Skip to content

Perforce Introduces New Diagram App for Confluence Users with Data Egress Constraints

 

MINNEAPOLIS, December 2, 2025 — Perforce Software, the DevOps company for global teams seeking AI innovation at scale, announced the launch of a new app on the Atlassian Marketplace: Gliffy Diagrams | Zero Egress & Isolated Cloud-Ready.

The application is specifically designed for security-focused teams operating in Atlassian Cloud or those planning a seamless migration from Atlassian’s Data Center products.

Ensuring Zero Data Egress for Diagramming

Gliffy Zero Egress ensures that all diagram data remains strictly within the customer’s Atlassian environment. This crucial feature makes secure cloud diagramming possible for Atlassian users who have strict data control requirements and regulatory mandates.

The new app is also being developed for compatibility with Atlassian’s Isolated Cloud product suite, which is scheduled for release in 2026.

[Image of Zero Egress security model diagram]

“With end of life for Atlassian’s Data Center products coming in 2029, it’s more important than ever for our Data Center customers to be able to move to the Cloud without compromising on security and compliance. Our new app empowers teams to continue diagramming securely in the Cloud while meeting compliance standards.”

— Samie Delebo, Head of Product & GTM, Gliffy at Perforce Software

Seamless Transition for Existing Gliffy Users

The transition to the new app will be frictionless for current Gliffy users, requiring no additional training or onboarding. The Gliffy Diagrams | Zero Egress application features the same interface as the standard Gliffy Diagrams, with minor variations in advanced features designed specifically to prevent data from leaving the customer’s Atlassian environment.

Availability

Gliffy Diagrams | Zero Egress & Isolated Cloud-Ready is available now on the Atlassian Marketplace. To learn more about how this solution can support your secure cloud migration, visit the Gliffy website.

About Perforce
The best run DevOps teams in the world choose Perforce. Perforce products are purpose-built to develop, build and maintain high-stakes applications. Companies can finally manage complexity, achieve speed without compromise, improve security and compliance, and run their DevOps toolchains with full integrity. With a global footprint spanning more than 80 countries and including over 75% of the Fortune 100, Perforce is trusted by the world’s leading brands to deliver solutions to even the toughest challenges. Accelerate technology delivery, with no shortcuts.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

CMDB Software & Tools: Definition, Functions, Examples

2025-12-04   A Configuration Management Database (CMDB) is the data foundation for ITSM, providing a centralized “source of context” by mapping relationships and dependencies between all IT resources (Configuration Items/CIs). CMDB software uses automated discovery, consolidation, and service modeling to accelerate incident resolution (MTTR), improve change risk assessment, and ensure compliance (ISO 27001, NIS2).

Continue reading

How to Use a Passkey for Your Coinbase Account?

It’s a question everyone has thought about while using a public hotspot or a friend’s network. The short, straightforward answer is yes, in many cases, they can see a surprising amount of your activity. This isn’t a sci-fi scenario; it’s a technical reality based on how network communication and router logging function.

While modern encryption (like HTTPS) has made wholesale surveillance significantly harder, it hasn’t completely blocked visibility for the network owner. They still control the gateway between your device and the open internet, giving them a privileged view of your traffic’s metadata. We’ll examine the technical details of router logs, DNS requests, and the limits of HTTPS encryption to show you exactly what they can capture and the reliable steps you can take to truly control your data.

What Exactly Can a Wi-Fi Owner See?

The router is the central chokepoint. If logging is enabled (common in business or public settings), the owner can capture your traffic’s metadata—the information about the data, rather than the data itself.

Visibility Comparison

What a Wi-Fi owner can see What a Wi-Fi owner cannot see
Websites visited (full domain names via DNS) The content of secure (HTTPS) pages
Time and duration of visits Your login credentials or passwords
Specific web pages on unencrypted (HTTP) sites Search queries on secure search engines (e.g., Google)
Data usage and device information (MAC address) Your activity within secure websites (e.g., banking transactions)

Specific Data Points Captured (Assuming Logging)

  • Websites visited (Domain Names): The network owner sees the full domain name (e.g., www.example.com) via DNS lookups, even if the session is encrypted.
  • Time and duration of visits: Router logs record the exact connection time and how long the session was active, which can reveal patterns of activity.
  • Data usage: The total volume of data (megabytes/gigabytes) your device uploads and downloads is monitored.
  • Specific web pages on unencrypted (HTTP) sites: If you visit any non-HTTPS site, the owner can view the full URL path, including any page or search term sent without encryption.

