<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Hiền Nguyễn Đức, Author at Deliver Intelligence - Dibiz JSC</title>
	<atom:link href="https://dibiz.vn/en/author/hiennd/feed/" rel="self" type="application/rss+xml" />
	<link>https://dibiz.vn/en/author/hiennd/</link>
	<description></description>
	<lastBuildDate>Thu, 19 Jun 2025 17:05:25 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://dibiz.vn/wp-content/uploads/2025/06/cropped-cropped-cropped-cropped-3-1-32x32.png</url>
	<title>Hiền Nguyễn Đức, Author at Deliver Intelligence - Dibiz JSC</title>
	<link>https://dibiz.vn/en/author/hiennd/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Improve enterprise MTTR, visibility, and control</title>
		<link>https://dibiz.vn/en/improve-enterprise-mttr-visibility-and-control/</link>
		
		<dc:creator><![CDATA[Hiền Nguyễn Đức]]></dc:creator>
		<pubDate>Wed, 09 Oct 2024 09:06:08 +0000</pubDate>
				<guid isPermaLink="false">https://dbiz.vn/?p=990029</guid>

					<description><![CDATA[<p>Enterprise hybrid IT environments are complex beasts, plagued by blind spots, siloed data, and slow incident resolution. Enterprise organizations need a comprehensive solution that provides hybrid observability within a single pane of glass to reduce MTTR/MTTI, eliminate those blind spots, correlate insights across their entire IT infrastructure, and achieve more granular control. LogicMonitor goes beyond...</p>
<p>The post <a href="https://dibiz.vn/en/improve-enterprise-mttr-visibility-and-control/">Improve enterprise MTTR, visibility, and control</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="vgblk-rw-wrapper limit-wrapper">Enterprise hybrid IT environments are complex beasts, plagued by blind spots, siloed data, and slow incident resolution. Enterprise organizations need a comprehensive solution that provides hybrid observability within a single pane of glass to reduce MTTR/MTTI, eliminate those blind spots, correlate insights across their entire IT infrastructure, and achieve more granular control.</p>
<p>LogicMonitor goes beyond basic monitoring to deliver exactly that. LogicMonitor’s LM Envision platform delivers AI-powered insights that help IT teams accelerate troubleshooting, improve efficiency, and take a more proactive approach to monitoring.</p>
<p>Our latest innovations further extend this vision:</p>
<ul class="wp-block-list">
<li><strong>Log Analysis</strong>: Empower your team with AI-guided insights for faster incident resolution.</li>
<li><strong><a href="https://www.logicmonitor.com/blog/snmp-traps">SNMP Traps</a> as Logs</strong>: Extend hybrid visibility into legacy network technology to streamline troubleshooting.</li>
<li><strong>Role-based access control (RBAC) for Modules, Security Settings, and Recommendations</strong>: Enhance control and reduce administrative burden.</li>
</ul>
<p>With LM Envision, you’re not just reacting to problems; you’re preventing them.</p>
<h2 id="h-log-analysis-ai-powered-troubleshooting-for-level-1-support" class="wp-block-heading">Log Analysis: AI-powered troubleshooting for Level 1 support</h2>
<p>Log data is a goldmine of insights, but without AI it is nearly impossible to mine all that data and find the insightful gold nuggets. Our new Log Analysis feature harnesses the power of natural language processing (NLP) and other machine learning (ML) techniques to create meaning from the vast troves of unstructured data that can be ingested into <a href="https://www.logicmonitor.com/logs">LM Logs</a>, and expedite troubleshooting across the entire IT stack by surfacing and sorting problematic logs in a simple visual interface.</p>
<p>Log Analysis automatically sorts through thousands of logs and leverages AI to plot error codes, negative phrases, or keywords and extract numeric values from text. In the past, engineers had to manually create queries in a search bar with advanced parsing or regex capabilities.  Log Analysis automates this previously manual and time-consuming process for users of all skill levels.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-rt.googleusercontent.com/docsz/AD_4nXeoOG__O76BrFEQ7wX-W608Bti-YxcsK6-70iIz4r51z1NuL9OJDNlGph59m3J_Gy44r5JM71IGsXGyOU9P02AV1arZtejX_aM52R-r6mtivn2IV1-7MRZZcOcV3wmV_ryMWXgXXXeVUqdn564WawIuhBBH?key=ZjhWWw2OVDr_2fab2ecPTw" alt="" /></figure>
<p>Log Analysis uses visual diagrams to quickly surface problematic logs.</p>
<p>Within Log Analysis, logs are now grouped into intuitive visual diagrams based on Sentiment, Level, Keyword, Exception, Class, and Resource. The Sentiment diagram allows you to view logs weighted by severity level on a scale of 1 to 5 (with 5 being the most critical) to help you prioritize and troubleshoot faster. The Keyword diagram groups logs by negative phrases like “error,” “failed,” or “critical” in a single view to help customers quickly identify issues and facilitate faster root cause analysis (RCA).</p>
<p>The intuitive visual interface allows for easy customization of specific log phrases and associated severity, so you can incorporate your own policies, dimensions, or user-defined keywords to tailor the groupings and sentiment scores for your specific environment.</p>
<p>Navigate seamlessly to Log Analysis from the Logs, Alerts, or <a href="https://www.logicmonitor.com/support/resource-explorer">Resource Explorer</a> pages within LM Envision, and effortlessly exclude a term, drill down for details, and view log summaries with timestamps and frequency—all just a few clicks away. Log Analysis also works hand-in-hand with <a href="https://www.logicmonitor.com/support/log-anomaly-detection">Log Anomaly Detection</a>. Once an alert triggers, simply launch a Log Analysis session – without leaving the alert info screen or writing a complex log query – to pinpoint the problematic logs and identify the negative keywords and errors that contributed to the alert. Log Analysis will then apply machine learning and layered intelligence to scan the logs associated with the alert and serve up the most problematic logs in a simple visual diagram.</p>
<h3 id="h-key-benefits-nbsp" class="wp-block-heading">Key benefits:</h3>
<ul class="wp-block-list">
<li><strong>Empower Level 1 support:</strong> Enable less experienced team members to quickly identify and resolve issues with AI-guided troubleshooting, democratizing log insights.</li>
<li><strong>Accelerate root cause analysis:</strong> Pinpoint the source of problems faster with automatic log categorization, severity scoring, and the extraction of numeric values from text.</li>
<li><strong>Reduce Mean Time to Repair (MTTR):</strong> Get systems back up and running faster with actionable insights at your fingertips, presented in visual diagrams and summaries.</li>
<li><strong>Optimize efficiency:</strong> Free up your senior engineers for more strategic work by automating routine log analysis, improving Enterprise efficiency, and lowering administrative costs.</li>
</ul>
<p>To learn more about Log Analysis, watch a quick demo video.</p>
<div id="wistia-responsive-embed-block_29d1e10faa69538de42267f4e97437c0" class="wistia-responsive-embed">
<div class="container wistia-responsive-embed__wrap">
<div class="row wistia-responsive-embed__card">
<div class="col-12">
<div class="wistia-responsive-embed__embed">
<div class="wistia_responsive_padding">
<div class="wistia_responsive_wrapper">
<div class="wistia_video_foam_dummy" data-source-container-id="wistia-v00h5f7bcu-1"></div>
<div id="wistia-v00h5f7bcu-1" class="wistia_embed wistia_async_v00h5f7bcu seo=true videoFoam=true wistia_embed_initialized">
<div id="wistia_chrome_37" class="w-chrome notranslate" tabindex="-1">
<div id="wistia_grid_102_wrapper">
<div id="wistia_grid_102_above"></div>
<div id="wistia_grid_102_main">
<div id="wistia_grid_102_behind"></div>
<div id="wistia_grid_102_center">
<div class="w-video-wrapper w-css-reset"></div>
<div class="w-ui-container">
<div id="w-vulcan-v2-101" class="w-vulcan-v2 w-css-reset">
<div class="w-vulcan--background w-css-reset">
<div class="w-css-reset" data-handle="statusBar"></div>
<div class="w-css-reset" data-handle="backgroundFocus"></div>
<div class="w-css-reset" data-handle="thumbnail">
<div>
<div class="w-css-reset"><img decoding="async" class="w-css-reset" src="https://fast.wistia.com/embed/medias/v00h5f7bcu/swatch" srcset="" alt="Video Thumbnail" aria-hidden="true" /></div>
<div class="w-css-reset"><img decoding="async" class="w-css-reset" src="https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=960x467" srcset="https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=640x311 320w, https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=640x311 640w, https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=960x467 960w, https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=1280x622 1280w, https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=1280x622 1920w, https://embed-ssl.wistia.com/deliveries/d678644302c3b33786e661e0bd6b32b7b2868b86.webp?image_crop_resized=1280x622 3840w" alt="Video Thumbnail" /></div>
</div>
</div>
</div>
<div class="w-vulcan--aria-live w-css-reset" aria-live="polite" aria-atomic="true"></div>
<div class="w-vulcan-overlays-table w-css-reset">
<div class="w-vulcan-overlays--left w-css-reset">
<div class="w-css-reset"></div>
</div>
<div class="w-vulcan-overlays--center w-css-reset">
<div class="w-css-reset">
<div class="w-css-reset" data-handle="bigPlayButton">
<div class="w-bpb-wrapper w-css-reset w-css-reset-tree">
<div></div>
<div></div>
</div>
</div>
<div class="w-css-reset" data-handle="clickForSoundButton"></div>
<div class="w-css-reset" data-handle="playPauseNotifier"></div>
<div class="w-css-reset" data-handle="captions"></div>
<div class="w-css-reset" data-handle="playPauseLoading">
<div class="w-css-reset w-css-reset-tree"></div>
</div>
<div class="w-css-reset" data-handle="transcript">
<div class="w-css-reset"></div>
</div>
</div>
</div>
<div class="w-vulcan-overlays--right w-css-reset">
<div class="w-css-reset"></div>
</div>
</div>
<div class="w-bottom-bar w-css-reset">
<div class="w-bottom-bar-lower w-css-reset">
<div>
<div></div>
</div>
<div class="w-bottom-bar-left w-css-reset">
<div class="w-bottom-bar-left-inner w-css-reset">
<div class="w-css-reset" data-handle="smallPlayButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="smallPlayButton_icon_wrapper">
<div>
<div>
<div></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="w-bottom-bar-middle w-css-reset">
<div class="w-bottom-bar-middle-inner w-css-reset">
<div class="w-css-reset" data-handle="playbar">
<div class="w-playbar-wrapper w-css-reset w-css-reset-tree">
