Connect with us

Technology

SquareX Discovers New Cybersecurity Attacks that Completely Bypass Secure Web Gateways (SWG), Leaving Most Enterprises Vulnerable.

Published

on

SINGAPORE, Aug 6, 2024 – SquareX Founder, Vivek Ramachandran, cybersecurity veteran with over 20 years of experience and founder/ex-CEO of Pentester Academy (acquired by INE), together with the security research team, will be delivering their latest findings in an upcoming main stage talk, titled Breaking Secure Web Gateways (SWG) for Fun and Profit! at DEF CON 32’ on Friday, August 9, 2024 at 5pm PT.

The talk will unveil ‘Last Mile Reassembly Attacks’, a new class of attacks that completely evade Secure Web Gateways (SWGs), a crucial component of modern Secure Access Service Edge (SASE) and Security Service Edge (SSE) solutions.

The web browser is the most used application within the enterprise but also the least protected. Bad actors are now increasingly targeting the weakest link: employees and consultants.

Unfortunately, most of these attacks happen online when the employee or consultant is going about his daily work. Existing security solutions like SWGs as part of SASE/SSE solutions are unable to protect users against modern web threats that happen on the client side. This makes it currently impossible for enterprise security teams to detect, mitigate and threat hunt these attacks.

Vivek Ramachandran and the SquareX team have conceptualized and identified a new class of attacks against SWG and cloud-based intercepting proxies, converting traditional attacks like malware downloads and malicious websites into something undetectable by all existing vendors in the Gartner Magic Quadrant.

This class of attack is called “Last Mile Reassembly Attacks”. The vulnerabilities the team discovered are architectural and vendor-agnostic, meaning there is no specific way to fix them.

These attacks will have a massive impact on SASE, as it is a $40 billion market, and every large security vendor has an SWG product vulnerable to this new class of attacks. This is an industry-first research highlighting attacks that we suspect may have been circulating in the wild for some time. As these client-side attacks are fundamentally different in nature to the attacks that SWGs typically detect, they have remained unnoticed. Upon revealing these attacks and the release of the accompanying toolkit, enterprise vendors can assess their security posture and build countermeasures.

During the main stage talk, Vivek will shed light on this Last Mile Reassembly Attacks” – where a file download, upload or site rendering never actually happens on the server side. Instead, the attack is assembled directly in the user’s browser using various techniques, which will be explained in detail during the talk. This way, malicious files can evade triggering SWGs, leaving many enterprises across the globe vulnerable to being attacked.

Researchers at SquareX will also demonstrate over 25 plus bypass methods, including chunking attacks, WASM payloads, and others.

“The research team and I are excited to be presenting the talk at DEF CON 32. This talk will challenge SASE, SSE vendors in the current space. We hope that vendors will rethink their reliance on cloud-based web attack detection models and understand the need for a client-side (either endpoint or browser-bjhased) security agent and browser-hardening to work in tandem with the SWG for accurate detection-mitigation of attacks,” says Vivek Ramachandran, Founder & CEO of SquareX.

Web attacks have far advanced and evolved in today’s world and if enterprises do not change the way they protect their users, they will essentially be vulnerable to these web threats and attacks. SquareX is dedicated to enhancing online security for enterprises. By bringing these vulnerabilities to light and advocating for a more comprehensive approach to browser security, the team’s research serves as a critical alert to the cybersecurity community.

The revealing of “Last Mile Reassembly Attacks” and the release of the accompanying toolkit are poised to challenge the way enterprise security teams think and will prompt enterprises to reassess their methods for protecting employees from browser-based attacks.

About SquareX:
SquareX helps organizations detect, mitigate and threat-hunt web attacks happening against their users in real time. With our innovative browser-native security product, SquareX safeguards enterprise users from a spectrum of web-based threats, encompassing malicious files, websites, scripts, and compromised networks.

