Skip to content

How to find Ubiquiti devices on your network

Latest Ubiquiti vulnerability: UniFi Protect IP cameras #

Ubiquiti has disclosed a vulnerability in its UniFi Protect IP cameras. This vulnerability would allow an unauthenticated attacker with access to the camera’s management network to execute arbitrary code on the device.

This vulnerability has been designated CVE-2025-23123 and has a CVSS score of 10.0 (critical). 

What’s the impact? #

An attacker with access to the camera’s management interface would be able to execute arbitrary code on the device. This would allow the attacker to take complete control of the device.

Are updates or workarounds available? #

Ubiquiti has released an update to the firmware, version 4.75.62, to address this issue. Users are recommended to update to this or a later version as quickly as possible.

How to find UniFi Protect cameras with runZero #

From the Asset inventory, use the following query to locate Ubiquiti IP cameras on your network:

hw:Ubiquiti type:Camera

 


August 2022 – Ubiquiti devices #

Earlier this year, Ubiquiti, a popular networking equipment manufacturer for businesses and consumers, disclosed a security breach that potentially exposed customer data. However, recent news indicates that the reported breach was intentionally and severely underreported, and the potential impact was much greater than disclosed. You can read the Krebs article for more in-depth reporting of the breach and its potential impact.

Right now, it’s critical to audit and find Ubiquiti devices. After you’ve identified these devices, consider:

  • Changing the passwords and enabling 2FA, if you haven’t already.
  • Ensuring the devices are on the latest firmware.
  • Deleting and rebuilding your device profiles from scratch, if you want to be absolutely certain your systems are not impacted by this breach.

How to find Ubiquiti devices with runZero #

runZero users can quickly find Ubiquiti devices in their inventory with this handy pre-built query. This query searches for any live asset that has Ubiquiti as the vendor, hardware, or OS, and it also searches for the UBNT protocol.

alive:t AND (vendor:Ubiquiti OR hw:Ubiquiti OR os:Ubiquiti OR protocol:ubnt OR names:unifi OR names:ubiquiti)

As always, any prebuilt queries we create are available from our Queries Library. Check out the library for other useful inventory queries.

Find prebuilt queries in the Queries Library

About runZero
runZero, a network discovery and asset inventory solution, was founded in 2018 by HD Moore, the creator of Metasploit. HD envisioned a modern active discovery solution that could find and identify everything on a network–without credentials. As a security researcher and penetration tester, he often employed benign ways to get information leaks and piece them together to build device profiles. Eventually, this work led him to leverage applied research and the discovery techniques developed for security and penetration testing to create runZero.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Granular Recovery Technology: How Does It Work

Data is a company’s most important tool in the digital-first marketplace. Businesses depend on quick and safe access to their data—financial records, client data, and operational files. Losing important data can cause operations to stop, whether due to device problems, corruption, inadvertent deletions, or cyberattacks.

Traditional backup and recovery methods can require rebuilding an entire system or massive databases, even in cases of one file loss. This procedure disturbs, costs money, and takes time. Restoring critical data takes time, which increases operational downtime and financial loss.

Granular Recovery Technology (GRT) finds application here. GRT lets companies grab just the required files, emails, or database entries instead of recovering a whole system, lowering downtime and maximizing efficiency. Let’s explore this technology—how it works and how you can easily integrate it into your firm.

What is Granular Recovery Technology?

Granular Recovery Technology (GRT) is an advanced data recovery technique that allows users to access individual files, emails, or database entries from a backup without restoring the whole system.

Unlike traditional recovery solutions that need to reverse a whole snapshot, GRT lets one restore just the necessary data while preserving the integrity of the overall system.

For instance, conventional recovery techniques would call for restoring the whole mailbox or server should an employee unintentionally delete a crucial email. GRT allows IT managers to search for and restore that email, reducing disturbance rapidly.

GRT is extensively applied in corporate settings, particularly in IT service management (ITSM), cloud computing, and disaster recovery systems. Its precision-based methodology guarantees organizations can quickly and affordably access mission-critical data.

Storware Supports GRT

Storware Backup and Recovery significantly enhances data management by leveraging granular recovery technology, often referred to as file-level restore. This capability allows users to precisely select and restore individual files or folders from a backup image without needing to recover the entire virtual machine, application, or database. This targeted approach dramatically reduces recovery time and resource consumption, as only the necessary data is restored. By providing this fine-grained control, Storware empowers administrators to efficiently address specific data loss incidents, minimizing downtime and ensuring business continuity with swift and accurate data retrieval.

How Does Granular Recovery Work?

Granular recovery depends on extensive indexing and cataloging of backup data. GRT lets users interact with distinct components within a backup rather than consider it one monolithic file.

The procedure follows this:

  • Backup and Indexing: The system catalogs data snapshots for simple access. This indexing allows IT managers to search the backup for particular files or database records.
  • Search and Selection: IT teams can find and select particular objects following a data loss event rather than restoring a complete dataset.
  • Targeted Restoration: The chosen data is retrieved without altering or rewriting other system files. This method guarantees regular business activities can continue while recovery is in progress.

Modern GRT solutions use automation and artificial intelligence to achieve an even higher efficiency. Some systems can maximize indexing for faster access and forecast the most frequently retrieved files.

Where Granular Recovery Is Applied

Granular recovery has uses in many sectors where speed, efficiency, and data integrity are vital.

  • IT Departments: Use GRT to retrieve lost data, correct system faults, and preserve uptime in cloud-based systems.
  • Healthcare and Finance: Gain from GRT’s capacity to selectively retrieve medical records or financial transactions while guaranteeing regulatory compliance.
  • E-commerce and SaaS Platforms: Online firms depend on GRT to recover consumer orders, product data, or service configurations without compromising current operations.
  • Cybersecurity & Disaster Recovery: Rather than undoing whole systems following a ransomware attack or system failure, businesses can employ GRT to restore clean, uninfected data.