<div class="w-playbar__time">5:07</div>
<div>
<div tabindex="0" role="slider" aria-label="Playbar" aria-orientation="horizontal" aria-valuemax="307.015" aria-valuemin="0" aria-valuenow="0" aria-valuetext="0 seconds">
<p>&nbsp;</p>
<div></div>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="w-bottom-bar-right w-css-reset">
<div class="w-bottom-bar-right-inner-anchor w-css-reset">
<div class="w-bottom-bar-right-inner w-css-reset">
<div class="w-css-reset" data-handle="captionsButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="captionsButton_icon_wrapper"></div>
</div>
</div>
<div class="w-css-reset" data-handle="volumeButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="volumeButton_icon_wrapper"></div>
</div>
</div>
<div class="w-css-reset" data-handle="settingsButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="settingsButton_icon_wrapper"></div>
</div>
</div>
<div class="w-css-reset" data-handle="fullscreenControl">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="fullscreenControl_icon_wrapper"></div>
</div>
</div>
</div>
</div>
<div class="w-wistia-logo w-css-reset">
<div class="w-css-reset" data-handle="wistiaLogo">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="wistiaLogo_icon_wrapper"></div>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="w-foreground w-css-reset">
<div class="w-css-reset" data-handle="contextMenu"></div>
<div class="w-css-reset" data-handle="loadingHourglass"></div>
<div class="w-css-reset" data-handle="focusOutline"></div>
</div>
</div>
</div>
</div>
<div id="wistia_grid_102_top_inside">
<div id="wistia_grid_102_top"></div>
</div>
<div id="wistia_grid_102_bottom_inside">
<div id="wistia_grid_102_bottom"></div>
</div>
<div id="wistia_grid_102_left_inside">
<div id="wistia_grid_102_left"></div>
</div>
<div id="wistia_grid_102_right_inside">
<div id="wistia_grid_102_right"></div>
</div>
</div>
<div id="wistia_grid_102_below"></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><em>Please note that users must toggle on the latest UI to take advantage of this feature. </em></p>
<h3 id="h-putting-our-own-features-to-the-test-nbsp" class="wp-block-heading">Putting our own features to the test</h3>
<p>At LogicMonitor, we leverage our own products to monitor our infrastructure, applications, and services. So it comes as no surprise that LogicMonitor engineers have been using Log Analysis as part of LogicMonitor’s <a href="https://www.logicmonitor.com/resource/logicmonitor-on-logicmonitor">use and test</a> approach, which allows us to stress test new releases with internal and external early adopters. Internal users have amazing things to say about this new feature. Nick Johnson, Senior Software Engineer, is “loving the tool so far” and has “been using it extensively for Cloud Recommendations.” He is especially excited about the negative phrases panel, which he says “has been huge in seeing where we’re over-logging, double-logging, and finding commonalities.” William Shipman, Site Reliability Engineer, stated that “the ability to extract numeric values from logs is one of the coolest things I’ve seen yet. I really like the negative phrase analysis, but the ability to plot counts over time and extract numeric values from text is game-changing.”</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-rt.googleusercontent.com/docsz/AD_4nXfIDxf9un1_Kz__DFJ8rWoSNHv-dMKzi0_PwtPLZuYmabB7hmeYtWuJE_8_wKQZ40BnQzM-keNXoUGMs2ABcBdRTyWJZO6oI4-BkbGPNaTCI0YaCGhxhQ7-AvaqMYvgwa1__-_nxSHxtQFzptJem8fDS4ul?key=ZjhWWw2OVDr_2fab2ecPTw" alt="" /></figure>
<h2 id="h-snmp-traps-as-logs-unlocking-comprehensive-network-monitoring" class="wp-block-heading">SNMP Traps as Logs: Unlocking comprehensive Network Monitoring</h2>
<p>We knew the 90s were making a comeback from fashion to TV with “That 90’s Show” – but SNMP traps? They never went away. That’s because SNMP traps are still an essential part of Network Monitoring, and <a href="https://www.gartner.com/en/documents/5043431">the market for network devices</a> continues to grow. Traps measure network performance and health while providing timely information about important events across the vast network devices that keep your organization running.</p>
<p>In the past, NetOps managers and administrators have viewed SNMP monitoring as a necessary evil, requiring specialized (and often outdated) on-premises software that generates more alerts than the engineers could act upon.  LogicMonitor has brought SNMP traps into the modern age by transforming them into Logs. This eliminates monitoring gaps and unlocks instant insights into Network issues in a user-friendly interface. Now, you can easily integrate traps into your overall Network Monitoring strategy in a single SaaS platform to immediately identify and troubleshoot network latency, hardware health, packet loss, or interface flapping issues.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-rt.googleusercontent.com/docsz/AD_4nXfg6n7OVczNh9amI-87l2ZNA7NLyJPxS1XZJ9aLzSXgH53O-sJtWNg4ZgXEKEWjKDlbnUXmA9cyiA6Sm2AWC6djqhISGjyTBSZ1nr83tjgB3AsB18yEY0w26FpElZAFmyW3qoVPggUQYnR6zbxg_DaArUyL?key=ZjhWWw2OVDr_2fab2ecPTw" alt="" /></figure>
<p>Search traps, create queries, identify anomalies, and more with SNMP Traps as Logs.</p>
<p>SNMP Traps as Logs are easily ingested via the LM Collector with no configuration required. With LogicMonitor’s flexible retention policies, there’s no need to maintain storage hardware for traps.</p>
<h3 id="h-key-benefits" class="wp-block-heading">Key benefits:</h3>
<ul class="wp-block-list">
<li><strong>Centralized monitoring to reduce tool sprawl and data silos:</strong> Replace your old Enterprise trap management system and centralize your network monitoring approach in LogicMonitor. View SNMP traps alongside logs, metrics, and traces in real time, all in a single platform.</li>
<li><strong>Rich context for fast, proactive troubleshooting:</strong> Leverage logging features like Log Anomaly Detection, Log Analysis, queries, filters, data retention, and more for quicker incident resolution. Search historical traps and identify trends to remediate, predict, or prevent future issues. <a href="https://www.logicmonitor.com/edwin-ai">Edwin AI</a>, LogicMonitor’s new generative AI product, can ingest logs and correlate related issues into a single ITSM ticket with a simple summary and recommendations that fast-track RCA.</li>
<li><strong>Reduced alert fatigue:</strong> With stateful alarm clearing, SNMP Traps as Logs will automatically close alerts when a related “clear” trap comes in, eliminating noisy alerts while retaining a record of duplicate alerts.</li>
<li><strong>3,000+ seamless integrations: </strong>LogicMonitor’s LM Envision platform integrates seamlessly with SNMP Traps (v1, v2, and v3), standard encryption methods, your existing Network Devices, and incident resolution workflows through ServiceNow, Jira, PagerDuty, Slack, and more. For more information, check out our <a href="http://logicmonitor.com/integrations">Integrations</a> page.</li>
<li><strong>Parse and map OIDs and VarBinds:</strong> LogicMonitor pulls in critical information from SNMP Trap OIDs and variable bind values and translates them into user-readable values out of the box. LM Envision supports vendor-proprietary log formats as well as Syslog, providing a holistic log solution for Network Operations and Engineering teams.</li>
<li><strong>Custom MIB support: </strong>Users can upload their own proprietary or custom MIB files within the LM Envision platform, extending translation and visibility into any other product that sends SNMP Traps.</li>
</ul>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-rt.googleusercontent.com/docsz/AD_4nXdJGnkFEIsZaIgr33JTYCUPDTs0OSCt9PNLJwltyGfe1ytPCjtgVKikqgArETFmbRZ1rD5tfIuZGch7PrxV4GUMGwGXxJcLHnTlBXooKQq2tE_ROYbPrcNKcwjhmFypTpps_wHJLFwvjMjjV4aBJPdNWQo?key=ZjhWWw2OVDr_2fab2ecPTw" alt="" /></figure>
<p>SNMP Traps as Logs leverages powerful log features like Anomaly Detection to quickly troubleshoot network issues.</p>
<p>SNMP Trap monitoring is a must-have for enterprises. Treating Traps will unlock much more value for our customers through existing log features. Simply send the traps through the LM Envision—no configuration needed—and let LogicMonitor do the heavy lifting for you to surface actionable insights and important alerts like equipment vendor certification changes, notification failures, or repeated login failures.</p>
<p>Watch our short demo video or visit the <a href="https://www.logicmonitor.com/support/snmp-trap-logsource-configuration">documentation</a> site for more information about SNMP Traps as Logs.</p>
<div id="video" class="wistia-responsive-embed">
<div class="container wistia-responsive-embed__wrap">
<div class="row wistia-responsive-embed__card">
<div class="col-12">
<div class="wistia-responsive-embed__embed">
<div class="wistia_responsive_padding">
<div class="wistia_responsive_wrapper">
<div class="wistia_video_foam_dummy" data-source-container-id="wistia-p2685pi4fd-1"></div>
<div id="wistia-p2685pi4fd-1" class="wistia_embed wistia_async_p2685pi4fd seo=true videoFoam=true wistia_embed_initialized">
<div id="wistia_chrome_40" class="w-chrome notranslate" tabindex="-1">
<div id="wistia_grid_125_wrapper">
<div id="wistia_grid_125_above"></div>
<div id="wistia_grid_125_main">
<div id="wistia_grid_125_behind"></div>
<div id="wistia_grid_125_center">
<div class="w-video-wrapper w-css-reset"></div>
<div class="w-ui-container">
<div id="w-vulcan-v2-124" class="w-vulcan-v2 w-css-reset">
<div class="w-vulcan--background w-css-reset">
<div class="w-css-reset" data-handle="statusBar"></div>
<div class="w-css-reset" data-handle="backgroundFocus"></div>
<div class="w-css-reset" data-handle="thumbnail">
<div>
<div class="w-css-reset"><img decoding="async" class="w-css-reset" src="https://fast.wistia.com/embed/medias/p2685pi4fd/swatch" srcset="" alt="Video Thumbnail" aria-hidden="true" /></div>
<div class="w-css-reset"><img decoding="async" class="w-css-reset" src="https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=960x540" srcset="https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=640x360 320w, https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=640x360 640w, https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=960x540 960w, https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=1280x720 1280w, https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=1920x1080 1920w, https://embed-ssl.wistia.com/deliveries/fbd87be5467a36b9aa3a5e52a2d62c99144c9a58.webp?image_crop_resized=1920x1080 3840w" alt="Video Thumbnail" /></div>
</div>
</div>
</div>