About Vivek Ramachandran:
Vivek Ramachandran is a security researcher, book author, speaker-trainer, and serial entrepreneur with over two decades of experience in offensive cybersecurity. He is currently the founder of SquareX, building a browser-native security product focused on detecting, mitigating, and threat-hunting web attacks against enterprise users and consumers. Prior to that, he was the founder of Pentester Academy (acquired in 2021), which has trained thousands of customers from government agencies, Fortune 500 companies, and enterprises from over 140+ countries. Before that, Vivek’s company built an 802.11ac monitoring product sold exclusively to defense agencies.

Vivek discovered the Caffe Latte attack, broke WEP Cloaking, conceptualized enterprise Wi-Fi Backdoors, and created Chellam (Wi-Fi Firewall), WiMonitor Enterprise (802.11ac monitoring), Chigula (Wi-Fi traffic analysis via SQL), Deceptacon (IoT Honeypots), among others. He is the author of multiple five-star-rated books in offensive cybersecurity, which have sold thousands of copies worldwide and have been translated into multiple languages.

He has been a speaker/trainer at top security conferences such as Blackhat USA, Europe and Abu Dhabi, DEFCON, Nullcon, Brucon, HITB, Hacktivity, and others. Vivek’s work in cybersecurity has been covered in Forbes, TechCrunch, and other popular media outlets.

In a past life, he was one of the programmers of the 802.1x protocol and Port Security in Cisco’s 6500 Catalyst series of switches. He was also one of the winners of the Microsoft Security Shootout contest held in India among a reported 65,000 participants. He has also published multiple research papers in the field of DDoS, ARP Spoofing Detection, and Anomaly-based Intrusion Detection Systems. In 2021, he was awarded an honorary title of Regional Director of Cybersecurity by Microsoft for a period of three years, and in 2024 he joined the BlackHat Arsenal Review Board.

Technology

Chery PHEVs’ 1700+ KM Challenging Test Tour Global KOCs Praise the Power and Range

Published

on

From October 14th to October 16th, Chery’s two PHEV models embarked on a 1,700+ KM journey, starting from a tour of Guangzhou’s Hua’e Lou, followed by the driving challenge at Mount Longhu, and concluding with the ecological protection experience at Poyang Lake, before arriving at Chery’s headquarters in Wuhu, China. With their impressive power, extended range, and efficient charging technologies, the vehicles garnered unanimous praise from invited KOCs.

During the driving challenge at Mount Longhu, the Tiggo 9 PHEV and Arrizo 8 PHEV became the center of attention thanks to their remarkable power performance and intelligent control systems. Faced with the winding roads of Mount Longhu, the Tiggo 9 PHEV’s 1.5T engine paired with the third-generation DHT hybrid transmission proved its prowess. The 4WD version boasted an output power of up to 450 kW and a peak torque of 915 N·m, effortlessly handling steep slopes and complex terrain, allowing drivers to experience the thrill of driving fully.

The Arrizo 8 PHEV has an advanced 1.5TGDI fifth-generation hybrid engine, a market highlight due to its ultra-low fuel consumption and high performance. The engine demonstrates outstanding energy utilization with a thermal efficiency of up to 44.5%. It also delivers a maximum power of 115 kW and a peak torque of 220 N·m, ensuring a powerful and smooth driving experience.

The intelligent control systems of both models played a crucial role in the driving challenge. The Tiggo 9 PHEV features an all-dimensional intelligent driving safety system equipped with 30 active safety configurations, including L2.9-level ADAS, highway navigation, and memory parking, offering comprehensive safety for drivers. Meanwhile, the Arrizo 8 PHEV, with its advanced intelligent control system, provides real-time vehicle monitoring and precise adjustments, allowing drivers to enjoy driving fun while feeling secure.

During the Poyang Lake ecological protection experience, the Tiggo 9 PHEV and Arrizo 8 PHEV showcased their long-range capabilities, low energy consumption, and external power supply functions. The vehicles’ range capabilities were fully displayed against Poyang Lake’s expansive waters and surrounding natural scenery. The Tiggo 9 PHEV, depending on configuration, offers an all-electric range of 100/170 km, with a total range exceeding 1,400 km. The Arrizo 8 PHEV also provides a total range of over 1,400 km when fully charged, with an all-electric range exceeding 127 km. This range capability allows drivers to enjoy the natural beauty while handling long-distance travel needs easily.