The Key Advantages of Granular Recovery

GRT has altered how corporations deal with data recovery by offering:

  • Quicker Recovery Times

One of GRT’s main advantages is its speed. Traditional recovery techniques take hours or even days to restore a complete system. GRT allows companies to access particular files quickly, greatly lowering downtime.

  • Improved Cost Savings and Storage

Eliminating the need for full-system restores helps GRT reduce backup management’s necessary storage and processing capability. This results in fewer infrastructure expenses and more effective use of IT resources.

  • Enhanced Compliance & Safety

GRT lets companies retrieve sensitive data without disclosing or recovering pointless data since it allows for focused recovery. Industries that must follow laws such as GDPR, HIPAA, and PCI-DSS stand to gain from this.

  • Minimal Corporate Disturbance

Recovering just the necessary data frees other systems and procedures. Workers can continue without interruption, guaranteeing business continuity.

Limitations of Granular Recovery Technology

While GRT offers significant benefits, it also has some challenges that businesses must consider before implementation.

  • Implementation Complexity

Granular recovery requires sophisticated and time-consuming advanced indexing and cataloging systems. Effective GRT configuration and management depend on appropriate IT staff training.

  • Conflict of Compatibility

Not every backup method enables exact recovery. Some legacy systems may require major upgrades or extra software tools to allow selective data restoration.

  • Difficulties in Large-Scale Environmental Performance

If the indexing system is not optimized, searching and retrieving specific files can still take longer than anticipated for businesses with large datasets. Poorly maintained indexing systems can result in slower recovery times.

  • Higher Initial Costs

Although GRT might save money in the long term, the initial investment in software, training, and infrastructure changes can be more than traditional recovery options. Businesses must examine if the long-term benefits offset the upfront expenses.

  • Risk of Partial Restorations

In some circumstances, restoring only parts of a dataset may produce problems, primarily if the recovered file depends on other system elements that were not converted. Organizations must ensure that selective recovery does not generate data integrity issues.

Despite these limitations, GRT remains essential for businesses prioritizing speed, efficiency, and compliance in their disaster recovery plans.

How to Integrate Granular Recovery in Your IT Strategy

To effectively adopt GRT, firms should:

  • Selecting the Correct Backup System

Organizations should search for backup systems that fit GRT and interface nicely with their IT setup. Cloud-based systems, including built-in granular recovery tools, are a sensible option. However, Storware Backup and Recovery is as good, if not the best, option. File-level recovery is just one of many useful features that allow organizations to effectively protect their heterogeneous workloads. Download a free trial and test drive Storware.

  • Testing & Training

Frequent disaster recovery exercises guarantee that IT departments are conversant with the detailed recovery mechanism. Teaching staff members the best techniques can lower the chance of mistakes during restoration.

  • Automating Processes for Recovery

Advanced GRT solutions now use machine learning techniques to forecast frequently restored files, significantly lowering search and retrieval times. Businesses could consider automation to boost efficiency.

In Summary

Granular Recovery Technology is altering how firms handle data loss. It minimizes downtime, optimizes resources, and improves security by allowing IT teams to restore only the necessary files. However, GRT is not a universal solution. Organizations must examine their IT infrastructure, train personnel, and follow best practices to optimize its benefits.

As data volumes expand, the desire for faster, more precise recovery solutions will only increase. Businesses that make GRT investments now will be better suited for tomorrow’s demands. Is your company ready for precise recovery? Now is the moment to explore how it might improve your approach to disaster recovery.

About Storware
Storware is a backup software producer with over 10 years of experience in the backup world. Storware Backup and Recovery is an enterprise-grade, agent-less solution that caters to various data environments. It supports virtual machines, containers, storage providers, Microsoft 365, and applications running on-premises or in the cloud. Thanks to its small footprint, seamless integration into your existing IT infrastructure, storage, or enterprise backup providers is effortless.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Intelligent IT Distribution became NACVIEW new distributor

“Alone we can do so little; together we can do so much.”

In light of the words of Helen Keller, we are pleased to announce the beginning of a strategic partnership with our new distributor – Intelligent IT Distribution, a company specializing in delivering advanced technologies that guarantee the highest level of security. We firmly believe that the synergy of our strengths and our shared vision of innovation will contribute to dynamic growth and the creation of even more sophisticated solutions, setting a new standard in the field of cybersecurity.

Our primary goal is to provide partners and end customers with the most comprehensive and reliable tools to effectively protect their IT infrastructure. Through this collaboration, Intelligent IT Distribution will be responsible for distributing NACVIEW in key markets such as Ukraine, Georgia, Azerbaijan, Kazakhstan, and Uzbekistan, thus opening new opportunities for growth and digital security in these regions.

About NACVIEW
A powerful network access control (NAC) solution designed to provide organizations with comprehensive visibility and control over their network infrastructure. Developed by leading network security company, NACVIEW offers advanced features and capabilities to ensure secure and efficient network access for users and devices.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Perforce’s State of Open Source Report Reveals Low Confidence in Big Data Management

About Perforce
The best run DevOps teams in the world choose Perforce. Perforce products are purpose-built to develop, build and maintain high-stakes applications. Companies can finally manage complexity, achieve speed without compromise, improve security and compliance, and run their DevOps toolchains with full integrity. With a global footprint spanning more than 80 countries and including over 75% of the Fortune 100, Perforce is trusted by the world’s leading brands to deliver solutions to even the toughest challenges. Accelerate technology delivery, with no shortcuts.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Portnox Secures $37.5 Million Series B Funding to Revolutionize Zero Trust Security with Unified Access Control

With cybersecurity threats proliferating, Portnox is empowering companies worldwide to go passwordless, with cloud-native security solutions that adapt to complexity at scale.

