Sony Pixel Power calrec Sony

WannaCry Ransomware

22/05/2017

-- WannaCry Ransomware: Could it happen to your Media Production Company?

If you have any centralised data storage or computer resource, like network attached storage (NAS), you should be very concerned indeed about CyberCrime.

You can't have failed to miss the WannaCry Ransomware cyber-attack that has hit 150 countries, 1000's of computers and brought several hospitals in the UK to a halt (cancelled operations being amongst the issues). The temptation reading about the attack is simply to think, I keep my computers up to date so it couldn't happen to me. Or, my critical data is on a NAS device so I don't overly care if a PC gets compromised . Think again.

Cybercrime is on the rise and sooner or later we will all come under attack. Some attacks are generic, like WannaCry, but other attacks are highly targeted. And, whether we are in large companies like Sony Pictures with their well-publicised issues (https://en.wikipedia.org/wiki/Sony_Pictures_hack) or a small company like my own that had emails going from the CEO to the CFO asking for bank transfers to be carried out (they were of course fraudulent) we are all potential targets.

And here is a big issue: Media Production companies are particularly vulnerable because many of them keep all, or a significant portion, of their information assets in very few places. This is especially true where access is via unsecure protocols and procedures.

Take this scenario. Your storage provider was running a great deal for you if you just buy one huge NAS device. Not minding the future, you decided to consolidate the bulk of your information onto that single solution. A hacker compromises a PC with access to the NAS / SAN and that PC happens to have access to a large number of files. It could be a disgruntled employee, or a kid in a bedroom 2,000 miles away, but now the hacker runs an encrypt or destroy app. It doesn't need to take long. A targeted application doesn't need to encrypt every byte - just enough to make the files it touches unreadable. And to therefore lock them. Just for added measure it encrypts the well-known metadata controller of your storage device. And, now it destroys itself. Getting an unencrypt key is nigh-impossible. Hey presto. Your millions of dollars of assets are now under ransom, but for just one of those millions you might get an unlock key. If you are lucky .

I'm sure there are worse scenarios, but if you believe that this type of attack won't happen in the future then you are wrong. Look at Sony. It won't be a one-off. It's already happening now to other media production companies.

But strategies to defeat this type of hack are possible. Firstly, disaster recovery systems, replication, and back-up are key to being able to getting data back if this occurs. But a deep and clever hack attack may target those systems as well. Care must be taken not to backup or replicate the hacked data. Another challenge is that as a large media producer handling potentially Petabytes of data, backing up everything is sometimes , well let's say asynchronous . That is to say a subset of the data might not yet be backed up.

Another strategy is to keep your data behind a firewall. A very strong firewall. And then to only let out copies of data that are for (e.g.,) media editing, checking back in edited versions. This is the strategy promoted by object storage when it sits behind an object storage API.

Speaking to Francisco Ontoso, CTO of Object Matrix who provide MatrixStore an object storage solution for the media industries, he stated:

MatrixStore has been proven in a major real-world hack against a production company to have not only kept data safe during that attack but also to have tracked/audited that the data was safe. There simply wasn't a filesystem interface for the hackers to walk through and the security on the API meant the hackers would have had to have had access to a special set of keys. We call this Digital Content Governance. No system is full-proof but can digital content governance provides extra layers of security.

In your Digital Content Governance strategy the following considerations should be included:

Disaster recovery and business continuity via replication

Full protected audit of actions on the cluster (including reads, writes, updates and administration actions)

Lock-down media library access to API only, therefore restricting access from common protocols (e.g., filesystems) and protecting access to only those with security credentials

If Samba (SMB) is to be used mounting it externally avoids some of the security holes. Furthermore, the Samba instance can be given access to only a subset of the assets (e.g., not the full media-archive)

These and many other features are detailed in MatrixStore security datasheet.

The OM View: How to keep your data safe

Gone are the days when data sat disconnected to the rest of the organisation on tapes on shelves. They weren't that good anyway. Fires have burned down many an archive.