The Limits of Privacy: Does Incognito Mode Help?

When you use a private browsing window, you achieve local anonymity: the browser deletes your history, cookies, and temporary site data from your phone. Incognito mode is a courtesy for the next person who uses your physical device.

However, the moment your device sends data packets onto the internet via Wi-Fi, your browser mode has zero effect on the network owner’s hardware. The traffic still exits through their router, where the logs live.

Warning: The answer to “Does private browsing show up on Wi-Fi?” is yes. The connection metadata (domain visited, time, data volume) is visible to the Wi-Fi owner, just like any other connection. Incognito mode is a local cleanup tool, not a stealth engine for your internet activity.

Who Else Sees Your Search History?

The Wi-Fi owner is just one entity. You should be aware of other major players actively logging your online journey:

  • Your Internet Service Provider (ISP): They are the primary gatekeepers. They see all domain names you visit and may legally be required to log this history. Some sell anonymized browsing history to advertisers.
  • Search Engines: If you are logged into accounts like Google, they record every search query to build detailed profiles for ad targeting. (Note: The connection to Google.com is visible, but the specific search text is protected by HTTPS.)
  • Government Institutions: In many countries, agencies can compel your ISP to hand over connection logs via warrants or court orders.
  • Cybercriminals: On unsecured or public Wi-Fi, hackers can perform packet sniffing or Man-in-the-Middle (MITM) attacks to directly intercept sensitive data packets looking for passwords and financial details.

How to Protect Your Internet History When Using Wi-Fi

To take control of your digital footprint and hide your browsing destination from network administrators, you need proactive steps:

1. Use a Virtual Private Network (VPN)

This is the single most effective action. A VPN encrypts all traffic leaving your phone before it reaches the router. The network owner only sees an encrypted, indecipherable connection to a single VPN server, rather than the multiple websites you’re visiting.

2. Always Verify HTTPS Encryption (The Lock Icon)

HTTPS (the “S” for secure) ensures that even if traffic is intercepted, the data you send (like messages and form submissions) is scrambled. Always look for the padlock icon in your browser’s address bar. Assume everything you do on an HTTP-only page is visible to the Wi-Fi owner.

3. Use a Password Manager (Data Protection)

While a VPN hides your destination, a password manager is the critical layer defending your online accounts. It ensures that your core login credentials are unique, complex, and safe inside an encrypted vault, protecting you even if you accidentally enter details on a malicious phishing page.

Final Takeaways: Taking Control of Your Digital Footprint

Assume the domain names you visit and your high-level internet history are visible to the network owner. Relying on simple private browsing won’t change this fundamental reality.

  • Your passwords and private conversations are protected only by HTTPS encryption on secure sites.
  • Public Wi-Fi networks log more data and are highly susceptible to external snoopers.
  • You must manage your own visibility using a VPN.

NordPass Features that Put You in Control:

  • Zero-knowledge architecture: Ensures that only you can access the information stored in your vault.
  • Password Health: Quickly identifies weak, reused, or old passwords across your accounts, severely reducing the risk of a single point of failure.
  • Data Breach Scanner: Provides real-time alerts if any of your credentials appear in a data breach, allowing you to react immediately and change passwords before a threat actor can use them.

About NordPass
NordPass is developed by Nord Security, a company leading the global market of cybersecurity products.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Securing SSH: Advanced Best Practices for Remote Access and Zero Trust

Secure Socket Shell (SSH) is the global standard for remote server management and confidential system-to-system communication. It relies on strong encryption and authentication to protect critical infrastructure. However, the protocol is only as secure as its implementation. Default configurations, simple password use, and unmanaged SSH keys create serious vulnerabilities that attackers actively seek. This guide moves past the basics, focusing purely on the non-negotiable, advanced practices required for a layered, Zero Trust environment.

SSH Best Practices at a Glance

  • Ditch passwords for keys: Immediately disable password logins and enforce key-based authentication to stop easy brute-force attacks.
  • Always use two-factor authentication (2FA): Make 2FA mandatory to protect against compromised public keys or workstation breaches.
  • Audit your key sprawl: Regularly review and revoke all old or forgotten private-key access to eliminate silent security holes.
  • Shield your servers: Change the default port (22) and stop exposing your SSH access to the public internet entirely.