 

AUSTIN, TX – April 8, 2025 – Portnox, a leading provider of cloud-native, zero trust access control solutions, today announced it has closed a $37.5 million Series B funding round. This investment, led by Updata Partners, will be used to accelerate product innovation, expand market reach, and further empower resource-constrained security teams with accessible, enterprise-grade zero trust security. Portnox delivers the critical visibility and control enterprises need to secure access for every device and user across their IT eco-system, ensuring airtight access control in an increasingly perimeterless, high-risk world.

“Companies are replacing on-premises Network Access Control (NAC) with cloud-native zero trust solutions, which we estimate to be a multi-billion-dollar market. I’m proud that Portnox is leading the charge with a best-of-breed Unified Access Control (UAC) platform,” said Denny LeCompte, CEO of Portnox.

Jon Seeber, General Partner and co-manager of Updata Partners, has joined the Portnox Board of Directors. Updata focuses its investments on B2B software and technology-driven businesses and has invested in over 75 software businesses and completed over 55 exits. Seeber has been a member of Updata’s investment team since 2006. Before joining Updata, Seeber worked on the Business Development team inside IBM Global Services, managing acquisitions, divestitures, investments, and partnerships for IBM’s largest business unit.

“We see a massive opportunity in the shift to cloud-native security, and Portnox stands out with a uniquely unified approach to access control that’s both powerful and easy to adopt. The company’s leadership team has a deep understanding of the market and a clear track record of execution,” said Seeber.

Portnox delivers a unified access control platform – the Portnox Cloud – that brings together passwordless authentication, authorization, risk mitigation, and compliance enforcement for enterprise networks, applications, and infrastructure. Purpose-built for distributed organizations with complex IT environments, Portnox Cloud is 100% cloud-native and offers unparalleled ease of use coupled with the robust security capabilities needed to protect against increasingly sophisticated attacks.

Portnox’s focus on simplifying security and delivering best-of-breed access control solutions has resonated strongly with the market, as evidenced by its nearly 1,000 global customers, 95% customer retention rate, and 4.6-star rating on Gartner Peer Insights. Over the past year, Portnox has received numerous industry accolades, including recognition from SC Media, Cyber Defense Magazine, Cybersecurity Breakthrough Awards, and SC Awards Europe.

The investment by Updata Partners builds upon Portnox’s $22 million Series A round of funding led by Elsewhere Partners in 2022, bringing the total investment in the company to $59.5 million.

 

About Updata Partners

Updata Partners is a leading technology-focused growth equity firm in Washington D.C. with over $1.5 billion in committed capital. Led by an investment team averaging more than 25 years of technology experience, Updata invests in high-growth B2B software and software-driven businesses where the combination of capital and operating experience will help accelerate success. To learn more, visit https://www.updata.com.

About Elsewhere Partners

Elsewhere Partners, a tech-focused private equity firm, invests in growth-ready lower middle market software companies around the globe. Elsewhere’s team of experienced investors and software operators tailor growth plans for each unique portfolio company and offer complementary support across go-to-market, product, talent, finance, and strategy functions. Based in Austin, TX, Elsewhere has invested in 18 companies throughout North America, Europe and Israel since its inception in 2016. To learn more, visit https://elsewhere.partners.

About Portnox
Portnox provides simple-to-deploy, operate and maintain network access control, security and visibility solutions. Portnox software can be deployed on-premises, as a cloud-delivered service, or in hybrid mode. It is agentless and vendor-agnostic, allowing organizations to maximize their existing network and cybersecurity investments. Hundreds of enterprises around the world rely on Portnox for network visibility, cybersecurity policy enforcement and regulatory compliance. The company has been recognized for its innovations by Info Security Products Guide, Cyber Security Excellence Awards, IoT Innovator Awards, Computing Security Awards, Best of Interop ITX and Cyber Defense Magazine. Portnox has offices in the U.S., Europe and Asia. For information visit http://www.portnox.com, and follow us on Twitter and LinkedIn.。

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Strengthens Regional Support; Opens Office in Singapore

HOUSTON and HONG KONG –  April 15, 2025 – Graylog, a leader in Threat Detection, Investigation, and Response, is deepening its commitment to the APAC region following a 6.5X increase in sales over the past two years — the fastest growth rate of any market for the company. As demand for modern security and log management solutions continues to rise, Graylog is expanding its footprint with a new office in Singapore, complementing its existing presence in Hong Kong. To further support this growth, Graylog has partnered with RIPEN, a leading IT security consultancy, to deliver dedicated Tier 1 and Tier 2 customer support across the region.

“Our growth in APAC isn’t just about numbers—it’s about ensuring our customers can quickly detect and respond to security threats,” said Adam Abernethy, Vice President of Customer Enablement at Graylog. “With RIPEN’s deep expertise and hands-on experience using Graylog in real-world security operations, customers get direct access to skilled professionals who can help them solve problems fast.

Expanding Graylog’s Global Sales and Support Network

Following the establishment of the company’s regional APAC office in 2022, Graylog is further expanding with the opening of an office in Singapore and the appointment of Gerald Lum as Regional Vice President of Sales. In this role, Mr. Lum will oversee the sales operations and performance in APAC, drive revenue targets, and implement sales strategies.