In the Poyang Lake ecological protection experience, both models’ external power supply functions were also put to good use. Whether for outdoor camping or other power-requiring scenarios, the vehicles’ external power supply functions provide stable electricity for various devices, allowing drivers to enjoy the natural surroundings with practical and convenient power solutions.

Through these immersive activities, the Tiggo 9 PHEV and Arrizo 8 PHEV once again demonstrated Chery’s leading position in PHEV technology with their excellent power performance, intelligent control systems, long-range capabilities, low energy consumption, and external power functions. Looking ahead, Chery will continue to uphold its brand values of green mobility, technological innovation, and family companionship, delivering more premium and eco-friendly automotive products to consumers.

Company: Chery Automobile Co., Ltd.

Contact Person: Chery Automobile

Email: cherybrand@mychery.com

Website: https://www.cheryinternational.com/

Country: China

City: AnHui

Continue Reading

Technology

VRAD Co. Launches Korean VR Simulators for Nursing & Trauma Training in Global Markets

Published

on

VRAD Co., Ltd. is launching two widely recognized Korean-developed virtual reality-based simulators, NS_Core, a nursing skills education simulator, and IP_Trauma, a trauma patient care simulator, for international markets. These products support a broad range of languages, including Korean, English, Vietnamese, Thai, Indonesian, Chinese, Japanese, Kazakh, and German, with Spanish and French language support anticipated by the end of the year.

NS_Core is an immersive clinical simulation solution designed for nursing skill training using Meta’s virtual reality headset. It allows users to perform a variety of clinical exercises in a VR environment with simulated patients. This solution offers an innovative approach to addressing the challenges of hands-on medical training within nursing school curricula by providing a metaverse-based virtual training space.

Developed through a collaboration between general hospitals and university nursing departments, NS_Core enables intensive, repetitive practice on 20 essential nursing skills, significantly enhancing clinical performance among nursing students.

IP_Trauma offers a comprehensive VR training environment for medical personnel to acquire and refine essential trauma care skills. This includes learning various medical procedures, equipment handling, situational assessment, and decision-making, as well as fostering teamwork and real-time communication—areas traditionally challenging to practice effectively.

IP_Trauma is an immersive clinical simulation platform featuring reactive scenario simulations, where outcomes vary based on the user’s choices and actions. Developed in partnership with several prominent Korean universities and hospitals, it adheres to the globally recognized Advanced Trauma Life Support (ATLS) protocol standards.

Within the IP_Trauma simulator, multiple users can communicate in real time, practicing critical decision-making and trauma care techniques in a virtual environment. The simulation covers over 40 procedural steps, from pre-hospital preparation to patient transfer to the operating room. Simulation managers can utilize a control console to assign real-time scenarios, provide additional instructions, and directly guide participants, effectively managing the simulation’s progress.

Currently recognized as a leading VR medical technology provider in Korea, VRAD’s products are actively used in over 90 medical and educational institutions, both domestically and internationally.

Website: https://vrad.one/

Media Contact: VRAD in Gyeonggi-Do, South Korea

Media Inquiries Contact: wsheo@vrad.one

Phone: +82 2-869-4789

Email: info@vrad.one

Continue Reading

Technology

Chery Reaches 15 Millionth Vehicle Milestone: TIGGO 8 Proudly Rolls Off the Line at Brazil’s Manufacturing Base

Published

on

Recently, Chery Group reached a monumental moment in its journey. In four countries—Egypt, Brazil, Kazakhstan, and Malaysia—Chery vehicles rolled off production lines simultaneously. At the same time, a celebration was held at the Wuhu manufacturing base in China to commemorate the milestone of the 15 millionth vehicle. This series of remarkable achievements signifies Chery’s leap across five continents and weaves together an extraordinary 15-million vehicle roll-off event that transcends borders.