However, things are getting tougher. Too much cyber-crime has paid and the recent cyber attack will only make criminals and malicious individuals more targeted in the way they attack. You have a lot of wealth in your data. That data is vulnerable.

Avoid having access to large swathes of data from a single PC / login. It is a major security hole.

Think about your backup, disaster recovery and replication strategies with the hackers in mind. The hackers will compromise a PC at some-point. What could a determined hacker do from there?

Think about keeping data safe in purpose built storage. Exposing everything via a filesystem is extremely dangerous. Consider on-premises object storage for this. Get into the mind of the hacker when forming your digital content governance strategy.

Normally at this point it is common to sa
LINK: http://object-matrix.com/wannacry-ransomware/...
See more stories from matrixstore

Most recent headlines

13/03/2025

Craft Interview: Jamie McCombs, Audio Consultant / Sr. Audio

Sunday February 9 saw the annual return of the US' biggest television event, the Super Bowl LIX. Jamie McCombs, Fox Sports Audio Consultant / Sr. Audio capt...

13/03/2025

Craft Interview: Paul Sandweiss, Production Sound Mixer/Audio Director

On Sunday March 2, stars across the film industry gathered at the Dolby Theatre in Los Angeles for the 97th Academy Awards. Production Sound Mixer Paul Sandweis...

13/03/2025

Riedel To Showcase New StageLink Smart Edge Devices At 2025 NAB Show

WUPPERTAL, Germany Riedel Communications will feature its new StageLink family of smart edge devices, Smart Audio and Mixing Engine (SAME) and Virtual Smart Pan...

13/03/2025

TAG Video Systems and Harmonic Partner to Deliver Enhanced Real-Time Monitoring for VOS360 Streaming Workflows at the 2025 NAB Show

TAG Video Systems and Harmonic Partner to Deliver Enhanced Real-Time Monitoring ...

13/03/2025

DigitalGlue Invites NAB Visitors to Experience New Features in Managed Storage Platform that Empowers Video Teams to Scale Effortlessly

DigitalGlue Invites NAB Visitors to Experience New Features in Managed Storage P...

13/03/2025

FOR-A America Theme - Connecting the Present, Building the Future - Comes to Life at NAB 2025 Exhibition

FOR-A America Theme - Connecting the Present, Building the Future - Comes to Lif...

13/03/2025

Ajit Pai Appointed President of CTIA

CTIA, the wireless industry association, has named former FCC Chairman Aji Pai as its President and Chief Executive Officer, effective April 1. He replaces Mere...

13/03/2025

NAB: FCC's 60 Minutes Investigation Is Unconstitutional, Invalid

he National Association of Broadcasters is urging the FCC to end its investigation of that controversial CBS interview with Kamala Harris stating there is no ...

13/03/2025

CBS Miami to Launch AR Coverage of Weather and Sports for March Madness

MIAMI CBS News & Stations continues to expand its use of augmented and virtual reality technologies with the planned launch of an augmented reality/virtual real...

13/03/2025

Meet the co-founder and chief customer success & innovation officer

Srividhya Srinivasan, co-founder and chief customer success & innovation Officer at Amagi, tells TVBEurope how staying ahead of the latest trends is essential f...

13/03/2025

FCC Chairman Carr Launches Massive Deregulation Initiative

WASHINGTON FCC Chairman Brendan Carr announced that the agency has launched a massive, new deregulatory initiative that could potentially subject virtually all ...

13/03/2025

SDVI Integrates Rally With Spectra Vail

SUNNYVALE, Calif. SDVI has announced that it has integrated its Rally media supply chain management platform with the Spectra Vail multi-cloud data management s...

13/03/2025

FCC Approves Gray's Acquisition of KXLT

ATLANTA Gray Media has announced that the Federal Communications Commission (FCC) has granted a waiver of its local ownership rules to permit Gray Media to acqu...

13/03/2025

NAB Show 2025 Exhibitor Insight: Blackmagic Design

TV Tech: What do you anticipate will be the most significant technology trends at the 2025 NAB Show?...