<div class="w-vulcan--aria-live w-css-reset" aria-live="polite" aria-atomic="true"></div>
<div class="w-vulcan-overlays-table w-css-reset">
<div class="w-vulcan-overlays--left w-css-reset">
<div class="w-css-reset"></div>
</div>
<div class="w-vulcan-overlays--center w-css-reset">
<div class="w-css-reset">
<div class="w-css-reset" data-handle="bigPlayButton">
<div class="w-bpb-wrapper w-css-reset w-css-reset-tree">
<div></div>
<div></div>
</div>
</div>
<div class="w-css-reset" data-handle="clickForSoundButton"></div>
<div class="w-css-reset" data-handle="playPauseNotifier"></div>
<div class="w-css-reset" data-handle="captions"></div>
<div class="w-css-reset" data-handle="playPauseLoading">
<div class="w-css-reset w-css-reset-tree"></div>
</div>
<div class="w-css-reset" data-handle="transcript">
<div class="w-css-reset"></div>
</div>
</div>
</div>
<div class="w-vulcan-overlays--right w-css-reset">
<div class="w-css-reset"></div>
</div>
</div>
<div class="w-bottom-bar w-css-reset">
<div class="w-bottom-bar-lower w-css-reset">
<div>
<div></div>
</div>
<div class="w-bottom-bar-left w-css-reset">
<div class="w-bottom-bar-left-inner w-css-reset">
<div class="w-css-reset" data-handle="smallPlayButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="smallPlayButton_icon_wrapper">
<div>
<div>
<div></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="w-bottom-bar-middle w-css-reset">
<div class="w-bottom-bar-middle-inner w-css-reset">
<div class="w-css-reset" data-handle="playbar">
<div class="w-playbar-wrapper w-css-reset w-css-reset-tree">
<div class="w-playbar__time">6:49</div>
<div>
<div tabindex="0" role="slider" aria-label="Playbar" aria-orientation="horizontal" aria-valuemax="408.918" aria-valuemin="0" aria-valuenow="0" aria-valuetext="0 seconds">
<p>&nbsp;</p>
<div></div>
<div class="w-storyboard-anchor">
<div class="w-storyboard">
<p><img decoding="async" class="w-css-reset-max-width-none-important" src="https://embed-ssl.wistia.com/deliveries/1a8a65a3559a79e464571eb89636a9905b45360f.bin" alt="" /></p>
<div class="w-storyboard-time">5:22</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="w-bottom-bar-right w-css-reset">
<div class="w-bottom-bar-right-inner-anchor w-css-reset">
<div class="w-bottom-bar-right-inner w-css-reset">
<div class="w-css-reset" data-handle="captionsButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="captionsButton_icon_wrapper"></div>
</div>
</div>
<div class="w-css-reset" data-handle="volumeButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="volumeButton_icon_wrapper"></div>
</div>
</div>
<div class="w-css-reset" data-handle="settingsButton">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="settingsButton_icon_wrapper"></div>
</div>
</div>
<div class="w-css-reset" data-handle="fullscreenControl">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="fullscreenControl_icon_wrapper"></div>
</div>
</div>
</div>
</div>
<div class="w-wistia-logo w-css-reset">
<div class="w-css-reset" data-handle="wistiaLogo">
<div class="w-vulcan-button-wrapper w-css-reset">
<div class="w-vulcan-icon-wrapper" data-handle="wistiaLogo_icon_wrapper"></div>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="w-foreground w-css-reset">
<div class="w-css-reset" data-handle="contextMenu"></div>
<div class="w-css-reset" data-handle="loadingHourglass"></div>
<div class="w-css-reset" data-handle="focusOutline"></div>
</div>
</div>
</div>
</div>
<div id="wistia_grid_125_top_inside">
<div id="wistia_grid_125_top"></div>
</div>
<div id="wistia_grid_125_bottom_inside">
<div id="wistia_grid_125_bottom"></div>
</div>
<div id="wistia_grid_125_left_inside">
<div id="wistia_grid_125_left"></div>
</div>
<div id="wistia_grid_125_right_inside">
<div id="wistia_grid_125_right"></div>
</div>
</div>
<div id="wistia_grid_125_below"></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<h2 id="h-rbac-for-logicmodules-granular-role-based-access-controls-to-minimize-risk-nbsp" class="wp-block-heading">RBAC for LogicModules: Granular role-based access controls to minimize risk</h2>
<p>Large complex organizations like enterprises and MSPs have greater RBAC and security needs. With RBAC for LogicModules, these organizations can now set more granular permissions, ensuring that the right team members have the appropriate access level to view or edit specific LogicModules and the underlying data.</p>
<p>This enhanced granularity strikes an ideal balance between minimizing monitoring and outage risks while giving teams the control to monitor the correct data to maximize performance and visibility. Using the module editor, administrators can assign Access Groups to modules directly within the LM Envision platform. After assigning Access Groups, you can filter and view modules by these groups in ‘My Module Toolbox’.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-rt.googleusercontent.com/docsz/AD_4nXfP-gtp9DqQGO8B0RktQcYhtalHMG7PcRw0kCs1X0d8JvrGHDgGj9PoewxxjeFFvBkgp6MoR2EB1ivRF-E7DDtbt2V7T9j53aXNFO1_tS-zE4XsDnVEV5lb0Nx_TKCGvossVJSTf7QsVBbQv5oP4fOLYLs?key=ZjhWWw2OVDr_2fab2ecPTw" alt="" /></figure>
<p>RBAC for LogicModules extends the principle of least privilege to Modules.</p>
<p>The flexibility of Access Groups allows you to tailor permissions to your organization’s structure. You might give a user the ability to update alert thresholds for resource groups, or create “view only” permissions for specific modules. You can also create groups to ensure that:</p>
<ul class="wp-block-list">
<li>The database team can only edit modules related to database monitoring.</li>
<li>The server team can only edit modules related to server monitoring</li>
<li>And so on…</li>
</ul>
<p>This targeted approach prevents teams from accidentally interfering with each other’s monitoring configurations, ensuring comprehensive coverage and reducing the risks of gaps in visibility.</p>
<p>For more information, visit the <a href="https://www.logicmonitor.com/support/access-groups-for-modules">documentation</a> site.</p>
<h2 id="h-security-settings-and-recommendations-protecting-your-portal-with-better-security-visibility-and-control" class="wp-block-heading">Security Settings and Recommendations: Protecting your portal with better security visibility and control</h2>
<p>We are excited to announce Security Settings and Security Recommendations to help our customers get the most value from LogicMonitor and stay current with security best practices.</p>
<p><strong>Security Settings</strong> is your new launchpad for managing security and RBAC within LogicMonitor. This centralized page simplifies the process of reviewing and modifying your environment’s security configuration, providing those with Security permissions with granular control and enhanced visibility over their portal security configuration.</p>
<p>Within Security Settings, you’ll also find <strong>Security Recommendations, </strong>a proactive tool displaying recommended actions to protect your portal better.</p>
<p>These recommendations can include suggested actions like enabling two-factor authentication (2FA), which adds an extra layer of security by requiring users to verify their identity through a third-party application or an authentication token delivered using SMS, voice, or email. You can apply 2FA globally for all portal users or on a per-user basis.</p>
<p><strong>Important Note:</strong> If you’re using Single Sign-On (SSO), 2FA behavior depends on your SSO configuration.</p>
<ul class="wp-block-list">
<li>If SSO is not set to “Restrict Single Sign-On,” users can choose between SSO or 2FA for login.</li>
<li>If SSO is set to strict access, users can only log in using SSO.</li>
<li>To enable 2FA with SSO, you must configure it through your SSO provider.</li>
</ul>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-rt.googleusercontent.com/docsz/AD_4nXdKw4g_47MMv00JwVjfGZU-aWQc7koDSQT2wvPvQ1BkySoKa5g6mbhMKvrzMu0u4ifHCM7pM_meNlLHFavjsORKJ8uUE6OU32P5OpMw0DaoBLZlXOUpfVb9oeUyPUVQRiirkHY5IBtj00-e-sTU1CuTrXHl?key=ZjhWWw2OVDr_2fab2ecPTw" alt="" /></figure>
<p>Security Recommendations gives you recommended actions that enhance the security posture of your LogicMonitor portal.</p>
<p>Other recommendations may include:</p>
<ul class="wp-block-list">
<li>Suspending inactive users after a specified period.</li>
<li>Turning off inactive tokens after a specified period.</li>
<li>Configuring an email domain allowlist.</li>
</ul>
<p>By following these recommendations, you can proactively strengthen your LogicMonitor portal’s security and protect your valuable data.</p>
<p>For more in-depth guidance on securing your LogicMonitor portal, refer to <a href="https://www.logicmonitor.com/support/getting-started/advanced-logicmonitor-setup/security-best-practices">LogicMonitor Best Practices</a> or visit the <a href="https://www.logicmonitor.com/support/security-4">Security Settings documentation</a> site.</p>
<h2 id="h-fostering-continuous-innovation" class="wp-block-heading">Fostering continuous innovation</h2>
<p>With the latest enhancements to the LM Envision platform, LogicMonitor is committed to making it easier for customers to identify and troubleshoot issues quickly, monitor their network infrastructure, and ensure the security of their data. We are excited to see how our customers use these new features to improve their operations and achieve their business goals. Stay tuned for more exciting updates as we continue to innovate and provide our customers with the tools and resources they need to succeed.</p>
<p>If you’re a current customer and need help enabling a new feature, please reach out to your Customer Service Representative or engage directly with the product team in the LogicMonitor <a href="https://community.logicmonitor.com/">Community</a>! If you’re new to LogicMonitor, take the next step on your journey toward Hybrid Observability powered by AI today by watching a <a href="http://logicmonitor.com/platform-demo">quick overview</a> of the platform and <a href="https://www.logicmonitor.com/signup">requesting a free trial</a>.</div>
<p><!-- .vgblk-rw-wrapper --></p>
<p>The post <a href="https://dibiz.vn/en/improve-enterprise-mttr-visibility-and-control/">Improve enterprise MTTR, visibility, and control</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>LogicMonitor’s latest innovations to optimize cloud performance and costs</title>
		<link>https://dibiz.vn/en/logicmonitors-latest-innovations-to-optimize-cloud-performance-and-costs/</link>
		
		<dc:creator><![CDATA[Hiền Nguyễn Đức]]></dc:creator>
		<pubDate>Wed, 09 Oct 2024 09:05:44 +0000</pubDate>
				<guid isPermaLink="false">https://dbiz.vn/?p=990027</guid>