Understanding Secure Socket Shell (SSH)

SSH is a cryptographic network protocol that ensures secure communication. It uses strong algorithms like Advanced Encryption Standard (AES) to protect data during remote logins. While port forwarding offers convenient access (e.g., accessing an office desktop from home), these channels must be closely monitored to prevent unauthorized access.

Why is SSH Indispensable?

SSH solves security and operational challenges simultaneously:

  • It creates a secure, encrypted path through firewalls to systems like virtual machines, eliminating the need for risky, direct exposure to the public internet.
  • It provides robust authentication for secure remote command execution and file transfers.
  • It enforces access control and authentication methods for sensitive tasks, such as changes after a root login.

Advantages of Secure Socket Shell

  • Secure System Administration: Provides strong access control for managing user accounts, permissions, and web servers remotely.
  • Secure File Transfers: Encrypts data in transit to prevent IP spoofing or data theft.
  • Automation with SSH Keys: Enables Single Sign-On (SSO) for automated processes using cryptographically secure key-based authentication.
  • Cryptographic Authentication: Ensures the identity of the connecting user, a critical defense against unauthorized access.
  • Automatic Session Encryption: Scrambles all data immediately upon session establishment, protecting against eavesdropping.
  • Speed: Optimized using multiplexing to allow multiple data streams over a single TCP connection, reducing overhead.

Common Vulnerabilities of SSH Implementation

A strong protocol requires disciplined implementation. Be aware of these key failure points:

  • Weak Authentication: Sticking to simple password authentication invites automated brute-force attacks.
  • Outdated SSH Versions: Running old software exposes you to publicly known, easily exploitable compromises.
  • Misconfigured Settings: Allowing direct root login or keeping password access enabled undermines security immediately.
  • Compromised SSH Keys: Unmanaged or unrevoked private keys create a silent, persistent access risk for threat actors.
  • Poor Encryption: Defaulting to weaker, older encryption algorithms or short key lengths makes sophisticated attacks easier.
  • Insider Threats: Slow termination of access for contractors or departing staff creates internal security risks.

Advanced SSH Security Practices for Defense

To achieve true SSH security, layer these non-negotiable controls:

1. Disable Password Authentication (Enforce Keys)

Completely turn off password authentication. Enforce key-based authentication using public key infrastructure. Keys are cryptographically complex and eliminate the majority of automated brute-force attacks, simplifying your fundamental SSH security.

2. Enforce Two-Factor Authentication (2FA)

2FA is your essential security blanket, even for key-based access. It requires a second rotating code from a separate device (something you are or something else you have). This means that if a private key is compromised, the attacker still cannot gain access without the time-sensitive code.

3. Change the Default SSH Port and Hide Access

Change the default TCP port 22 immediately to a non-standard number. While this is primarily security through obscurity, it instantly stops the vast majority of simple, untargeted automated scans, cleaning your logs and allowing you to spot truly targeted threats faster.

4. Implement Principle of Least Privilege and Network Control

Restrict SSH access only to the necessary users using configuration directives like “AllowUsers.” More effectively, use a Cloud LAN solution to restrict access based on user identity and connections originating only from your trusted virtual network IP range. This shields your access from the public internet entirely.

5. Regularly Review and Revoke Keys (Key Hygiene)

Keys do not expire automatically and are a persistent risk. Regularly audit the “authorized_keys” file on all SSH servers to ensure every public key belongs to an active user. This prevents forgotten keys from serving as persistent, unauthorized access points for departing personnel or contractors.

How NordLayer Enhances Your SSH Security (Zero Trust)

Manually enforcing all these best practices is complex. A modern Zero Trust Network Access (ZTNA) solution like NordLayer automates this management and provides layered protection.

  • Cloud LAN Integration: Eliminates exposing your server’s public IP address. It creates a secure virtual network where SSH access must originate from your trusted virtual IP range, instantly shielding your systems from the public internet.
  • Dual-Layer Encryption: While SSH provides encryption, NordLayer adds another layer right at the network level, encrypting all your data before it leaves the user’s device (using AES-256 and ChaCha20).
  • Web Protection: Acts as a silent guardian, automatically blocking harmful websites and preventing malware from infecting endpoints. This substantially lowers the risk of a compromised device being used to initiate unauthorized SSH activity.