“As a cyber security evangelist with more than 20 years of sales and leadership experience, we welcome Gerald to the team and look forward to his contributions as we continue to help organizations across the APAC region enhance security operations, improve log management efficiency, and reduce operational costs,” said Joshua Ziel, Chief Sales Officer at Graylog.

The region continues to play an increasingly vital role in the company’s global expansion. As adoption accelerates, Mr. Lum’s arrival and the RIPEN partnership ensures that security teams have the resources, expertise, and support they need to maximize the value of their Graylog deployments.

Localised Support for APAC Security and IT Teams

RIPEN’s team will handle in-region support for Graylog’s Threat Detection, Investigation, and Response (TDIR) and Centralized Log Management solutions, helping customers:

  • Resolve security issues faster with direct access to experienced professionals
  • Get support in local languages for Tier 1 and Tier 2 troubleshooting
  • Streamline security operations by optimizing log management and threat detection workflows

“Having witnessed the transformative power of Graylog first-hand, we are thrilled to join forces to empower security and IT teams across APAC,” Stated Raymond CHENG, VP of Operation at RIPEN. ” Our collaboration will provide APAC customers with an unmatched advantage – the combined strength of our specialized knowledge and Graylog’s powerful technology – enabling them to detect threats faster, respond more effectively, and ultimately, stay ahead of the evolving threat landscape.”

RIPEN’s credentials include:

  • Accreditation from the Hong Kong Government’s Government IT Products (GITP) Scheme
  • ISO 9001:2015 certification from Accredited Certification International Limited (ACi)
  • AWS Cloud Practitioner and AWS Solutions Architect Associate certifications

APAC regional support is available Monday through Friday, 9:00 to 18:00 HKT, complementing Graylog’s existing global support coverage.

 

About Graylog
At Graylog, our vision is a secure digital world where organizations of all sizes can effectively guard against cyber threats. We’re committed to turning this vision into reality by providing Threat Detection & Response that sets the standard for excellence. Our cloud-native architecture delivers SIEM, API Security, and Enterprise Log Management solutions that are not just efficient and effective—whether hosted by us, on-premises, or in your cloud—but also deliver a fantastic Analyst Experience at the lowest total cost of ownership. We aim to equip security analysts with the best tools for the job, empowering every organization to stand resilient in the ever-evolving cybersecurity landscape.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Secure Remote Desktop in 2025: 5 Strategic Priorities for Zero Trust and Hybrid VDI Success

 

Executive Summary

Enterprises are rethinking how remote desktop access is delivered. With hybrid work, increasing endpoint diversity, and regulatory complexity, legacy VPN and rigid VDI architectures are no longer viable. The strategic shift is toward platforms that unify access, reduce infrastructure burden, and enforce Zero Trust principles.
Thinfinity® Workspace offers a modern answer—a ZTNA-native, hybrid-ready remote desktop solution that gives enterprises full control across cloud and on-prem environments without compromising security or flexibility.

Strategic Drivers: Why Secure Remote Access Needs to Change

The shift to hybrid work has made secure access a critical layer of business continuity and digital infrastructure. Yet, many organizations still rely on VPNs and legacy VDI tools that were never designed for dynamic, identity-based access.
Key strategic trends driving change:

  • Growing pressure to support BYOD and external contractors
  • Increased adoption of multi-cloud and hybrid IT environments
  • A need for ZTNA enforcement to replace VPN tunnels
  • The desire for operational simplicity and faster provisioning

Thinfinity Workspace supports this evolution through its integrated gateway architecture, enabling secure remote access without relying on external VPNs or third-party ZTNA tools.

DaaS vs. Traditional VDI: A Fragmented Landscape

As enterprises modernize their access strategies, many find themselves caught between two suboptimal options: traditional VDI infrastructure, which is often rigid and resource-intensive, and cloud-based DaaS platforms that may lack architectural flexibility and integration depth.

Traditional VDI stacks—like those built on Citrix or Horizon—typically involve tightly coupled components, complex licensing models, and a high operational burden for IT teams. Meanwhile, many DaaS offerings constrain enterprises to vendor-managed environments or single-cloud lock-in, limiting the ability to customize or extend deployments.

Thinfinity Workspace Offers a Smarter Path Forward

Thinfinity Workspace delivers a more adaptable model by combining the strengths of both approaches, while eliminating their constraints:

  • Supports both cloud and on-prem virtualization—allowing seamless orchestration across hypervisors and cloud providers
  • Scales effortlessly across hybrid infrastructures—supporting dynamic resource provisioning and multi-broker deployments
  • Centralizes session control with built-in Zero Trust Network Access (ZTNA)—no need for VPNs or third-party access gateways
  • Offers a full range of access options—including browser-based sessions, RemoteApp mode, and native desktop clients for optimal user experience

This hybrid flexibility enables organizations to evolve at their own pace—without compromising security, compliance, or performance.

 
Infographic comparing VDI, DaaS, and Thinfinity Workspace: highlights flexibility, ZTNA, hybrid support, and access options.
Capability / Use CaseThinfinity WorkspaceCitrixVMware HorizonMicrosoft AVDAwingu
Built-in ZTNA Gateway✅ Yes⚠️ Partial✅ Partial
Browser + Native Access✅ Full Support⚠️ Add-on✅ Native✅ Yes✅ Browser Only
Hybrid On-Prem + Cloud Delivery✅ Seamless⚠️ Complex✅ Partial❌ Azure Only❌ On-Prem Only
Session Control & Compliance✅ RBAC, MFA, Audit✅ Yes✅ Yes✅ Yes✅ Yes
Automation / API Access✅ REST, PowerShell❌ Complex⚠️ Limited⚠️ Limited❌ No API
High-Performance / GPU Workloads✅ 16 Monitor Support✅ Yes✅ Yes✅ Azure NV⚠️ Limited

Strategic Use Cases Across Modern Enterprise Workflows

Thinfinity Workspace is purpose-built to address the evolving access needs of enterprise environments—supporting multiple roles, devices, and security postures across industries. Here are four key use cases where Thinfinity delivers strategic value:

Remote Workforce Enablement

Thinfinity enables secure, policy-driven access to desktops and applications from any browser or device—ideal for hybrid teams, contractors, and BYOD scenarios. With native support for identity federation (SAML, OAuth), MFA, and device-agnostic access, IT teams can confidently extend access to distributed users.