At the 15-million vehicle roll-off ceremony, Yin Tongyue, Chairman of Chery Group, remarked: “From 1 to 15 million, it is not just a growth in product quantity or a breakthrough in Chery’s speed, but an unyielding innovation to turn the impossible into the possible and to turn the possible into even greater possibilities.” Looking ahead to the next 15 million, Chery will focus on the user, build on technology, and take globalization as the direction, striving not only for sales growth but also for advancements in quality, structural optimization, and brand value, bringing global users more delightful, diverse, and differentiated brand options.

TIGGO 8 Shines Globally, Adding Brilliance to the 15 Millionth Vehicle Milestone Celebration

During the global synchronized roll-off ceremony, the TIGGO 8 rolled off the production line at Chery’s Brazil manufacturing base, becoming an integral part of the 15-million milestone achievement. In terms of sales, the TIGGO 8 series has achieved over 1 million global sales, gaining recognition from urban elites worldwide. Additionally, various models of the TIGGO 8 series continue to sell well and gain widespread trust in markets such as Brazil, South Africa, Saudi Arabia, and Ecuador. Since its debut in Brazil in 2020, the TIGGO 8 has received high praise, winning recognition from authoritative institutions and the favor of consumers. It maintains strong sales momentum in Brazil and has become an official reception vehicle for the Brazilian president and a key government procurement vehicle.

With globally recognized quality and performance, the TIGGO 8 series has also won multiple awards, including South Africa’s “2023 Motor Enthusiasts Choice” award, Mexico’s “Top Midsize SUV” and the Philippines’ “Best Midsize Crossover in 19th Annual C!” award.

Global Sales: From 0 to 15 Million, Chery’s Momentum Accelerates

On December 18th, 1999, Chery’s first vehicle rolled off the line. From 0 to 15 million, Chery has maintained its position as China’s top passenger car exporter for 21 consecutive years, expanding its business to over 100 countries and regions. From January to September 2024, Chery Group sold 1,752,793 units, representing a 39.9% year-over-year increase, 93% of its total sales for 2023. Of this, exports reached 829,353 units, marking a 24.5% year-over-year increase, making Chery the only automotive company to achieve dual growth in domestic and overseas markets. As of now, Chery has amassed 15 million global users.

Chery has adhered to a “dual-track” approach in both domestic and international markets, achieving dual growth, with exports accounting for nearly 50% of total sales, showcasing its competitiveness in the global arena. At the same time, Chery has demonstrated strong growth momentum in ICE and NEV. Fuel vehicle sales saw a year-on-year increase of 24.9%, Meanwhile, new energy models have surged with a staggering year-on-year growth rate of 186%.

Global Products: Cars That Meet the Needs of World Users

With its global presence, high-standard R&D, stringent quality control, and excellent product performance, Chery has become a truly global car manufacturer that meets the diverse needs of users worldwide. Chery has established eight major R&D centers and over 300+ laboratories globally, bringing together more than 25,000 top R&D experts to form a strong “scientific elite team” dedicated to solving the mobility needs of new-era users.

From global product planning, design, and development to supply chain management, production, marketing, service, and quality system establishment, Chery adheres to a unified system and quality management standard, ensuring synchronized quality upgrades across global products. Through rigorous testing in extreme conditions worldwide, such as the steep slopes of South America in Brazil, the high humidity and heavy rain of Indonesia, the extreme heat of the Middle East, the autobahns of Germany, and China’s vast geographic span, Chery vehicles have demonstrated their exceptional adaptability and reliability.

The Chery TIGGO series has been a standout in global markets, with the TIGGO series being named the “2023 Global Sales Champion for Chinese Brand Fuel SUVs.” Furthermore, the TIGGO 7 has held the title of the top export champion in the Chinese brand A-segment SUV category for three consecutive years. Many of Chery’s celebrated models, tested by global standards, were showcased at the Global Innovation Day event, including the TIGGO 8 Rally champion car.