					<description><![CDATA[<p>LogicMonitor stands at the forefront of innovation in IT infrastructure monitoring, and our newest solutions help our customers optimize performance, manage costs, and gain deeper visibility into their network operations. Our vision is to empower businesses with the observability needed to navigate modern IT complexities with AI-powered solutions that drive efficiency. The capabilities in our...</p>
<p>The post <a href="https://dibiz.vn/en/logicmonitors-latest-innovations-to-optimize-cloud-performance-and-costs/">LogicMonitor’s latest innovations to optimize cloud performance and costs</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="vgblk-rw-wrapper limit-wrapper">LogicMonitor stands at the forefront of innovation in IT infrastructure monitoring, and our newest solutions help our customers optimize performance, manage costs, and gain deeper visibility into their network operations. Our vision is to empower businesses with the observability needed to navigate modern IT complexities with AI-powered solutions that drive efficiency.</p>
<p>The capabilities in our latest launch deliver enhancements that optimize operations for Platform Engineering and CloudOps teams to gain fast, actionable insights into cloud spend and cloud-managed network infrastructure. LogicMonitor helps shift operations teams’ focus on performance, cloud cost optimization, and efficiency, which unlocks growth and innovation.</p>
<h2 id="h-layered-ai-empowering-ops-teams-with-intelligent-insights" class="wp-block-heading">Layered AI: Empowering ops teams with intelligent insights</h2>
<h3 id="h-lm-cost-optimization-detailed-visibility-to-align-performance-and-cost" class="wp-block-heading">LM Cost Optimization: Detailed visibility to align performance and cost</h3>
<p>Platform Engineering and CloudOps teams are challenged with maintaining high levels of availability and efficiently using cloud resources, while preventing budgetary overruns and carefully managing costs. Addressing multi-cloud costs while optimizing performance across dispersed teams and applications is difficult with the sheer volume of resources. Making performance-impacting decisions requires deeper intelligence than what the native CSP solutions can provide.</p>
<p>LogicMonitor’s new Cost Optimization solution addresses balancing cloud performance with the cost of operations. <strong>LM Cost Optimization</strong> offers deep visibility into multi-cloud billing and AI-driven recommendations so teams can efficiently manage and optimize cloud investments. Layered into Hybrid Observability, LM Cost Optimization quickly and intelligently balances performance and cost management, paired with continuous telemetry and insights derived from the <a href="https://www.logicmonitor.com/platform">LM Envision platform</a>.</p>
<p>LM Cost Optimization includes two key capabilities:</p>
<ol class="wp-block-list">
<li><strong>Cloud Billing</strong>: Provides a detailed, unified view of multi-cloud (<a href="https://www.logicmonitor.com/aws">Amazon Web Services</a> [AWS] and <a href="https://www.logicmonitor.com/azure">Azure</a>) organizational spending. This allows teams to analyze cost data using normalized, filtered tags such as account, region, provider, resource type, and more. Additionally, customers can optimize cloud costs based on any cloud tag. With this detailed cost visibility, teams can spot trends, identify spikes and resource changes, and determine strategies for improving cost management. Teams gain deeper cloud cost insights and are empowered to make data-driven decisions that are important to their business.</li>
</ol>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/ThNlz8PYc77mBxANB7eKoiOOo_wJT8I2aLINxL2A3e3SU5mLChq0PB_6nwHlyAC9CPPAftfJueLh33tygqKLhD0W62bTmrCPyzTRDvLn7rjSfX4rqXy5hWq5WDfq2ZSpZXGRQtTwWTm5fgl8hXczeEA" alt="" /><figcaption class="wp-element-caption">Cloud Billing provides users with detailed views into Azure and AWS costs with OOTB dashboards and filtered tags.</figcaption></figure>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/oS6Iw97iQQ6gMTbtjLI9m_McR7_JBVOBrMPJTcPFOwfZ4rM90Kvt_SW_lp0NDVACISEfkVnHlS--HbEA9xJ8dis7PpBUGDyAUngqwB5Mi5-dF9_1h2vE9Mrg-wWTqzuIYFZDcmndSQYUvllEY6C1ALM" alt="" /><figcaption class="wp-element-caption">Visualize cost trends to identify cost changes and filter by cloud provider. </figcaption></figure>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/BgU4TTGcshJRmqw6fdK-rzJTkT1yeDEqWissCrLQyEhM4yxD8BzvTwiC40PzsKNfQOP6KQjF76YT0rLJqz-yHX1ycxO1PMnDuTC4AWynIVgQMpLTDcxrhNQtET1pZx6SJYNaOymGqDmCiQawkLjRv0g" alt="" /><figcaption class="wp-element-caption">Users can see how costs change over time and identify where cost spikes occur. </figcaption></figure>
<ol class="wp-block-list" start="2">
<li><strong>Cloud Recommendations</strong>: AI-powered recommendations to instantly modify cloud resource usage and reduce costs while balancing performance. Available for AWS compute and storage, Cloud Recommendations offers targeted recommendations to optimize platforming decisions. Leveraging observability metrics from the LM Envision platform, performance evidence increases confidence around the recommendation. This gives users deep knowledge of surrounding criteria before taking action. Organizations can manage their most expensive cloud resources and reduce expenses without compromising service levels.</li>
</ol>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/qggCGrIj_IpWcqxkljx5ZV4xkx2FH1h4-QMQv4zZG0u6ZVfa8zw9yeLQUiufJ2u-tuhASDf9FBEc-2Wr3nFyHUU91dmxaOZkEpWemoWmYWOL4dhBqei4Gzff1i0hXGCgSqFXySTxP2LLz6-sgiXr1IU" alt="" /><figcaption class="wp-element-caption">Detailed recommendations into AWS compute and storage environments with potential savings</figcaption></figure>
<p>LogicMonitor helps customers during and after cloud migrations to eliminate over-provisioned resources, reduce costs, and continually monitor performance. LM Cost Optimization equips organizations with the insights required to deliver highly available, reliable, and cost-effective services to their customers.</p>
<h2 id="h-cloud-managed-networking" class="wp-block-heading">Cloud-Managed Networking</h2>
<p>Edge and IoT requirements drive substantial data and telemetry, which has increased the need for enterprise-grade wireless coverage. Additionally, the increase in return-to-work mandates has uncovered the need for more modern wireless technologies, which has driven the need for reliable cloud-managed networking capabilities. Due to the increased demand in network infrastructure, the need to monitor and support these areas for our customers has accelerated.</p>
<p>This trend in network management involves new approaches: APIs, streaming telemetry, cloud-hosted, and SaaS-based. These approaches provide faster discovery time, a reduced need for SNMP polling (observability and devices), and push alerts and metrics from management platforms.</p>
<p>LM Envision continues to lead enterprise wireless coverage with a new integration with <a href="https://www.logicmonitor.com/support/ubiquiti-unifi-network-monitoring"><strong>Ubiquiti</strong></a><strong> UniFi</strong>. This <a href="https://www.logicmonitor.com/integrations">integration</a> allows LogicMonitor to offer out-of-the-box monitoring coverage for several industry-leading enterprise wireless vendors, including Cisco, Juniper, and Ubiquiti.</p>
<p>With the addition of <strong>Cato SD-WAN </strong>monitoring, LM Envision further strengthens LogicMonitor’s position as the leading Hybrid Observability platform for <a href="https://www.logicmonitor.com/sd-wan-monitoring">SD-WAN</a>. This enables network operations teams to be agile, efficient, and flexible. LM Envision is supporting customers on that journey. Our customer’s management platform of choice continues to be an integrated partner in the customer’s observability solution.</p>
<p>Customers can also derive greater value from <strong>SNMP traps in </strong><a href="https://www.logicmonitor.com/logs"><strong>LM Logs</strong></a>. By enabling <a href="https://www.logicmonitor.com/support/logicmodules/eventsources/types-of-events/snmp-trap-monitoring?utm_medium=blog&amp;utm_source=logicmonitor&amp;utm_term=&amp;utm_content=bl&amp;utm_solution=pl&amp;utm_campaign=hO11y&amp;utm_program=ito&amp;utm_type=aw"><strong>SNMP traps</strong></a><strong> as a log source</strong>, traps can be retained, queried, and leverage new AI features such as anomaly detection for logs. SNMP traps can now be viewed in the same place as other network-relevant logs, such as syslog, network vendor proprietary logs, and others. Combined with stateful alert clearing, SNMP traps are treated holistically. Meta-data, resource mappings, and filters can also be applied to SNMP trap log records. Finally, through log alerts, SNMP traps can now be leveraged in strategic platform directions, including <a href="http://www.logicmonitor.com/dexda">Dexda</a>’s AI-based event correlation.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/mtzVOPBPs8ou_cFUWP0HBQn9F8rv7EBQCJBSJDFJJ-rrZlWzUMAvP86bJS3FdsBCvwoVj8VA05m_9htcYYqLhsuqfcwKQ1lvE1IS6Iq15-_tq16zG_t4XkfI3vqzmLSL8pQ0o40QDdoxjJtjI0hu_6g" alt="" /><figcaption class="wp-element-caption">Greater value out of information to understand patterns as measured by SNMP traps</figcaption></figure>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/1rOW1FMLEEgc7wie0UursW_THUOAPpPgbsWjDnpHiw8c6iD0CjsNAxnoL0ETsUAqKomANp9eT-RAsxv_IwnNUX9I4I74-37gd3kJxx3jdV4f2iXW1SNKOAN6AFgqnJ-QFeSFkRBTvj2jXTHl6Ozo5rw" alt="" /><figcaption class="wp-element-caption">Additional detail surrounding the logs. </figcaption></figure>
<h2 id="h-hybrid-observability-powered-by-ai" class="wp-block-heading">Hybrid Observability powered by AI</h2>
<p>LogicMonitor’s latest innovations expand the benefits of hybrid observability telemetry and data. We’re innovating and significantly driving efficiency by integrating LM Cost Optimization, enhanced SD-WAN monitoring, and <a href="https://www.logicmonitor.com/network-monitoring">cloud-managed networking</a> enhancements. These developments empower our customers with the tools and insights needed for unmatched operational excellence.</div>
<p><!-- .vgblk-rw-wrapper --></p>
<p>The post <a href="https://dibiz.vn/en/logicmonitors-latest-innovations-to-optimize-cloud-performance-and-costs/">LogicMonitor’s latest innovations to optimize cloud performance and costs</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Unleashing hybrid observability</title>
		<link>https://dibiz.vn/en/unleashing-hybrid-observability/</link>
		
		<dc:creator><![CDATA[Hiền Nguyễn Đức]]></dc:creator>