NordLayer handles the heavy lifting, providing continuous verification, network encryption, and centralized access controls necessary for modern SSH security.

About Nord Security
The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

About NordLayer
NordLayer is an adaptive network access security solution for modern businesses – from the world’s most trusted cybersecurity brand, Nord Security.

The web has become a chaotic space where safety and trust have been compromised by cybercrime and data protection issues. Therefore, our team has a global mission to shape a more trusted and peaceful online future for people everywhere.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Women of GREYCORTEX: Different Paths, One Purpose in Cybersecurity

 

When people envision cybersecurity, they often default to a highly technical, male-dominated image. The reality, particularly at events like the recent Ženy v kyber (Women in Cyber) conference in the Czech Republic, paints a different picture—one focused on stories, curiosity, and the determination to enter a new field.

We were proud supporters of the event, as diversity is a core principle at GREYCORTEX. Approximately one-third of our team are women, playing vital roles across every department: development, product, marketing, sales, and technical support. Each of them followed a unique trajectory into cybersecurity. Let’s explore what brought them here.

Curiosity, Coincidence, and Determination

The journey into cybersecurity is rarely linear. Some arrive naturally, while others find their way almost by chance.

  • Minh, a developer, was drawn by the field’s broad scope—from mathematics and cryptography to programming and data analysis. “What drew me most,” she says, “was that the work has real impact, even on a national level. And, of course, I liked the idea of using my analytical mind to fight the bad guys.”

  • Aja, our marketing manager, started by coincidence after writing about tech companies during parental leave. “When they later opened a marketing role, I didn’t hesitate,” she laughs.

Regardless of their starting point, the consensus is that the field’s fast pace and energy keep them engaged. As Monika, our Country Manager for Poland, notes: “I like people, and I like when things happen, and in cybersecurity, things are always happening.”

Cybersecurity is not exclusively reserved for people with traditional technical degrees. What truly counts is persistence, curiosity, and a dedication to lifelong learning.

Irina from our marketing team shared, “The beginning was tough. I had to dive into the tools and really understand how cybersecurity works. I’m still learning every day, but that’s exactly what makes it exciting.”

Breaking Down Stereotypes

Though outdated stereotypes of cybersecurity being solely a “men’s field” are fading, many women still encounter them in professional and everyday situations.

  • Bára, a security analyst, recalled an instance when a shop assistant only accepted her complaint about a faulty router after she meticulously listed every technical test she had already performed on the device.

  • Saša from the product team experienced similar subtle bias at university, which, rather than discouraging her, served as a strong motivator: “Those moments motivated me to keep improving, to be consistent, and confident in my work.”

From the HR perspective, there is growing awareness of the value women bring. Ira from HR states, “I often hear that teams want more women because they bring a different way of thinking and communicating.”

At GREYCORTEX, success is measured by results and expertise, not background or gender. Women on our team lead major projects, design products, analyze network traffic, and run international business operations. They find respect, equal opportunities, and space to grow.

The Human Side of Cybersecurity

When asked what draws people to the field, conference participants cited remarkably similar answers: constant learning, variety, and the feeling that their work has a tangible, real-world impact.

What resonated most was the sense of community. Behind the complex systems are people who share knowledge and support each other, underscoring that security is fundamentally about collaboration and trust.

Ira from HR summarizes this well: “HR in IT is the ideal mix for me. You need to understand technology, but also know how to help teams grow and work together.”

Supporting Women in Cybersecurity

The message from the confident, curious, and inspiring women of GREYCORTEX to anyone considering the field is clear:

If cybersecurity interests you, go for it. And choose a company where the people inspire you and the environment feels right.

At GREYCORTEX, we prove every day that diverse perspectives make teams stronger, more creative, and ready for any challenge ahead.

About GREYCORTEX
GREYCORTEX uses advanced artificial intelligence, machine learning, and data mining methods to help organizations make their IT operations secure and reliable.

MENDEL, GREYCORTEX’s network traffic analysis solution, helps corporations, governments, and the critical infrastructure sector protect their futures by detecting cyber threats to sensitive data, networks, trade secrets, and reputations, which other network security products miss.