Thinfinity enables secure, policy-driven remote desktop access from any browser or device, supporting BYOD, MFA, and identity federation.

High-Compliance & Regulated Sectors

Organizations in healthcare, finance, legal, and government must enforce strict access controls and maintain audit-ready environments. Thinfinity delivers compliance-aligned access with granular RBAC, session recording, full session logs, and support for HIPAA, GDPR, ISO 27001, and SOC 2 requirements.

Thinfinity supports compliance with HIPAA, GDPR, and ISO 27001 by enabling secure access controls, RBAC, and full session auditing.

Design, Engineering & GPU Workloads

Engineering, architecture, and creative teams rely on resource-intensive applications. Thinfinity supports GPU acceleration, multi-monitor setups, and RemoteApp mode—delivering seamless access to CAD, 3D rendering, and media production tools through a browser or native client, even in hybrid cloud setups.

Thinfinity enables GPU-accelerated, multi-monitor remote access for CAD, 3D, and design apps via browser or native client in hybrid setups.

Modern Developer Workflows

From legacy Windows applications to internal web platforms and remote shell environments, today’s development teams need flexible, secure access to a diverse range of resources. Thinfinity Workspace empowers developers to securely publish VirtualUI-enabled desktop applications, connect to Linux environments via SSH, and access internal portals—all without relying on VPNs or endpoint installations. It also supports virtual machine and cloud infrastructure administration, enabling DevOps teams to manage on-prem or cloud-based dev environments through a centralized, policy-controlled interface. This makes Thinfinity an ideal fit for secure, modular, and scalable DevOps workflows.

Thinfinity enables secure, VPN-free access to dev tools, SSH, internal portals, and VM or cloud admin for modern DevOps workflows.

Endpoint Control and Experience Management: The Next Battleground

As hybrid workforces grow, endpoint variability becomes a top concern for IT and security leaders. Managing a mix of personal, unmanaged, and kiosk devices—without sacrificing control or compliance—requires a new approach to remote access.
Thinfinity Workspace eliminates endpoint complexity by design. It transforms access into a secure, identity-driven process, regardless of the user’s device or location:

  • Clientless access via browser, with no local software installation
  • Secure sessions from unmanaged, personal, or shared devices, fully isolated and policy-enforced
  • Integration with modern identity platforms (SAML, OAuth) for seamless SSO and centralized authentication
  • Support for PKI certificates, FIDO2 Passkeys, and passwordless login workflows, ensuring secure authentication without friction
  • Fine-grained session restrictions, including clipboard, printing, and file transfer controls
Thinfinity enables secure, clientless remote access with SAML, OAuth, PKI certificates, Passkeys, and device-agnostic session controls.

With Thinfinity, remote desktop access becomes truly endpoint-agnostic—reducing IT overhead, increasing agility, and enhancing the user experience without compromising security posture.

Strategic Action Points for CIOs and I&O Leaders

Eliminate VPN reliance by adopting access platforms with native ZTNA controls.

Support hybrid infrastructure by selecting a vendor that works across hypervisors, clouds, and physical networks.

Automate access management via API integrations and policy orchestration.

Prioritize visibility and governance with auditing, analytics, and fine-grained session control.

Plan for scalability by choosing a solution that supports both browser-based and native workflows.

Thinfinity Workspace meets all these priorities in a single, manageable platform.

 
Strategic priorities for CIOs: eliminate VPNs, support hybrid infrastructure, automate access, enhance visibility, and ensure scalability.

Final Word: Secure Remote Desktop Is a Strategic Pillar—Not a Stopgap

Secure access to digital workspaces is no longer a tactical necessity—it’s a foundational component of enterprise resilience, security posture, and operational scalability.

Thinfinity Workspace offers a modular, secure, and future-ready platform to:

  • Unify remote desktop and application delivery
  • Secure workforce access with built-in Zero Trust principles
  • Scale across hybrid and multi-cloud environments
  • Reduce operational burden while improving user experience

To understand how Thinfinity Workspace fits into your secure access roadmap, visit cybelesoft.com/thinfinity/workspace.

 

About Cybele Software Inc.
We help organizations extend the life and value of their software. Whether they are looking to improve and empower remote work or turn their business-critical legacy apps into modern SaaS, our software enables customers to focus on what’s most important: expanding and evolving their business.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Granular policy controls: a flexible way to manage company-wide settings

When you’re ensuring thorough organizational security, company-wide settings can be a tricky business. You need them to be strict enough that all employees must comply with the rules, but you also need just enough flexibility to ensure everyone accesses sensitive information on a need-to-know basis.

To help organizations manage their internal security with more flexibility, NordPass offers granular policy controls—an addition to company-wide settings that lets companies assign more precise access controls to employees based on their needs and responsibilities.

What are granular policy controls and why are they necessary?

Organizations often face the challenge of determining the appropriate security measures across teams and individual employees. While globally applied policies can seem like the optimal option, in reality, they may grant overextended access to employees who should otherwise be restricted from accessing certain rights or advanced tools. This lack of access restrictions on a privilege level can lead to mismanagement and open up the organization to security risks.