		<pubDate>Wed, 09 Oct 2024 09:05:15 +0000</pubDate>
				<guid isPermaLink="false">https://dbiz.vn/?p=990025</guid>

					<description><![CDATA[<p>by Sarah Terry, Senior Director of Product Management &#38; Beth Winters, Senior Product Marketing Manager At LogicMonitor, we are deeply committed to a mission that goes beyond the conventional: revolutionizing IT monitoring through hybrid observability powered by AI. This ambition is not merely a slogan but the cornerstone of our entire approach. Our LM Envision...</p>
<p>The post <a href="https://dibiz.vn/en/unleashing-hybrid-observability/">Unleashing hybrid observability</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="vgblk-rw-wrapper limit-wrapper"><em>by Sarah Terry, Senior Director of Product Management &amp; Beth Winters, Senior Product Marketing Manager</em></p>
<p>At LogicMonitor, we are deeply committed to a mission that goes beyond the conventional: revolutionizing IT monitoring through hybrid observability powered by AI. This ambition is not merely a slogan but the cornerstone of our entire approach. Our LM Envision platform was purposely designed to bring together diverse IT environments under one seamless, integrated experience.</p>
<p>Enterprises have complex IT ecosystems. By delivering comprehensive visibility into your IT infrastructure—whether it’s on-premise, hybrid, or cloud-based— we help organizations streamline operations, minimize expenses, and grow with confidence.</p>
<p>LogicMonitor’s hybrid observability approach empowers IT and CloudOps teams through relentless focus on our three pillars of innovation:</p>
<ul class="wp-block-list">
<li><strong>Layered Intelligence</strong> in every aspect of our platform</li>
<li>Delivering a <strong>Unified Experience</strong></li>
<li>Extensive <strong>Hybrid Coverage</strong></li>
</ul>
<p>Our latest features support these pillars by helping organizations deliver high service availability, reduce the time required to solve problems, and identify root causes faster.</p>
<p>Interested in learning more? Join us for the accompanying Winter Release webinar, titled “<a href="https://www.logicmonitor.com/events/unleashing-hybrid-observability-logicmonitors-latest-product-innovations">Unleashing Hybrid Observability: LogicMonitor’s Latest Product Innovations</a>.” This will take place on Tuesday, February 27th at 11 am PST, where our product team will demo the new capabilities described below!</p>
<h1 id="h-modern-it-operations-observability-challenges" class="wp-block-heading">Modern IT Operations Observability Challenges</h1>
<p>In the rapidly evolving digital landscape, modern IT teams face a multifaceted set of challenges that test their agility, efficiency, and innovation. These challenges, while distinct, are deeply interconnected, impacting the ability of organizations to maintain a competitive edge and operational excellence. Here, we delve into the core issues confronting today’s IT operations teams and explore strategic approaches to overcome them.</p>
<h2 id="h-high-complexity-nbsp" class="wp-block-heading">High Complexity</h2>
<ul class="wp-block-list">
<li>Modern IT environments blend legacy systems, cloud platforms, and new technologies, creating significant complexity. This mix, alongside rapid application and infrastructure growth, challenges visibility and control.</li>
<li>A widening skills gap, due to rapid tech advancement exceeding the supply of skilled professionals, further complicates efficient IT ecosystem management.</li>
</ul>
<p>Addressing these issues requires robust observability solutions and a strategic focus on workforce development.</p>
<h2 id="h-efficient-operations-nbsp" class="wp-block-heading">Efficient Operations</h2>
<ul class="wp-block-list">
<li>The spread of IT assets across various domains leads to governance, cost, and focus challenges, a situation worsened by a traditional, reactive approach to incident management.</li>
<li>IT teams under pressure to achieve more with less need solutions that automate tasks, optimize resource management, and improve incident response times.</li>
</ul>
<p>Adopting such technologies allows a shift from reactive to strategic operations, boosting service levels and operational flexibility.</p>
<h2 id="h-speed-of-innovation-nbsp" class="wp-block-heading">Speed of Innovation</h2>
<ul class="wp-block-list">
<li>Aligning IT more closely with business goals is crucial for fostering service agility and innovation.</li>
<li>Challenges like cloud migration and overcoming the perception of IT as an innovation barrier necessitate reevaluating IT’s organizational role.</li>
<li>Embracing agile methodologies, continuous delivery, and a culture of experimentation and quick iteration are key.</li>
</ul>
<p>By positioning IT as a strategic business asset, organizations can create an environment that supports and drives growth and transformation.</p>
<h2 id="h-why-lm-envision-nbsp-nbsp" class="wp-block-heading">Why LM Envision</h2>
<p>Our LM Envision platform integrates AI-driven insights, automation, and cloud-native capabilities to streamline and simplify IT operations. This enables IT businesses to effectively tame complexity, boost operational efficiency, and foster innovation at an accelerated pace.</p>
<p>We want to transform IT teams from a support role into a key driver of business success. This will empower them to not only anticipate and respond to current demands but also to shape future technological landscapes.</p>
<h1 id="h-what-s-new-in-layered-intelligence-nbsp" class="wp-block-heading">What’s New in Layered Intelligence</h1>
<h2 id="h-lm-co-pilot-preview" class="wp-block-heading">LM Co-Pilot (Preview)</h2>
<p>LogicMonitor’s new Generative AI tool, LM Co-Pilot, revolutionizes account setup and day-to-day administration. With its interactive dialogue and real-time assistance, it accelerates processes, reduces errors, and enhances the user experience. By simplifying manual multi-step workflows and multi-page administrative tasks (like adding devices or new users) into a curated, chat-like experience, LM Co-Pilot frees up IT teams to work on more engaging tasks.</p>
<figure class="wp-block-image size-large"><img fetchpriority="high" decoding="async" class="wp-image-557314" src="https://www.logicmonitor.com/wp-content/uploads/2024/02/confirm-1-1024x643.jpeg" sizes="(max-width: 1024px) 100vw, 1024px" srcset="https://www.logicmonitor.com/wp-content/uploads/2024/02/confirm-1-1024x643.jpeg 1024w, https://www.logicmonitor.com/wp-content/uploads/2024/02/confirm-1-300x188.jpeg 300w, https://www.logicmonitor.com/wp-content/uploads/2024/02/confirm-1-768x482.jpeg 768w, https://www.logicmonitor.com/wp-content/uploads/2024/02/confirm-1-1536x964.jpeg 1536w, https://www.logicmonitor.com/wp-content/uploads/2024/02/confirm-1-2048x1286.jpeg 2048w" alt="" width="1024" height="643" /></figure>
<p>Currently, LM Co-Pilot is only available in preview mode. If you want to participate in our Controlled Availability program, please contact your LogicMonitor account representative.</p>
<p>Stay tuned in the coming months as we roll out new LM Co-Pilot capabilities, including Support, which will leverage Natural Language Processing (NLP) to summarize documentation and answer queries about LM Envision features, and Troubleshooting, which will automate workflows for rapid troubleshooting and resolution of complex hybrid infrastructure issues.</p>
<h2 id="h-log-analysis-preview-nbsp" class="wp-block-heading">Log Analysis (Preview)</h2>
<p>When troubleshooting business-impacting events in a hybrid environment, users typically need complex queries to scan logs across the different services, applications, and resource types (<em>e.g., </em>network devices, load balancers, databases, and cloud resources). This time-consuming process usually requires deep domain knowledge.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/BW9Tfl8mxpEp9Em-g_stY6w2NahQ0cLfPmF5oq8pZbalP3InKFbXUL21oYLzpGvay2aaqEZBf_fM8VLE7qCI8V-94TQNS-pihDQU4mxFeZ5ch2d_xhwknhZEyOahTUesE82o1OriXt0gAhkdOFfQjZc" alt="" /></figure>
<p>Log Analysis simplifies troubleshooting by quickly surfacing contextually relevant logs through advanced ML techniques and visual filtering. Log Analysis automatically analyzes and categorizes log messages, providing sentiment scores based on log level, keywords, negative phrases, and custom dimensions. This helps users quickly detect the severity of log messages and prioritize the key phrases that apply to their most pressing issues.</p>
<p>Now, time-consuming work such as determining severity and finding relevant logs is handled by LogicMonitor’s AI, which enables operations and support teams to be more effective when solving problems.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/HXNuQquBtyv1onCO_CSrdHTwJ8OsaJEtQB-3trrkRYYOHIWzs32_xYRzkTJa8zx2p1lRZLvCreoJbSIxGNrmofTxWiChH5uKF24YzfuBpTNUpeVI4ZDy5NoxsxrcA94tI9a3KKKrrDE7d05ZJB9rdus" alt="" /></figure>
<h2 id="h-edwin-ai" class="wp-block-heading">Edwin AI</h2>
<p>Edwin AI puts AI to work and supercharges IT productivity by automating alert correlation, contextualization, prioritization, and incident management, all personalized to a business’s unique needs. Edwin AI extracts the richest, most relevant context from LogicMonitor and ServiceNow CMDB for a highly accurate and customizable correlation.</p>
<p>Let’s say a core switch link has gone down due to a config issue in your campus, generating an alert storm with hundreds of access points and switches being impacted. Edwin AI will combine the context of devices as switches, APs, and campus location from LogicMonitor to help correlate this storm of alerts into a single actionable insight. Edwin AI automatically summarizes all the underlying events for the level one NoC engineers in the ServiceNow ticket.</p>
<p>By combining natural language processing and unsupervised machine learning, Edwin AI cuts through the noise to elevate the most important issues. As a result, IT and CloudOps teams can diagnose problems faster, reduce MTTR, increase efficiency, and prevent problems from exploding into costly downtime and business-critical incidents. Dexda acts as a single source of truth across your entire environment, optimizing incident response and accelerating MTTR.</p>
<p>Unlike other solutions, Edwin AI uses open and customizable Machine Learning models, offering personalized IT at scale. Essentially, it’s like having an extra ITOps engineer on your team!</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/gj0xTOrcYWNujDAZeK9l-AQiAXffRSDh66zUuopE1_kgFdDNvwSGhRW7qwG2ALs3IG21-hDdDKRKgNOL_ku1ZIoltNT_HjqEYjhBZk8ivNogRWf22qtetygn2dYAzr6FMiL14X5yEMKo9ITZXIVZxFE" alt="" /></figure>