13/03/2025

Watch Student Naomi Soleils Folk Pop Performance on The Voice

Watch Student Naomi Soleils Folk Pop Performance on The Voice The songwriting major sang Stars by Grace Potter and the Nocturnals during the blind auditions. ...

13/03/2025

2025-03-13

A new Apple Immersive concert experience, Metallica, is coming to Apple Vision Pro this Friday, March 14. Filmed in Mexico City during the sold-out second-year ...

13/03/2025

Italia 90 Republic of Ireland Squad, Riverdance, Cian Ducrot & B*Witched on Friday's Late Late Show

Here is your host, Patrick Kielty! Shake your Shamrocks, Patrick Kielty will be...

13/03/2025

RT Celebrating all things Irish this St. Patrick's Weekend

This St. Patrick's weekend, RT invites you to celebrate all things Irish, showcasing the very best of Irish sport, entertainment and live coverage from the...

13/03/2025

GTC 2025 - Announcements and Live Updates

What's next in AI is at GTC 2025. Not only the technology, but the people and ideas that are pushing AI forward - creating new opportunities, novel solution...

13/03/2025

T-Mobile, Thales and SIMPL ease IoT deployments with a flexible and secure connectivity solution

Facebook Twitter LinkedIn By combining T-Mobile's robust network, Thal...

13/03/2025

Relive the Magic as GeForce NOW Brings More Blizzard Gaming to the Cloud

Bundle up - GeForce NOW is bringing a flurry of Blizzard titles to its ever-expanding library. Prepare to weather epic gameplay in the cloud, tackling the genr...

13/03/2025

Gaming Goodness: NVIDIA Reveals Latest Neural Rendering and AI Advancements Supercharging Game Development at GDC 2025

AI is leveling up the world's most beloved games, as the latest advancements...

13/03/2025

Drop It Like It's Mod: Breathing New Life Into Classic Games With AI in NVIDIA RTX Remix

PC game modding is massive, with over 5 billion mods downloaded annually. Mods p...

12/03/2025

Como o Impacto Cultural e Financeiro da Indstria Musical Define Seu Sucesso em 2025

O Spotify acaba de lan ar o relat rio Loud & Clear deste ano, uma vis o transpar...

12/03/2025

Cmo el impacto cultural y financiero de la industria musical define su xito en 2025

Spotify acaba de presentar el informe Loud & Clear de este a o, una mirada trans...

12/03/2025

Nourish Mind, Body, and Soul This Ramadan With Spotify

Ramadan, a period of profound spiritual significance for Muslims worldwide, is a time for fasting, prayer, reflection, and community. Enrich your experience thi...

12/03/2025

How the Music Industry's Cultural and Financial Impact Define Its Success in 2025

Spotify has just unveiled this year's Loud & Clear report, a transparent loo...

12/03/2025

FAST now transcends back catalog content

More than 70% of FAST programming has been produced since 2010, according to new Gracenote report NEW YORK March 12, 2025 Gracenote, the content data busin...

12/03/2025

Viamedia Adopts ShowSeeker Pilot To Streamline Ad Workflows

GEONA, Nev. Independent digital and linear advertising rep firm Viamedia will adopt cloud-based ShowSeeker Pilot as its primary ad campaign and order management...

12/03/2025

Mediagenix Appoints Wael Yasin as Sales Director Central Europe

BRUSSELS Mediagenix has announced that Wael Yasin has joined the company as sales director Central Europe....

12/03/2025

Omdia: Global Online Consumer Expenditure to Hit $6.6 Trillion by 2029

LONDON A new study highlights opportunities for shoppable TV and the massive impact online consumer spending is having on the economy, with Omdia predicting tha...

12/03/2025

Comcast Technology Solutions Upgrades to Interra Systems BATON Version 9

CUPERTINO, Calif. Interra Systems has announced that Comcast Technology Solutions has integrated recent updates to BATON Version 9 into its operations....

12/03/2025

Nevion announces new 400G addition to its eMerge SDN media fabric offering

Nevion announces new 400G addition to its eMerge SDN media fabric offering Brie Clayton March 12, 2025 0 Comments High-capacity switch enhances existi...