NordPass tackles this issue, allowing businesses to control their security practices and access management as they see fit. With this functionality, organizations can set specific security policies at the organizational, role, or individual user level. This ensures that all employees can work efficiently based on their duties, setting a higher security standard in the organization.

How do granular policy controls work?

Granular policy controls are available with the NordPass Business, Teams, and Enterprise plans. The granular adjustments are managed by organization Admins and Owners using the Admin Panel based on member scope and particular policies.

Granularity scope

Before the introduction of granularity, all policies in NordPass were set globally, meaning that all organization members received the same access privileges without exception. With granular controls, Admins and Owners can set more precise access rights for members based on three criteria: whole organization, roles, or individual users.

Policy scope

The scope also is flexible across different policies. For instance, if only your Legal and Sales teams need access to the Guest Sharing policy, you limit it so that only select employees or teams with the appropriate role can access it. You can also flexibly adjust the requirements individually; for instance, employees in more sensitive roles may be required to adhere to a stricter password policy than staff in other roles.

The NordPass granular policy controls apply to the following company-wide settings:

  • Password Policy: you can customize and enforce password rules for the organization or different roles.

  • Guest Sharing: you can allow or disallow the ability to share sensitive information with contacts outside the organization.

  • Exporting: you can allow or disallow members of the organization to export sensitive data.

  • Autolock: you can define different inactivity periods before NordPass is automatically locked for different roles and individuals.

  • Browser extension lock: you can control browser extension behavior and set whether it can remain unlocked based on the role or individual member needs.

  • Multi-factor authentication (MFA): you can enforce MFA to ensure a higher security level for the organization, specific roles, or selected employees.

  • Email Masking: you can allow or disallow the organization, select roles, or individual members to use decoy email domains to protect their work email accounts.

The benefits of granular policy controls

NordPass’ granular policy controls solve a massive issue for business security: companies are no longer forced to apply global policies. Each team can adapt to higher security standards as role-specific rules reduce the likelihood of miscommunication and accidental or malicious access to sensitive materials.

Organizations that handle sensitive information can impose stricter and more accurate data management practices. With granularity ranging from the individual to the full organization, it offers an easier way to delegate security-related roles and responsibilities, such as sharing data with external partners.

Establishing granular access controls can help companies embarking on compliance journeys to meet the necessary regulatory criteria. Administrators can easily decide which settings must have more restrictive access and which can be more lax. This can protect organizations from unnecessary internal risks or human error and ensure a smoother workflow across teams.

Granular policy controls can also take device security into account. For instance, customizing autolock time requirements allows the organization to provide safeguards for all accounts while simultaneously keeping the workflow uninterrupted for those employees who are not exposed to critical access and can have a longer autolock period. MFA helps provide safer access to sensitive data, especially for employees who may be working remotely or traveling to industry events.

Granular policy controls allow organizations to build a more comprehensive data security system and maintain a clear and flexible cybersecurity standard that takes employee productivity and designated roles into account.

Secure your business with NordPass

Granular policy controls join the long list of NordPass functions that help achieve a higher level of cybersecurity in your organization—here, by enhancing company-wide settings with more precise access controls. With NordPass, you can store sensitive company data in XChaCha20-encrypted storage and share it with colleagues without compromising it. NordPass helps you stay ahead of data breaches with features like the Data Breach Scanner and Password Health, alerting you if your domains or email addresses appear on the dark web and checking your saved credentials for compromised, outdated, reused, or weak passwords.

Put your organization’s cybersecurity first without putting your team’s productivity on the back burner. Find the right NordPass plan for your business and enhance your credential security today.

 

About NordPass
NordPass is developed by Nord Security, a company leading the global market of cybersecurity products.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

10 common types of data breaches that threaten your data security

Summary: Data breaches target system, employee, and vendor vulnerabilities. Strong authentication, encryption, and monitoring reduce risks and protect sensitive data.

Data breaches happen when criminals bypass network security measures and steal data that should remain private. When that happens, they can sell the data on the Dark Web or use it in identity theft attacks or targeted phishing campaigns.

Unfortunately, mitigating data breaches is far from simple. Attackers have many weapons, from phishing and ransomware to exploits, SQL injection, and insider threats. Every attack technique demands a response, as one loose end can leave an entire network exposed.

This article will introduce the critical types of data breaches and mitigation measures to secure your data.

Key takeaways

  • Data breaches are extremely costly. The average data breach costs $4.88 million, while reputational harm can be permanent. Mitigation measures are critically important.
  • Phishing is the most common data breach type. Phishers rely on human error and lack of knowledge to encourage unsafe behavior. Dark web scanning and employee training are effective responses.
  • Ransomware locks data and devices, enabling data theft by attackers. Companies need robust malware protection to avoid infection. File scanning is an essential mitigation measure.
  • Insider threats and physical theft can also expose data. Encrypt sensitive data to counter thieves and monitor user activity to detect malicious insiders.
  • Other data breach causes include SQL injection, man-in-the-middle attacks, supply chain attacks, cloud misconfiguration, and weak passwords. Each attack requires attention and mitigation actions.
  • Specialist data security tools can help you avoid costly breaches. Implement dark web scans to detect compromised data and use business VPNs to block infiltrators.

Phishing attacks: The most common type of data breach

Phishers use persuasion and deception to obtain confidential information from their victims, and they often succeed. According to Verizon’s 2024 Data Breach Report, 68% of data breaches start with human error.

All organizations are vulnerable to social engineering attacks. If your employees use email and share information online, phishing is a critical data breach risk.

The most common form of phishing involves using fake emails that resemble messages from trusted sources. Recipients download malware-infected attachments, which harvest data from their devices. Alternatively, they might click links to fake websites where phony data entry forms request sensitive data.