<p>Ready to gain better context into issues you’re already collecting with LogicMonitor’s personalized approach to AIOps? Reach out to your LogicMonitor account representative, or email us at <a href="mailto:aiops@logicmonitor.com">aiops@logicmonitor.com</a> to get started with Edwin AI today!</p>
<h1 id="h-what-s-new-in-unified-experience" class="wp-block-heading">What’s new in Unified Experience</h1>
<h2 id="h-new-user-interface-ga" class="wp-block-heading">New User Interface (GA)</h2>
<p>Introduced over the <a href="https://www.logicmonitor.com//blog/modernizing-monitoring-latest-innovations">summer</a>, our <strong>new user interface</strong> (now GA) has a more modern look and feel. It demonstrates LogicMonitor’s mission of creating an industry-leading Unified Experience across all IT environments: hybrid, cloud, and on-prem.</p>
<p>This quarter, we’ve added a new log dashboard widget that displays logs for a single resource or group of resources. Thus making it easier than ever to share aggregated log information with stakeholders for faster troubleshooting.</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/VViHg_0pu-j5MRiUjhAdemPGIq1NcJLqs7UyQsqGkdZeRl3ClBbc7O516lhk89u_9vYkwdPWCnd8IyaDVLfzl0RiacB36QQpvI9cPOPrvjN1HAxBVGhskyJM9iVwHIEdgWiAZFg-U1ocIlD0Kb0VyA4" alt="" /></figure>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/BEnyQ50VXvZArm9udO3M_oEtXXHgHdrrBaRuwvdgeJ9fYBwPuEte_YAnEuT3cqNIuV16vHcIiUAQ3heMtdp57H65oomA7GCRrqDu0WS8xwD2F4YE_ii5f4TU06yN-CVz_F5bfM4cxry3FF3kLuT0Urk" alt="" /></figure>
<p>LM Envision’s latest features, like the log dashboard widget, are being added exclusively to the new user interface. Simply toggle on the “New UI Preview” button to take advantage of the log dashboard widget and other new features such as:</p>
<ul class="wp-block-list">
<li><a href="https://www.logicmonitor.com/support/resource-explorer">Resource Explorer </a></li>
<li><a href="https://www.logicmonitor.com/support/modern-dashboards">Dynamic Filters</a></li>
<li><a href="https://www.logicmonitor.com/support/alerts/about-alerts/alerts-page-overview#details-panel">Datapoint Analysis</a></li>
<li>and more</li>
</ul>
<p>Click <a href="https://www.logicmonitor.com/blog/hybrid-observability-made-easy-introducing-logicmonitors-new-ui">here</a> for more information on the new UI or visit the <a href="https://www.logicmonitor.com/support/logicmonitor-new-ui-overview">documentation</a>.</p>
<h2 id="h-resource-explorer-ga" class="wp-block-heading">Resource Explorer (GA)</h2>
<p>As highlighted in the <a href="https://www.logicmonitor.com/blog/simplify-scale-logicmonitors-latest-innovations">fall release blog</a>, LM Envision’s new <strong>Resource Explorer</strong> (now in GA) helps operations teams quickly organize and visualize their entire hybrid multi-cloud environment in just a few clicks.</p>
<p>Resource Explorer surfaces key insights into business performance by clearly displaying overall resource and application health. Teams can easily isolate high priority issues for faster speed of execution and greater agility with comprehensive visibility across thousands of resources in a single, organized view. Easily filter and group views based on tags such as location, cloud provider, alerts, and more to spot problems, reduce unplanned downtime, and maintain your service levels.</p>
<p>As a reminder, you must toggle on the new UI to take advantage of Resource Explorer. For more information, watch the <a href="https://www.youtube.com/watch?v=wmQ0BfhDmCA">demo</a> or check out the <a href="https://www.logicmonitor.com/support/resource-explorer">documentation</a>!</p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/wW4ZN_ezXpsDALiICnJXk9aqI0ixnbt9SlFD2I1eXLSkIawBBqQfBRIyBHnPBirFZWgYrPMWJujcbyVjN3B0RCii47c-DcIIHA-2epmMhOwSapoSoSVKzs-y8ZF2J9t1ZTmyGUy_zB6CGCwI2V7DTu4" alt="" /></figure>
<p><strong>Organize on-premises and multi-cloud resources in a single view. </strong></p>
<figure class="wp-block-image"><img decoding="async" src="https://lh7-us.googleusercontent.com/HRTo81zvFofhpyKBZuoid3inirREhLXxacUixed_AeuP7teapEmKJw7rFA1LIqWJ26VcmB0tVdP-xT3aekSDdTTJN7Ywuvawc93ZfiVJZPWM24ZYtB1uhIz_YOOZAW0bkCakPqphdCqCEuGMoDqLhLY" alt="" /></figure>
<p><strong>Drill down into a resource at a known location to isolate an issue.</strong></p>
<h1 id="h-what-s-new-in-hybrid-coverage" class="wp-block-heading">What’s new in Hybrid Coverage</h1>
<h2 id="h-cloud-managed-networking" class="wp-block-heading">Cloud-Managed Networking</h2>
<p>There are many areas in which IT teams are modernizing their network services and infrastructure, including SD-WAN, Cameras, Environmental Sensors, and Wireless Access Points. Whether augmenting or pivoting from MPLS/VPN connectivity services to SDN or embracing cloud-managed networking, LogicMonitor continues to expand its breadth of coverage and deliver on our promise of unified hybrid observability.</p>
<p>Several previously previewed capabilities are now Generally Available, including support for:</p>
<ul class="wp-block-list">
<li>VMware SD-WAN (formerly VeloCloud)</li>
<li>Cisco Catalyst Center-managed Wireless Access Points</li>
<li>Cisco Meraki Wireless Access Points</li>
<li>Cisco Meraki Environmental Sensors</li>
</ul>
<p>Our integration with Cisco Catalyst Center (previously Cisco DNA Center) is of particular note.</p>
<p>For more information, check out these additional resources:</p>
<ul class="wp-block-list">
<li><a href="https://www.logicmonitor.com/sd-wan-monitoring">SD-WAN Monitoring</a></li>
<li><a href="https://apps.meraki.io/en-US/apps/420402/logicmonitor-%7C-lm-envision#features">Meraki Marketplace Listing</a></li>
</ul>
<h1 id="h-forward-together" class="wp-block-heading">Forward Together</h1>
<p>Our journey is far from over. As we continue to innovate, our focus remains on empowering our customers with the solutions and insights needed to achieve operational excellence. Hybrid Observability powered by AI isn’t just what we do—it’s who we are. We’re excited about the future and invite you to join us on this transformative journey.</p>
<p>In our pursuit, we’re not just aiming to lead; we’re striving to change the game. By continuously evolving and adapting, we’re not only meeting the needs of today’s digital world but also shaping the future of IT monitoring.</p>
<p>Welcome to the next chapter in IT innovation. Welcome to LogicMonitor’s vision of Hybrid Observability powered by AI. To learn more about our latest innovations, make sure to join our upcoming webinar, “<a href="https://www.logicmonitor.com/events/unleashing-hybrid-observability-logicmonitors-latest-product-innovations?utm_medium=blog&amp;utm_source=logicmonitor&amp;utm_term=&amp;utm_content=wbn&amp;utm_solution=pl&amp;utm_campaign=hO11y&amp;utm_program=ito&amp;utm_type=lg">Unleashing Hybrid Observability: LogicMonitor’s Latest Product Innovations</a>”</div>
<p><!-- .vgblk-rw-wrapper --></p>
<p>The post <a href="https://dibiz.vn/en/unleashing-hybrid-observability/">Unleashing hybrid observability</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Strengthening API Security: Addressing Vulnerabilities and Emerging Threats</title>
		<link>https://dibiz.vn/en/strengthening-api-security-addressing-vulnerabilities-and-emerging-threats/</link>
		
		<dc:creator><![CDATA[Hiền Nguyễn Đức]]></dc:creator>
		<pubDate>Wed, 09 Oct 2024 09:03:12 +0000</pubDate>
				<category><![CDATA[Ultrared]]></category>
		<guid isPermaLink="false">https://dbiz.vn/?p=990020</guid>

					<description><![CDATA[<p>Introduction In today’s interconnected world, APIs (Application Programming Interfaces) have become the backbone of digital communication, enabling different software systems to interact with one another. From mobile applications to cloud services, APIs facilitate the exchange of data and services seamlessly. However, as APIs grow in importance, so do the risks associated with them. The increasing...</p>
<p>The post <a href="https://dibiz.vn/en/strengthening-api-security-addressing-vulnerabilities-and-emerging-threats/">Strengthening API Security: Addressing Vulnerabilities and Emerging Threats</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="vgblk-rw-wrapper limit-wrapper">
<h2>Introduction</h2>
<p>In today’s interconnected world, APIs (Application Programming Interfaces) have become the backbone of digital communication, enabling different software systems to interact with one another. From mobile applications to cloud services, APIs facilitate the exchange of data and services seamlessly. However, as APIs grow in importance, so do the risks associated with them. The increasing prevalence of API-related security breaches highlights the need for robust security measures.</p>
<h2>What is an API?</h2>
<p>APIs allow different software components to communicate with each other, acting as a bridge between various systems. They enable the creation of complex applications by providing a set of protocols and tools for building software and applications. APIs are essential for the functioning of web services, mobile apps, IoT devices, and more. However, their widespread use also makes them prime targets for attackers.</p>
<h2>Top API Vulnerabilities</h2>
<p>API vulnerabilities are diverse and can lead to severe breaches if not addressed properly. According to the OWASP API Security Top 10, the most common API vulnerabilities include:</p>
<p>1. Broken Object Level Authorization (BOLA) &#8211; Occurs when an API does not properly enforce access controls, allowing attackers to access or modify data they shouldn&#8217;t have access to.</p>
<p>2. Broken Authentication &#8211; This occurs when authentication mechanisms are weak, leading to unauthorized access.</p>
<p>3. Excessive Data Exposure &#8211; APIs often expose more data than necessary, making sensitive information accessible.</p>
<p>4. Security Misconfigurations &#8211; Default, incomplete, or improper configurations that expose the API to attacks.</p>
<p>5. Injection Attacks &#8211; Malicious data is sent to an API, leading to SQL injections, command injections, or other forms of exploitation.</p>
<p>6. Server-Side Request Forgery (SSRF) &#8211; This occurs when an attacker is able to manipulate the API and trigger the server hosting it to make requests to unintended destinations.</p>
<h2>In-Depth Look: BOLA and BFLA Vulnerabilities</h2>
<p>1. Broken Object Level Authorization (BOLA)</p>
<p>BOLA is one of the most critical vulnerabilities in the API security space. It occurs when an API fails to properly check user permissions, allowing attackers to access or manipulate data that they shouldn’t have access to. For example, if a user can access another user’s data by simply changing an ID in the API request, it indicates a BOLA vulnerability.</p>