Deepening International Cooperation,Co-create a New Future of High-Quality Global Expansion

While rapidly expanding in overseas markets, Chery is also building a high-quality, sustainable “going global” model. Adhering to the international development philosophy of “In somewhere, For somewhere,” Chery collaborates openly with overseas partners to share achievements. With a commitment to being a top performer in global ESG construction and embracing the concept of being a good global corporate citizen, Chery has gained wider recognition and support in overseas markets. The 2024 Chery International User Summit exemplifies Chery’s international influence. The launch of exciting events like Global Innovation Conference(CGIC), International User Summit, Ecology Exhibition and ESG Global Community allows guests worldwide to deeply appreciate Chery’s outstanding achievements and firm determination in technology innovation, environmental construction, and public welfare. These events showcase Chery’s latest technological achievements and cutting-edge ecological concepts and highlight its responsibility and leadership as a global corporate citizen.

In the face of this magnificent milestone, Chery Group celebrates the rollout of its 15 millionth vehicle and embarks on a new chapter in its globalization development. Behind these impressive numbers lies the crystallization of Chery’s 27 years of relentless effort and the testimony of trust and support from 15 million global users. Looking to the future, Chery will continue to deepen international cooperation and produce more global vehicles that meet users’ needs worldwide.

Company: Chery Automobile Co., Ltd.

Contact Person: Chery Automobile

Email: cherybrand@mychery.com

Website: https://www.cheryinternational.com/

Country: China

City: AnHui

Continue Reading

Technology

ProX PC: Revolutionizing AI with Cutting-Edge Computing Hardware Solutions for India’s Growing Technology Needs

Published

on

ProX PC, a leading provider of custom computing solutions, is redefining the landscape of AI technology in India. With innovative hardware offerings and unparalleled support, the company has successfully implemented the largest AI-driven project across the nation, onboarding over 200,000 cameras for a major client in the oil and gas sector. ProX PC serves both government sectors and B2C markets, achieving a turnover of ₹8 crore in the fiscal year 2023-2024.

New Delhi, India – ProX PC, a pioneer in the field of high-performance computing hardware, is transforming the Indian AI industry with its state-of-the-art solutions. Founded by Arun Kaushik, the company has carved a niche for itself by providing custom-built hardware tailored to meet the complex demands of AI, edge computing, and high – performance data processing.

In an era where Artificial Intelligence is driving major transformations across industries, ProX PC has emerged as a reliable partner for organizations aiming to harness the power of AI for real-world applications. Recently, ProX PC played a pivotal role in deploying one of the largest AI projects in India, onboarding over 200,000 surveillance cameras for a leading player in the oil and gas industry. This project required high-end, scalable computing solutions capable of real-time data processing and analysis—a need that ProX PC met with its advanced AI-optimized servers and edge computing devices.

“At ProX PC, our mission is to empower organizations with the right tools to unlock the true potential of Artificial Intelligence,” said Arun Kaushik, CEO and Founder of ProX PC. “Our custom hardware solutions are designed to handle the massive computational workloads that AI demands, ensuring that our clients can innovate faster and more efficiently.”

ProX PC’s expertise extends across multiple industries and use cases. For the government sector, the company provides high-performance servers and edge AI devices that are designed to handle mission-critical tasks in surveillance, defense, and public safety. For B2C markets, ProX PC offers premium workstations for professionals in fields such as content creation, video editing, architectural design, and scientific research, ensuring that creatives and scientists have the computational power they need at their fingertips.

The company’s product portfolio includes a diverse range of configurations, from high – powered multi-GPU servers to versatile edge computing solutions. All of ProX PC’s products are crafted with a focus on high-performance AI workflows, enabling customers to drive innovation across sectors.

ProX PC’s financial growth reflects its increasing impact on the technology industry in India. In the fiscal year 2023-2024, the company achieved an impressive turnover of ₹8 crore, a testament to the quality and demand for its solutions. This growth also underscores the company’s dedication to supporting India’s digital transformation goals by providing world-class computing hardware solutions.

As ProX PC looks to the future, it remains committed to pushing the boundaries of what’s possible in AI. The company continues to invest in cutting-edge technology to ensure that its clients—whether in government, corporate, or consumer sectors—have access to the latest advancements in computing.

For more information on ProX PC’s products and solutions, please visit www.proxpc.com.