However, email phishing is not the only variety. Phishers might use SMS messages, phone calls, or video messages (vishing) to achieve their aims.

Whatever method attackers use, the outcome is similar. Victims unwittingly provide personal details, financial information, or login credentials. Criminals use that data to launch identity theft attacks or steal data after accessing private network assets.

Detecting phished credentials before attackers use them

Phishers are challenging adversaries, but companies can strengthen their defenses with dark web scanning.

Criminals use underground marketplaces on the Dark Web to sell stolen credentials and personal information. Criminal groups then use that data in targeted attacks, including large-scale data theft.

Dark web scanners monitor underground marketplaces and provide early warnings about data theft. Victims learn rapidly if their credentials are available for sale. This creates a critical window to reset passwords and secure user accounts before data breaches arise.

We recommend working with expert partners to track your data on the Dark Web. A Dark Web scan for leaked emails and credentials can identify risks and give you time to block phishing attacks.

In addition to dark web scanning, organizations must arrange employee training so employees can understand phishing risks. Most phishing attacks succeed due to human error. Regular training exercises refresh employee knowledge and help users identify risky attachments or links.

Enhance your network security & save up to 22%

Choose a yearly plan with NordLayer to boost performance at a discounted rate

 

Check our pricing

 

desktop

Ransomware cyber-attacks

Ransomware is malicious software that locks devices and encrypts data until victims pay a ransom.

Early ransomware attacks focused on financial gain, but this is changing. Attackers routinely steal data if the ransom is not paid. However, data loss is still possible when victims pay in full. The bottom line is that ransomware attacks always put customer data at risk.

For example, the US health company Change Healthcare suffered a ransomware attack in early 2024 by the ALPHV/Blackcat group. Attackers did not just extract a $22 million ransom payment; they stole 4TB of patient data in a so-called “exit scam.”

In total, around 190 million individuals were affected by a single malware infection. Companies need robust defensive measures to secure data and prevent similar incidents.

Reducing ransomware risk with automated malware detection

Best practices to prevent malware attacks include using up-to-date intrusion detection systems and malware scanners. Companies should encrypt confidential information and train staff to avoid phishing emails.

However, it pays to adopt a defense-in-depth with download protection. Companies rely on file transfers from internal and external sources. Any file could carry ransomware agents, making accurate file scanning essential across all devices and endpoints.

Scanning tools ensure malware protection by allowing harmless traffic and identifying high-risk files. A focused approach avoids false alarms, allowing security teams to concentrate on critical ransomware risks.

Insider threats

Insider threats come from individuals or groups inside your organization or partner companies. These data breach threats are hard to detect. Insiders tend to possess legitimate credentials and have high trust levels. If they choose to extract and sell data, security teams may not know until it is too late.

There are two main types of insider threats. The most common variety is accidental data exposure via human error. For instance. employees may expose personal records in public places or share data with outsiders.

Deliberate data theft is less common but potentially more destructive. Unhappy employees with access to business databases could extract client data for sale to competitors or sell the information to criminal collectives.

Businesses must guard against both insider threat types to fine-tune their data breach strategy. Effective security measures include:

  • Using Data Loss Prevention (DLP) tools. DLP monitors the status of critical data, logging access patterns and user actions. These tools can prevent unsafe transfers or request additional credentials to protect sensitive data.
  • Training employees. Staff need to know what data exposure means and how to safely handle information.
  • Managing privileges. Apply the principle of least privilege to limit access to data, and remove network access immediately when staff leave the organization.

Third-party breaches

Anyone with legitimate credentials can launch data theft attacks. This includes trusted third parties, who are often subject to supply chain attacks.

For example, the 2019 SolarWinds attack injected the Orion performance monitoring software with malware. When SolarWinds distributed Orion updates, the malicious code executed, exposing the data of 18,000 customers.

Attackers effectively turn third-party tools into backdoors. Until the supplier patches the vulnerability, criminals can extract data from compromised customers. In the SolarWinds case, hackers lurked for months on client networks, monitoring activity and stealing sensitive information.

Defending against third-party risks is tough. However, companies can manage risks with robust third-party security assessments, limiting vendor privileges, and integrating supply chain attacks into incident response plans.

Weak passwords

User credentials are a critical vulnerability when preventing data breaches. Breaches often happen when employees reuse the same password or rely on similar passwords for each account. In these cases, unauthorized individuals gain access by guessing access credentials—often based on stolen data.

However, criminals don’t need prior knowledge of user behavior. They can use brute force attacks to guess passwords. Alternatively, they might use phishing techniques to persuade users to enter their passwords into fake login portals.

There are many ways to work around password and user name login systems. Moreover, successful attackers appear trustworthy, creating a window of opportunity to extract sensitive information.

Robust network security measures are essential. Implement multi-factor authentication (MFA) for network access, which requires strong, regularly changed passwords. Threat detection systems should also monitor endpoints to detect multiple failed logins, which are often the signature of credential-stuffing attacks.

Unpatched vulnerabilities lead to preventable data breaches

Unpatched software and outdated systems are tempting targets for data thieves. The 2024 Verizon Data Breach Report found that exploits account for 14% of known data breaches. However, while that number sounds low, exploit attacks rose 180% in the previous year. As Verizon puts it, we are experiencing an “exploitation boom.”

Top causes of data breaches

The Equifax data breach shows how damaging exploits can be. In 2017, the credit rating giant suffered one of history’s largest breaches following an attack on outdated Apache Struts 2 servers. A simple vulnerability led to massive data breach costs, including a $425 million settlement and free credit monitoring for 150 million victims of the breach.