<p>2. Broken Function Level Authorization (BFLA)</p>
<p>BFLA occurs when an API incorrectly assigns user permissions for accessing certain functions. Unlike BOLA, which deals with object-level access, BFLA is concerned with higher-level functionality. This vulnerability allows unauthorized users to perform restricted operations, potentially causing significant damage.</p>
<h2>API References and Definitions</h2>
<p>When developing and securing APIs, understanding the tools and standards used to define, document, and interact with them is crucial. However, leaving an API documentation exposed is risky, as we will see in our case study.</p>
<p>Here are some of the known specifications and tools, which can be used to automatically generate an API documentation:</p>
<p>● Swagger</p>
<p>Swagger is a framework for designing, building, and documenting RESTful APIs. It allows developers to define their APIs using a standardized format, making it easier to generate interactive API documentation and client libraries. Swagger&#8217;s user-friendly interface simplifies testing and interaction with APIs.</p>
<p>● OpenAPI</p>
<p>The OpenAPI Specification (OAS) is a standard for defining RESTful APIs. It provides a structured way to describe your API, including endpoints, request/response formats, and authentication methods. OpenAPI builds on Swagger and has become the industry standard for API documentation, ensuring consistency and clarity across different APIs.</p>
<p>● WSDL (Web Services Description Language)</p>
<p>WSDL is an XML-based language used for describing web services, particularly SOAP-based services. It defines the operations that the service offers, the messages it accepts and returns, and the binding details needed for communication. Although more commonly associated with older SOAP services, WSDL remains relevant for certain enterprise environments.</p>
<p>● ASP.NET Web API Help Page</p>
<p>ASP.NET Web API Help Page is a built-in feature in ASP.NET that automatically generates help documentation for your API. It provides detailed information about your API endpoints, including parameter descriptions and sample responses, making it easier for developers to understand and use the API.</p>
<p>● GraphQL Introspection</p>
<p>GraphQL Introspection is a powerful feature that allows clients to query a GraphQL API for its schema. This means that developers can retrieve detailed information about available types, fields, and operations directly from the API, enabling dynamic querying and a better understanding of the API&#8217;s capabilities.</p>
<h2>Exposed API Documentation is Risky</h2>
<p>While API documentation is essential for developers, leaving it publicly accessible without proper controls can expose your system to significant risks, starting from Information Disclosure to Unauthorized Access, Injections, and more.</p>
<p>Case Study: Vulnerabilities Automatically Detected by ULTRA RED</p>
<p>● CVE-2023-39375: This vulnerability is related to BOLA, where improper authorization checks allowed unauthenticated attackers to create a new user admin.</p>
<p>● CVE-2023-39376: A BOLA vulnerability which allowed unauthenticated attackers to disable security measures applied by the application.</p>
<p>● CVE-2024-41702: An SQL Injection vulnerability in an API login endpoint, where JSON object injection led to unsanitized values being passed to an SQL query.</p>
<p>● Personal Identifiable Information (PII) Exposure: A BFLA vulnerability which allowed an attacker to access other user resources, specifically employees of a large company, and expose highly sensitive PII, including Protected Health Information (PHI).</p>
<figure class="w-richtext-align-center w-richtext-figure-type-image">
<div><img decoding="async" src="https://cdn.prod.website-files.com/637b663c358cda75e0db1706/66e82e291c50c759990c3da2_66e69e90587c0f3e14066929_%25D7%2599%25D7%2595%25D7%25AA%25D7%259D1.png" alt="" /></div>
</figure>
<p>● Vector Type &#8211; Server Side Request Forgery (SSRF)</p>
<p>Summary: SSRF could be critical, especially when it is reflected. In our case, we could use SSRF to fetch cloud metadata and get initial access to the client’s cloud environment.</p>
<p>Detection: The system is programmed to automatically parse the API Definitions that we mentioned earlier and scan the endpoints for vulnerabilities. Unfortunately for the client, there was one API request that laid bare a critical vulnerability.</p>
<p>The vulnerability allowed an attacker to send email messages to other users, originating from the API vendor’s trusted mail server!</p>
<p>We tested the parameter for SSRF, and got a successful callback.</p>
<p>But there is more &#8211; the attacker could attach files to each email message by supplying a list of URLs.</p>
<p>In the image below, we see that the request is sent to the /api/Email/Send Email endpoint, which includes parameters such as Address, Emails, CCs, and BCCs. For this example, we&#8217;ve populated these fields with placeholder email addresses using a domain generated by Interactsh.</p>
<p>We tried a few common and interesting endpoints for SSRF, such as the AWS metadata endpoint &#8211; we filled in the AWS metadata URL http://169.254.169.254/latest/meta-data as a file attachment:</p>
<figure class="w-richtext-align-center w-richtext-figure-type-image">
<div><img decoding="async" src="https://cdn.prod.website-files.com/637b663c358cda75e0db1706/66e82e8aa06c8a9b497555a6_66e69ec56329057d122f761e_%25D7%2599%25D7%2595%25D7%25AA%25D7%259D2.png" alt="" /></div>
</figure>
<p>Ok, so the request has been successful because we got the ‘isSuccess’ parameter as true.</p>
<p>I used Interactsh to check if the file is sent, but a temporary mail can also be used:</p>
<figure class="w-richtext-align-center w-richtext-figure-type-image">
<div><img decoding="async" src="https://cdn.prod.website-files.com/637b663c358cda75e0db1706/66e69f866d19a720b73071da_66e69ef18571dee6d3e005a5_%25D7%2599%25D7%2595%25D7%25AA%25D7%259D3.png" alt="" /></div>
</figure>
<p>We can see we got the SMTPinteraction. A second-order SSRF was found!In verbose mode we can see the base64 encoded content:</p>
<figure class="w-richtext-align-center w-richtext-figure-type-image">
<div><img decoding="async" src="https://cdn.prod.website-files.com/637b663c358cda75e0db1706/66e69f866d19a720b73071d2_66e69f25e8b694847b306f9e_%25D7%2599%25D7%2595%25D7%25AA%25D7%259D4.png" alt="" /></div>
</figure>
<p>We can now take the encoded data, decode it and see that we could successfully access the instance metadata endpoint:</p>
<figure class="w-richtext-align-center w-richtext-figure-type-image">
<div><img decoding="async" src="https://cdn.prod.website-files.com/637b663c358cda75e0db1706/66e69f866d19a720b73071d6_66e69f4cd8dc89da9c14d5f0_%25D7%2599%25D7%2595%25D7%25AA%25D7%259D5.png" alt="" /></div>
</figure>
<h2>Securing Your APIs</h2>
<p>To mitigate these vulnerabilities, here are some best practices:</p>
<p>● Implement strong authentication and authorization mechanisms.</p>
<p>● Follow the principle of least privilege to restrict access.</p>
<p>● Validate and sanitize all inputs to prevent injection attacks.</p>
<p>● Use rate limiting and monitoring to detect unusual activity.</p>
<p>● Regularly update and patch APIs to address known vulnerabilities.</p>
<p>● Introduce scanning tools (such as ULTRA RED) to automatically detect known and unknown vulnerabilities.</p>
<h2>Conclusion</h2>
<p>As APIs continue to expand, securing them becomes paramount. By understanding common OWASP API top 10 vulnerabilities, and implementing robust security measures, organizations can protect their digital assets and ensure that their APIs remain secure.</p>
<p>&#x200d;</p></div>
<p><!-- .vgblk-rw-wrapper --></p>
<p>The post <a href="https://dibiz.vn/en/strengthening-api-security-addressing-vulnerabilities-and-emerging-threats/">Strengthening API Security: Addressing Vulnerabilities and Emerging Threats</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Protecting the ‘Bottom Line’ in Your External Attack Surface</title>
		<link>https://dibiz.vn/en/protecting-the-bottom-line-in-your-external-attack-surface/</link>
		
		<dc:creator><![CDATA[Hiền Nguyễn Đức]]></dc:creator>
		<pubDate>Wed, 09 Oct 2024 09:02:46 +0000</pubDate>
				<guid isPermaLink="false">https://dbiz.vn/?p=990018</guid>

					<description><![CDATA[<p>In the first half of 2024, we continue to see the ripple effects of the significant cybersecurity challenges that emerged in 2023. Last year, data breaches escalated to unprecedented levels, setting a troubling precedent that has only intensified. The complexity and severity of cyberattacks—including social engineering, ransomware, and DDoS attacks—have surged, driven largely by hackers...</p>
<p>The post <a href="https://dibiz.vn/en/protecting-the-bottom-line-in-your-external-attack-surface/">Protecting the ‘Bottom Line’ in Your External Attack Surface</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="vgblk-rw-wrapper limit-wrapper">In the first half of 2024, we continue to see the ripple effects of the significant cybersecurity challenges that emerged in 2023. Last year, data breaches escalated to unprecedented levels, setting a troubling precedent that has only intensified. The complexity and severity of cyberattacks—including social engineering, ransomware, and DDoS attacks—have surged, driven largely by hackers leveraging AI tools.</p>
<p>&nbsp;</p>
<p>As we move further into 2024, these trends show no signs of slowing, making cybersecurity more critical than ever. The MTrends report from Mandiant highlights the importance of Continuous Threat Exposure Management (CTEM), revealing that 38% of successful breaches stem from an initial infection vector via exploitation. This underscores the urgent need for robust cybersecurity strategies to combat evolving threats.</p>
<p>&nbsp;</p>
<p>In recent years, we have seen a steady rise in breach costs. Remote work introduced new security vulnerabilities that hackers exploited, significantly expanding the cyberthreat landscape. The growing prevalence of malware and hackers across various industries has made anyone online more vulnerable to breaches. The sheer number of criminal adversaries and potential entry points makes containment and mitigation increasingly difficult. Unfortunately, cyber statistics in 2024 are expected to remain much the same.</p>
<p>&nbsp;</p>