12/03/2025

DaVinci Resolve Studio Delivers Cinematic Sound for Adam Bol

DaVinci Resolve Studio Delivers Cinematic Sound for Adam Bol Brie Clayton March 12, 2025 0 Comments Feature film relies on DaVinci Resolve Studio for ...

12/03/2025

SVT Leverages Ateliere Live to Pioneer 100% Software-Defined Production at Rally Sweden 2025

SVT Leverages Ateliere Live to Pioneer 100% Software-Defined Production at Rally...

12/03/2025

Berklee Awards Fenway Neighborhood Improvement Grant to Four Organizations

Berklee Awards Fenway Neighborhood Improvement Grant to Four Organizations A total of $17,000 will be distributed among the Boston-based nonprofits. By Madd...

12/03/2025

Offering a broad umbrella for IP standards

TVBEuropes Jenny Priestley sits down with new SMPTE president Richard Welsh to discuss his aims for the organisation going forward, its efforts to attract a you...

12/03/2025

Warner Bros Belgium takes a new approach to its post production workflows

The new process has significantly enhanced operational efficiencies, with automation freeing up creators to concentrate on higher value tasks By Matthew Corrig...

12/03/2025

Another VFX company suspends operations

Jellyfish Pictures, which has offices in London and Sheffield, said it has been battling hard in the face of strong headwinds over the last 12 months By Jenny ...

12/03/2025

Bitcentral to Showcase AI-Powered Innovations for Smarter...

Visit Booth #W2213 to Experience the Latest in AI-Driven Content Discovery and Workflow Automation Bitcentral, a leader in media workflow solutions, is set to ...

12/03/2025

Jeff Lilly Named WGN-TV Director Of Technology

CHICAGO Jeff Lilly has been named WGN-TV director of technology effective March 17, 2025, according to Ric Harris, WGN-TV vice president and general manager....

12/03/2025

Survey: Consumers Want More Shoppable TV Experiences

MOUNTAIN VIEW, Calif. A new study from LG Ad Solutions indicates that consumers want more features that would allow them to shop for products on the connected T...

12/03/2025

IP Showcase To Focus On IP, Broadcast Tech Convergence at 2025 NAB Show

BOTHELL, Wash. The Alliance for IP Media Solutions (AIMS), Advanced Media Workflow Association (AMWA) and the Video Services Forum (VSF) will once again present...

12/03/2025

Comcast Boosts Internet Speeds for More Than 20 Million Customers

PHILADELPHIA Comcast announced that it has upgraded Xfinity Internet speeds for more than 20 million customers for no additional cost....

12/03/2025

Create with Maxon: Cinema 4D Fundamentals Workshop - March 12-14

Create with Maxon: Cinema 4D Fundamentals Workshop - March 12-14 Brie Clayton March 11, 2025 0 Comments Makin' Waffles with Elly Wade During Marc...

12/03/2025

Ross Video Strengthens Cloud Leadership with Appointment of Aaron Tunnell

Ottawa, Canada - March 12, 2025 - Ross Video is pleased to announce the appointment of Aaron Tunnell as Business Development Director, Cloud Solutions, reinforc...

12/03/2025

VEON to release 4Q 2024 trading update on 20 March 2025

12 Mar 2025 VEON to release 4Q 2024 trading update on 20 March 2025 Dubai, 12 March 2025 - VEON Ltd. (NASDAQ: VEON), a global digital operator, today confirms ...

12/03/2025

Getting Set for the Winter Olympics: Inside SVT's Ongoing Software-Based Production Evolution

Getting set for the Winter Olympics: Inside SVT's ongoing software-based pro...

12/03/2025

Seamless SMPTE 2110: A Discussion on Making the Move to IP Less Painful

Seamless SMPTE 2110: A Discussion on Making the Move to IP Less Painful Leaders from Netflix, Monumental Sports & Entertainment, LinkedI, and Megapixel address ...