canadian company to be a technology leader on the global stage.”

About TechRev Awards

Showcasing innovation in the technology sector, TechRev focuses on bringing awareness to technology being developed in Calgary that is being adopted on a global scale. Visit www.techrev.ca for more information and the complete list of winners.

Posted in Wedge News | 3 Comments

“Here you have” it… Yet-Another-Adobe-Exploit and why we need accuracy!

I have been away for a much needed holiday, spending quality time with my in-laws.  Apart from the typical gastronomical splurging (what else – Swiss chocolates, Swiss Cheese, etc.), holidays are a good time to reflect. 

Trains and Europe go hand in hand and while waiting for my train at Zurich HB Station, I noticed how simple, elegant and impeccably accurate all the stations’ clocks were.  Later that night, I read all about this timeless clock.  Designed by Hans Hilfiker in the 40s, this simple, elegant and impeccably accurate design is timeless and goes to prove that most problems require just that – simple, elegant, yet impecabbly accurate solutions. 

Thinking of our industry – providing security to computer networks and end-devices, I am not sure we are at that stage yet.  Here is why:   

The Ponemon Institute reports that (See bar chart 3 of the report) enterprises, on average, have 3.7 software agents installed on each endpoint to perform management, security and other operations. In addition, these enterprises have, on average, 3.9 different or distinct software management consoles for endpoint operations and security.  Yet, (See bar chart 17 of the report), more than 88% of these enterprises reported that virus or malware network intrusions were the most frequently encountered incidents experienced in 2008/2009!  

Ponemon reports that enterprises have 3.7 software agents installed on each endpoint to perform management, security and other operations, yet 88% of these enterprises reported that virus or malware network intrusions were the most frequently encountered incidents.  

And further, the daily headlines continue to prove that we need to change our approach.  The latest, Yet-Another-Adobe-Exploit (YAAE!), utilizes an old-school download and run approach – VBMania worm.  The worm propagates itself by sending you an e-mail with the title “Here you have” as shown:  

"Here you have" VBMania Worm Infected Message

While the document has been removed, hence, in effect, this worm has been killed, this simple PDF exploit goes to prove this: With all the complex endpoint solutions, or UTMs that we have installed, out there, we need simple, elegant yet accurate security solutions.   In the followup blogs, I will further elaborate on what this entails.

Posted in Latest Security News | 2 Comments

Help! I have been Moogled!

Yes that’s right, I said it, Moogled: Malware Originating, Orchestrated Group Level Exchange.  A term coined by Wedge’s resident genius, the man responsible for the Hamster, Dr.Husam Kinawi. It started off harmless enough,  I had just finished reading an article by Brian Prince, entitled How Black Hat SEO Abuses Search Engines and had yelled across the hall to Dr.Kinawi with my concerns.

“I never knew Black Hats could manipulate SEO”, I shouted, completely flabbergasted.

 “Moogled” he bellowed “You’ve been Moogled.” Please note* this is generally how are conversations go. He yells, I yell, we both yell and then I scream for ice cream (yes I have a sweet tooth)*

 It is yet another example of how sophisticated Malware is becoming. These hackers are using the same tactics used to elevate how your company, organization, you, etc. shows up in the results listings of a search engine.  “Search Engine Optimization” is now being utilized to propagate malware through the online world straight to your network.  It makes sense once you start to think about it. I use SEO tactics to improve Wedge Networks’ listings online in order to reach out to more people.  Black Hats do the same, only with a malevolent purpose. Here is how they do it:

  • Use `invisible tags`
  • Put comments on blogs, postings, communities that propagate the malicious link
  • Link blogs, communities together with the same malicious links
  • Increase online use of the linked site so that it will pop up in search engines
  • Rogues AV- fake software updates

 

So BeWarned! The next time a Search engine serves you Malware, you know you’ve been Moogled.

(Check out Brians Blog: http://www.eweek.com/showblog/61619/How-Black-Hat-SEO-Abuses-Search-Engines/)

Posted in Latest Security News | 1 Comment

Come On, Wanna Pet My Pet Hamster?

Remember the days when Mom told you not to speak to strangers, even if they were friendly and offering you candy or petting their pet hamsters?  This week’s events sure brought about those memories.  Here are the top three events that would have duped some of the most advanced users:     

1. Microsoft “Fake” Anti Virus ProgramTom Kelchner of Sunbelt Security Research Labs reports on yet another malware masquerading as malware-removal.  It is so well done, to the extent that it at first mimics the Microsoft Malicious Software Removal tool. See for yourself how close it mimics the original:     

     

Fake Microsoft Software Removal Tool Recommending the Install of a Fake Anti Virus Program     

Then after it ‘scans’ your computer, it recommends ‘fake’ anti-virus software and if you were to download the ‘recommended’ Anti-Virus this is what you will see (which looks pretty well done):     

 Shield EC Antivirus – Fake Malware Removal Software     

2. BREDOLAB  is back but hidden in an e-mail that mimics ‘current’ topics, such as your DHL pickup, Amazon deliver, you name it, and with a nice ‘attachment’ that contains the ill-fated Bredolab.X Trojan Downloader as shown:        

 

 

Bredolab.X Trojan Downloader Hiding in an "Innocent" E-mail

 Bredolab.X Trojan Downloader Hiding in an “Innocent” E-mail     

3. The first Android Malware, which mimics a video player, while in fact sending out ‘premium’ SMS message at $5/message.  This malware was first reported by Kaspersky Labs (For further ideas on mobile security, check Julie’s post on this blog ) .  Again, look at how perfect it looks:     

Android Malware - Mimicking a "Fake" MoviePlayer

Android Malware - Mimicking a "Fake" MoviePlayer

 Android Malware – Mimicking a “Fake” MoviePlayer     

Well, we said it here first in “And it is not just the Antenna” …  Security is becoming a chronic issue and Enterprises or a Service Providers will need to consider “edge” security solutions  (which are typically transparent inline network traffic scanning solutions) – that will protect your end-users’ endpoint devices (PCs, mobile phones, etc.) from malware attacks, and in so doing protecting your endpoint devices and your network infrastructure from those sophisticated malwares, that are becoming harder and harder to detect.  So instead, you should be getting this:BeSecure Transparently Blocking Bredolab.X Malware  

BeSecure Transparently Blocking the download of a Trojan (TrojanDownloader:Win32Bredolab.X)  

      

 

Posted in Latest Security News | 3 Comments