<p>According to the<a href="https://www.veeam.com/blog/announcing-rw24.html"> </a>Veeam Ransomware Trends Report 2024, which surveyed 1,200 CISOs, security professionals, and backup administrators who faced ransomware attacks in 2023, many organizations remain unprepared for recovery despite having incident response plans and policies in place. This lack of preparedness poses a significant risk not only to the company&#8217;s reputation, employee morale, and productivity but also to its bottom line. Int he context of CTEM, it’s imperative for businesses to priorities proactive and comprehensive security measures. By addressing these pressing vulnerabilities, organizations can safeguard their financial stability, maintain operational resilience, and protect their business interests in an increasingly hostile cyber environment.</p>
<h2>The Role of EASM in Risk andGovernance</h2>
<p>&nbsp;</p>
<p>External Attack Surface Management (EASM) plays a critical role in identifying and managing the multifarious risks that organizations face. By leveraging extensive internet telemetry data, EASM solutions offer a comprehensive view of an organization&#8217;s external digital footprint. This approach provides essential insights into potential vulnerabilities and security gaps, forming the basis for robust governance structures.</p>
<p>&nbsp;</p>
<p>While External Attack Surface Management (EASM) is a crucial part of the defense strategy, it&#8217;s important to note its limitations. EASM, which relies on internet telemetry data, can&#8217;t provide a real-time understanding of what a threat actor could potentially exploit in your system today.</p>
<p>&nbsp;</p>
<p>Each day, the threat landscape evolves with new vulnerabilities, exploits, and methods to by pass security measures. This dynamic environment demands a solution that can keep pace. ULTRARED Continuous Threat Exposure Management (CTEM) solution is designed to do just that, going beyond traditional EASM to provide proactive protection.</p>
<h2>How ULTRARED CTEM ImprovesTraditional EASM for Real-Time Threat Intelligence</h2>
<p>ULTRARED CTEM  solution proactively addresses the limitations of traditional EASM by offering real-time threat intelligence and validation. CTEM provides the situational awareness necessary to understand the current threat landscape and how it impacts your organization today. Through continuous scanning and validation, ULTRARED&#8217;s CTEM identifies exploitable exposures, enabling organisations to respond swiftly and effectively.</p>
<p>ULTRARED&#8217;s approach goes beyond merely highlighting vulnerabilities. It provides actionable insights into there mediation and mitigation processes, ensuring that organizations can address threats promptly. By integrating  CTEM into your security framework, you gain a dynamic and responsive defense mechanism that not only responds to but also evolves with the threat landscape.</p>
<p>The ultimate goal of any security strategy is to protect the organisation&#8217;s bottom line. Cyber threats can have significant financial implications, from direct financial losses due to breaches to the indirect costs associated with reputation damage and regulatory fines. By leveraging ULTRARED&#8217;s comprehensive suite of tools, including Automated Adversary Emulation, EASM, CTI, and Automated Breach and Attack Simulation (ABAS), organizations can build a robust security posture that not only safeguards their critical assets but also saves them money in the long run.</p>
<h2>Protecting Your Bottom Linewith ULTRARED’s CTEM</h2>
<p>ULTRARED’s technologies empower hands-on operators with verified cyber intelligence, enabling them to identify and actionable cyber challenges. This proactive approach not only enhances security but also supports overall business resilience, ensuring that organisations can continue to operate effectively even in the face of evolving cyber threats.</p>
<p>To learn more about how ULTRARED AI can help secure your external attack surface and protect your bottom line, book a call with our experts today. Together, we can build a robust security strategy tailored to your organization&#8217;s needs.</p></div>
<p><!-- .vgblk-rw-wrapper --></p>
<p>The post <a href="https://dibiz.vn/en/protecting-the-bottom-line-in-your-external-attack-surface/">Protecting the ‘Bottom Line’ in Your External Attack Surface</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Understanding Exploitation Likelihood: A Smarter Approach to Cybersecurity</title>
		<link>https://dibiz.vn/en/understanding-exploitation-likelihood-a-smarter-approach-to-cybersecurity/</link>
		
		<dc:creator><![CDATA[Hiền Nguyễn Đức]]></dc:creator>
		<pubDate>Wed, 09 Oct 2024 09:02:26 +0000</pubDate>
				<guid isPermaLink="false">https://dbiz.vn/?p=990016</guid>

					<description><![CDATA[<p>Introduction In the world of cybersecurity, prioritizing which vulnerabilities to tackle can feel like trying to hit a moving target. Severity scores have their place, but they don’t always tell the full story. Enter Exploitation Likelihood—a new metric that zeroes in on what really matters: the actual chance that a vulnerability will be exploited. This isn’t...</p>
<p>The post <a href="https://dibiz.vn/en/understanding-exploitation-likelihood-a-smarter-approach-to-cybersecurity/">Understanding Exploitation Likelihood: A Smarter Approach to Cybersecurity</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="vgblk-rw-wrapper limit-wrapper"><strong>Introduction</strong></p>
<p>In the world of cybersecurity, prioritizing which vulnerabilities to tackle can feel like trying to hit a moving target. Severity scores have their place, but they don’t always tell the full story. Enter <strong>Exploitation Likelihood</strong>—a new metric that zeroes in on what really matters: the actual chance that a vulnerability will be exploited. This isn’t just another number on a dashboard; it’s a game-changer for how you approach security.</p>
<h3><strong>Strategic Benefits</strong></h3>
<h4><strong>1. Get Smart About Where You Focus Your Efforts</strong></h4>
<p>You’ve got limited resources and a mountain of potential vulnerabilities to address. Not all threats are created equal, so why treat them like they are? <strong>Exploitation Likelihood</strong> changes the game by helping you focus on the vulnerabilities that are most likely to be attacked. It’s about working smarter, not harder.</p>
<ul role="list">
<li><strong>Sharp Decision-Making</strong>: With this metric, you’re making decisions based on what’s actually likely to happen, not just on what looks scary on paper.</li>
<li><strong>Efficient Use of Resources</strong>: By homing in on the most probable threats, you’re ensuring your team’s time and energy are spent where they’ll have the most impact.</li>
</ul>
<h4><strong>2. Stay Ahead of the Curve with Better Intelligence</strong></h4>
<p>The threats you face today aren’t the same as they were yesterday, and they won’t be the same tomorrow. <strong>Exploitation Likelihood</strong> taps into the latest intelligence, blending the predictive power of First’s EPSS (Exploit Prediction Scoring System) with real-world OSINT (Open Source Intelligence) data. The result? You get a clear picture of where the real risks lie.</p>
<ul role="list">
<li><strong>Predictive Insights</strong>: Think of this as your crystal ball—an informed look into which vulnerabilities are most likely to be exploited next.</li>
<li><strong>Real-World Relevance</strong>: By pulling in data from the wild, you’re not just guessing; you’re making decisions based on what’s actually happening out there.</li>
</ul>
<h4><strong>3. Shift from Defense to Offense</strong></h4>
<p>Let’s face it: the days of purely reactive cybersecurity are over. If you’re not thinking ahead, you’re falling behind. <strong>Exploitation Likelihood</strong> puts you in the driver’s seat, letting you anticipate and neutralize threats before they become full-blown problems.</p>
<ul role="list">
<li><strong>Proactive Protection</strong>: This isn’t about waiting for something to go wrong. With Exploitation Likelihood, you’re taking steps to prevent incidents before they occur.</li>
<li><strong>Focused Response</strong>: When something does go wrong, this metric guides you straight to the heart of the issue, so you can respond swiftly and effectively.</li>
</ul>
<h3><strong>Why Exploitation Likelihood Matters</strong></h3>
<h4><strong>1. Take the Guesswork Out of Risk Management</strong></h4>
<p>Let’s be real—managing risk can feel like spinning plates. <strong>Exploitation Likelihood</strong> helps you keep those plates in the air by giving you a clear, data-driven understanding of where the real dangers are. It’s not just about severity; it’s about likelihood, too.</p>
<ul role="list">
<li><strong>Contextualized Understanding</strong>: When you know how likely a vulnerability is to be exploited, you’re not just managing risk—you’re mastering it.</li>
<li><strong>Strategic Planning</strong>: With this insight, your security strategy isn’t just reactive; it’s precise and targeted.</li>
</ul>
<h4><strong>2. Align with What the Industry Experts Are Saying</strong></h4>
<p>If you’re following Gartner and other industry leaders, you know that risk-based vulnerability management is the way to go. <strong>Exploitation Likelihood</strong> fits perfectly into this framework, offering a quantifiable way to measure and manage your risk.</p>
<ul role="list">
<li><strong>Stay Compliant</strong>: By integrating this metric, you’re not just protecting your systems; you’re aligning with industry best practices and regulatory expectations.</li>
<li><strong>Measure What Matters</strong>: Finally, a metric that gives you a real benchmark for the effectiveness of your security efforts.</li>
</ul>
<h3><strong>Conclusion</strong></h3>
<p><strong>Exploitation Likelihood</strong> isn’t just a new buzzword; it’s a smarter, more strategic way to manage cybersecurity. By focusing on what’s likely to happen rather than what’s merely possible, you’re not just staying ahead of the curve—you’re redefining it. For those who want to do more than just keep up with the ever-evolving threat landscape, this is your opportunity to lead. Ready to take your security strategy to the next level? Let’s talk.</div>
<p><!-- .vgblk-rw-wrapper --></p>
<p>The post <a href="https://dibiz.vn/en/understanding-exploitation-likelihood-a-smarter-approach-to-cybersecurity/">Understanding Exploitation Likelihood: A Smarter Approach to Cybersecurity</a> appeared first on <a href="https://dibiz.vn/en/">Deliver Intelligence - Dibiz JSC</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