Keep confidential data safe by implementing a proactive patch management strategy. Automate patch delivery where possible, and audit updates to ensure internet-facing apps and devices are current. Threat intelligence can also help by alerting security teams to emerging exploits.

Cloud misconfigurations and data security failures

In today’s digital economy, about 60% of corporate data resides in the cloud. This makes cloud platforms common targets for data thieves. It also means that companies need secure cloud configurations to block unauthorized access.

For example, cloud storage buckets containing confidential information should never be directly accessible from the public internet. Encryption and segmentation should separate sensitive data from external actors, with robust access controls. However, misconfigurations can leave data buckets exposed.

Companies may secure data but forget about access management tools—making it easy to gain access and move between cloud resources. Sometimes, IT teams don’t remove obsolete cloud deployments, raising exploit risks.

Cloud security is vital. Implement MFA and attribute-based identity verification to block threat actors. Ensure critical data remains secure and isolated from the public internet, and encrypt data in transit and at rest on cloud platforms.

Physical device theft

All of the talk about exploits and ransomware attacks can be deceptive. While digital data breaches are common, physical security breaches are just as important. Companies can’t focus all of their energy on cybersecurity and forget about physical devices.

Physical data breaches involve unauthorized individuals gaining access to private network devices. Criminals might break into data centers or offices and steal devices or access applications on-site. However, data theft can also happen when employees lose work laptops or smartphones in public places.

This type of attack is common in the healthcare sector. In 2018, thieves stole the laptop of a Coplin Health Systems employee from their automobile. The device was not encrypted, allowing attackers to harvest data from 43,000 patients.

Nothing had changed by 2024, when criminals stole a TimeDoc employee’s laptop on public transport. While the device was password-protected, patient data was not encrypted.

What can you do to avoid similar incidents? Take robust security measures regarding using laptops outside work. Encrypt all sensitive data and require 2FA or MFA for work devices. That way, thieves usually won’t be able to access and sell client data.

SQL injection

SQL injection attacks target website code, allowing criminals to access application backends and confidential databases.

These types of data breaches rely on poor code management and data entry forms that fail to sanitize user inputs. Instead of blocking malicious SQL queries, forms allow attackers to bypass authentication processes or even retrieve all user records.

For example, in 2023 the ResumeLooters collective mounted SQL attacks on 65 employment websites, looting data for sale on Chinese Telegram groups. Both Sony and Marriott Hotels have also fallen victim to SQL injection in recent years, suffering significant data breaches.

Avoid similar breaches by improving your data security practices. Filter database inputs and separate databases from initial login portals. Ensure you sanitize every query to identify malicious inputs, and audit code regularly to ensure ongoing protection.

Man-in-the-Middle attacks

Our final cause of data breaches places attackers between victims and internet resources. Man-in-the-Middle (MitM) attacks intercept traffic without the victim’s knowledge, allowing them to monitor data transfers and conversations.

Attackers can track online activity, or use keyloggers to harvest login credentials and credit card numbers. They can also redirect users to fake websites that resemble trusted originals but actually contain malicious data entry forms.

MITM attacks are commonly associated with remote work. Attackers create fake Wi-Fi hotspots that seem legitimate and linked to an actual location. Connecting to these hotspots allows attackers to seize control, compromising data transfers from remote devices.

Cut Man-in-the-Middle attack risks with VPN protection

The good news about Man-in-the-Middle attacks is that encryption makes them much less effective. Attackers cannot easily understand encrypted traffic and tend to move on to other targets.

Virtual Private Network (VPN)

We advise using a Business VPN to encrypt web traffic at all times. Business VPNs encrypt traffic on cloud platforms and on-premises networks, while also protecting remote connections. This significantly cuts the risk of eavesdroppers using MitM techniques.

You can also strengthen security measures with Always On VPN functionality. This feature applies VPN coverage to all internet connections and cuts connectivity if the VPN drops. There are no vulnerable moments. Encryption applies consistently, across all network devices.

The real impact and cost of a data breach

The list above shows there are many ways to carry out data breaches. But what are the real-world costs of these techniques, and do they justify investing in advanced security measures? In our opinion, the stats below prove that the benefits of security easily outweigh the financial costs:

  • The average cost of a data breach in 2024 was $4.88 million—up 10% from 2023 [IBM]
  • In 2025, the average cost of an insider threat attack is $17.4 million, up from $16.2 million in 2023 [Ponemon]
  • Exploit attacks increased by 180% from 2023-2024 [Verizon]
  • Companies suffering data breaches see their sales growth fall by 3.2% and lose 1.1% of their market value [NBER]
  • 60% of consumers won’t do business with companies that suffer data breaches [Chain Store Age]

How NordLayer can help with data breach prevention

Data is everything in the modern economy, where businesses rise or fall based on their capacity to collect and analyze information. However, as data becomes more valuable, it also becomes a bigger target. Data breach risks require streamlined security solutions.

That’s where NordLayer comes in.

Our Business VPN encrypts network connections, shielding data from eavesdroppers and unauthorized infiltrators—cutting Man-in-the-Middle attack risks. Meanwhile, dark web scanning tools check underground marketplaces for compromised data, enabling proactive strategies before attacks occur.

NordLayer also helps defend against phishing and malware threats. DNS filtering tools block access to malicious websites, while Download Protection detects and prevents accidental malware downloads.

To mitigate insider risks, NordLayer enables network segmentation through Cloud Firewall features, which contain potential threats within isolated environments. Zero Trust policies ensure that only authorized users can access sensitive data.

Want to strengthen your data breach defenses? Contact the NordLayer team today. We’ll help you upgrade your data security and keep sensitive information safe.

 

About Nord Security
The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.