MENDEL is based on 10 years of extensive academic research and is designed using the same technology which was successful in four US-based NIST Challenges.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Iran’s MuddyWater targets critical infrastructure in Israel and Egypt, masquerades as Snake game – ESET Research discovers

  • ESET researchers have identified new MuddyWater (Iran-aligned cyberespionage group) activity primarily targeting critical infrastructure organizations in Israel, with one confirmed target in Egypt.
  • The group used more advanced techniques to deploy MuddyViper, a new backdoor, by using a loader (Fooder) that reflectively loads it into memory and executes it.
  • ESET provides technical analyses of the tools used in this campaign.

MONTREAL, BRATISLAVADecember 2, 2025 — ESET researchers have identified new MuddyWater activity primarily targeting organizations in Israel, with one confirmed target in Egypt. The victims in Israel were in the technology, engineering, manufacturing, local government, and educational sectors. MuddyWater, also referred to as Mango Sandstorm or TA450, is an Iran-aligned cyberespionage group known for its persistent targeting of government and critical infrastructure sectors, often leveraging custom malware and publicly available tools, and has links to the Ministry of Intelligence and National Security of Iran. In this campaign, the attackers deployed a set of previously undocumented, custom tools with the objective of improving defense evasion and persistence. New backdoor MuddyViper enables the attackers to collect system information, execute files and shell commands, transfer files, and exfiltrate Windows login credentials and browser data. The campaign leverages additional credential stealers. Among these tools is Fooder, a custom loader that masquerades as the classic Snake game.

In this campaign, initial access is typically achieved through spearphishing emails, often containing PDF attachments that link to installers for remote monitoring and management (RMM) software hosted on free file-sharing platforms such as OneHub, Egnyte, or Mega. These links lead to the download of tools including Atera, Level, PDQ, and SimpleHelp. Among the tools deployed by MuddyWater operators is also the VAX One backdoor, named after the legitimate software which it impersonates: Veeam, AnyDesk, Xerox, and the OneDrive updater service.

The group’s continued reliance on this familiar playbook makes its activity relatively easy to detect and block. However, in this case, the group also used more advanced techniques to deploy MuddyViper, a new backdoor, by using a loader (Fooder) that reflectively loads MuddyViper into memory and executes it. Several versions of Fooder masquerade as the classic Snake game, hence the designation, MuddyViper. Another notable characteristic of Fooder is its frequent use of a custom delay function that implements the core logic of the Snake game, combined with “Sleep” API calls. These features are intended to delay execution in an attempt to hide malicious behavior from automated analysis systems. Additionally, MuddyWater developers adopted CNG, the next-generation Windows cryptographic API, which is unique for Iran-aligned groups and somewhat atypical across the broader threat landscape. During this campaign, the operators deliberately avoided hands-on-keyboard interactive sessions, which is a historically noisy technique often characterized by mistyped commands. Thus, while some components remain noisy and easily detected, as is typical for MuddyWater, overall this campaign shows signs of technical evolution – increased precision, strategic targeting, and a more advanced toolset.

The post-compromise toolset also includes multiple credential stealers: CE-Notes, which targets Chromium-based browsers; LP-Notes, which stages and verifies stolen credentials; and Blub, which steals login data from Chrome, Edge, Firefox, and Opera browsers.

MuddyWater was first introduced to the public in 2017 by Unit 42, whose description of the group’s activity is consistent with ESET’s profiling – a focus on cyberespionage, the use of malicious documents as attachments designed to prompt users to enable macros and bypass security controls, and primarily targeting entities located in the Middle East.

Notable past activities include Operation Quicksand (2020), a cyberespionage campaign targeting Israeli government entities and telecommunications organizations, which exemplifies the group’s evolution from basic phishing tactics to more advanced, multistage operations; and a campaign targeting political groups and organizations in Türkiye, demonstrating the group’s geopolitical focus, its ability to adapt social engineering tactics to local contexts, and reliance on modular malware and flexible C&C infrastructure.

ESET has documented multiple campaigns attributed to MuddyWater that highlight the group’s evolving toolset and shifting operational focus. In March and April 2023, MuddyWater targeted an unidentified victim in Saudi Arabia, and the group conducted a campaign in January and February 2025 that was notable for its operational overlap with Lyceum (an OilRig subgroup). This cooperation suggests that MuddyWater may be acting as an initial access broker for other Iran-aligned groups.

For a more detailed analysis of the latest MuddyWater campaign, check out the latest ESET Research blogpost “MuddyWater: Snakes by the riverbank” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

Overview of Fooder loading MuddyViper or other supported payloads


About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.