About ProX PC:

ProX PC specializes in custom-built computing solutions tailored for high-performance workflows, including AI, scientific computing, and content creation. With a mission to empower innovation across industries, ProX PC provides premium workstations, servers, and edge AI devices designed to meet the unique needs of professionals and organizations alike. ProX PC is headquartered in New Delhi, India, and serves both B2B and B2C markets, supporting government agencies, large corporations, and individual professionals.

Continue Reading

Technology

The Hub by infinite-VARIABLE Achieves NVidia GeForce Certification, Elevating Gaming and Community Experiences

Published

on

Pune, India — 04.11.2024 The Hub, powered by infinite-VARIABLE, is proud to announce its official certification as an NVidia GeForce Certified centre. This certification marks a significant milestone in The Hub’s mission to create a high-quality, immersive experience for gaming enthusiasts, artists, and tech innovators across India. As a certified NVidia GeForce partner, The Hub joins an elite group of global centres equipped to offer top-tier graphics performance and industry-leading gaming experiences.

This certification ensures that The Hub’s users can access the latest in graphics technology, meeting NVidia’s rigorous standards for performance, quality, and user engagement. As part of this certification, The Hub has its systems with NVidia’s cutting-edge GPUs, enabling seamless gameplay and offering a visually rich environment suitable for both professional gaming and creative development.

“We’re thrilled to become an NVidia GeForce Certified centre. This certification validates our commitment to providing an unparalleled experience for our community,” said Arnav Pralin Fadnavis, Founder of infinite-VARIABLE. “The Hub is not just a gaming space; it’s a tech and cultural innovation centre where creativity and cutting-edge technology merge. This partnership with NVidia elevates what we can offer to gamers, developers, and artists alike.”

An Enhanced Experience for the Gaming and Creative Community

The Hub provides community members access to an immersive environment where NVidia’s state-of-the-art graphics bring games, digital art, and virtual spaces to life. By incorporating NVidia’s powerful hardware, The Hub supports professional esports training, immersive 3D design, and virtual reality experiences—all under one roof. This partnership will also enable The Hub to host NVidia-endorsed tournaments and exclusive events, adding a new dimension to the community’s engagement.

Franchise Opportunities Available for Pan-India Expansion

With franchise options now available, infinite-VARIABLE invites partners to join in expanding The Hub across India, fostering a nationwide network of high-performance community spaces. This expansion aims to connect gaming, tech, and arts communities and provide franchisees with access to NVidia-certified technology and operational support.

About infinite-VARIABLE

infinite-VARIABLE is a visionary organisation dedicated to building adaptive community spaces that bridge the physical and digital realms. Established in 2020, infinite-VARIABLE has been at the forefront of creating versatile spaces that cater to the evolving needs of artists, tech enthusiasts, and entrepreneurs. From managing community hubs to launching initiatives that support emerging talent and drive innovation, infinite-VARIABLE is committed to sustainability, accessibility, and impactful growth.

Through its pioneering projects like The Hub and iVUniverse, infinite-VARIABLE continually reshapes what community spaces can be, creating environments that empower individuals to connect, create, and collaborate. The organisation’s mission emphasises sustainable practices, technological advancement, and community engagement, making it a leader in India’s burgeoning community-driven space industry.

About The Hub powered by infinite-VARIABLE

Since its inception, The Hub has been dedicated to creating inclusive, community-driven spaces that empower gamers, artists, and tech enthusiasts. Equipped with world-class facilities and powered by NVidia GeForce, The Hub is redefining gaming culture in India, emphasising sustainability, accessibility, and technological advancement. Through a range of unique offerings, including gaming rooms, blockchain workshops, and collaborative tech spaces, The Hub is committed to shaping the future of community spaces.

For more information about The Hub, NVidia GeForce certification, or upcoming events, please visit https://infinitevariable.com/the-hub-community or contact us at connect@ivuniverse.com.

Contact:

infinite-VARIABLE Media Relations

Rohan Bhardwaj

pr@ivuniverse.com

8261895572

Continue Reading

Trending