Connect with us

Technology

SquareX Discovers New Cybersecurity Attacks that Completely Bypass Secure Web Gateways (SWG), Leaving Most Enterprises Vulnerable.

Published

on

SINGAPORE, Aug. 6, 2024 /PRNewswire/ — SquareX Founder, Vivek Ramachandran, cybersecurity veteran with over 20 years of experience and founder/ex-CEO of Pentester Academy (acquired by INE), together with the security research team, will be delivering their latest findings in an upcoming main stage talk, titled Breaking Secure Web Gateways (SWG) for Fun and Profit! at DEF CON 32 on Friday, August 9, 2024 at 5pm PT.

The talk will unveil “Last Mile Reassembly Attacks”, a new class of attacks that completely evade Secure Web Gateways (SWGs), a crucial component of modern Secure Access Service Edge (SASE) and Security Service Edge (SSE) solutions.

The web browser is the most used application within the enterprise but also the least protected. Bad actors are now increasingly targeting the weakest link: employees and consultants.

Unfortunately, most of these attacks happen online when the employee or consultant is going about his daily work. Existing security solutions like SWGs as part of SASE/SSE solutions are unable to protect users against modern web threats that happen on the client side. This makes it currently impossible for enterprise security teams to detect, mitigate and threat hunt these attacks.

Vivek Ramachandran and the SquareX team have conceptualized and identified a new class of attacks against SWG and cloud-based intercepting proxies, converting traditional attacks like malware downloads and malicious websites into something undetectable by all existing vendors in the Gartner Magic Quadrant.

This class of attack is called “Last Mile Reassembly Attacks”. The vulnerabilities the team discovered are architectural and vendor-agnostic, meaning there is no specific way to fix them.

These attacks will have a massive impact on SASE, as it is a $40 billion market, and every large security vendor has an SWG product vulnerable to this new class of attacks. This is an industry-first research highlighting attacks that we suspect may have been circulating in the wild for some time. As these client-side attacks are fundamentally different in nature to the attacks that SWGs typically detect, they have remained unnoticed. Upon revealing these attacks and the release of the accompanying toolkit, enterprise vendors can assess their security posture and build countermeasures.

During the main stage talk, Vivek will shed light on this “Last Mile Reassembly Attacks” – where a file download, upload or site rendering never actually happens on the server side. Instead, the attack is assembled directly in the user’s browser using various techniques, which will be explained in detail during the talk. This way, malicious files can evade triggering SWGs, leaving many enterprises across the globe vulnerable to being attacked.

Researchers at SquareX will also demonstrate over 25 plus bypass methods-, including chunking attacks, WASM payloads, and others.

“The research team and I are excited to be presenting the talk at DEF CON 32. This talk will challenge SASE, SSE vendors in the current space. We hope that vendors will rethink their reliance on cloud-based web attack detection models and understand the need for a client-side (either endpoint or browser-based) security agent and browser-hardening to work in tandem with the SWG for accurate detection-mitigation of attacks,” says Vivek Ramachandran, Founder & CEO of SquareX.

Web attacks have far advanced and evolved in today’s world and if enterprises do not change the way they protect their users, they will essentially be vulnerable to these web threats and attacks. SquareX is dedicated to enhancing online security for enterprises. By bringing these vulnerabilities to light and advocating for a more comprehensive approach to browser security, the team’s research serves as a critical alert to the cybersecurity community.

The revealing of “Last Mile Reassembly Attacks” and the release of the accompanying toolkit are poised to challenge the way enterprise security teams think and will prompt enterprises to reassess their methods for protecting employees from browser-based attacks.

About SquareX:
SquareX helps organizations detect, mitigate and threat-hunt web attacks happening against their users in real time. With our innovative browser-native security product, SquareX safeguards enterprise users from a spectrum of web-based threats, encompassing malicious files, websites, scripts, and compromised networks.

About Vivek Ramachandran:
Vivek Ramachandran is a security researcher, book author, speaker-trainer, and serial entrepreneur with over two decades of experience in offensive cybersecurity. He is currently the founder of SquareX, building a browser-native security product focused on detecting, mitigating, and threat-hunting web attacks against enterprise users and consumers. Prior to that, he was the founder of Pentester Academy (acquired in 2021), which has trained thousands of customers from government agencies, Fortune 500 companies, and enterprises from over 140+ countries. Before that, Vivek’s company built an 802.11ac monitoring product sold exclusively to defense agencies.

Vivek discovered the Caffe Latte attack, broke WEP Cloaking, conceptualized enterprise Wi-Fi Backdoors, and created Chellam (Wi-Fi Firewall), WiMonitor Enterprise (802.11ac monitoring), Chigula (Wi-Fi traffic analysis via SQL), Deceptacon (IoT Honeypots), among others. He is the author of multiple five-star-rated books in offensive cybersecurity, which have sold thousands of copies worldwide and have been translated into multiple languages.

He has been a speaker/trainer at top security conferences such as Blackhat USA, Europe and Abu Dhabi, DEFCON, Nullcon, Brucon, HITB, Hacktivity, and others. Vivek’s work in cybersecurity has been covered in Forbes, TechCrunch, and other popular media outlets.

In a past life, he was one of the programmers of the 802.1x protocol and Port Security in Cisco’s 6500 Catalyst series of switches. He was also one of the winners of the Microsoft Security Shootout contest held in India among a reported 65,000 participants. He has also published multiple research papers in the field of DDoS, ARP Spoofing Detection, and Anomaly-based Intrusion Detection Systems. In 2021, he was awarded an honorary title of Regional Director of Cybersecurity by Microsoft for a period of three years, and in 2024 he joined the BlackHat Arsenal Review Board.
 

View original content to download multimedia:https://www.prnewswire.com/news-releases/squarex-discovers-new-cybersecurity-attacks-that-completely-bypass-secure-web-gateways-swg-leaving-most-enterprises-vulnerable-302214112.html

SOURCE SquareX

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

FranklinWH Introduces Enhanced 15 kWh aPower in Australia and New Zealand

Published

on

By

Expansion comes as policy shifts and rising power costs accelerate demand for residential energy storage

SYDNEY, May 4, 2026 /PRNewswire/ — FranklinWH, a leading provider of whole-home energy management and battery storage solutions, today announced the launch of its enhanced 15 kWh aPower battery in Australia and New Zealand, as demand for residential energy storage continues to grow, driven by evolving policy settings and increasing interest in energy independence.

The updated aPower builds on the company’s established platform, increasing usable capacity from 13.6 kWh to 15 kWh and raising warrantied throughput from 43 MWh to 60 MWh, an increase of 40 percent. These updates deliver more usable energy over the life of the system while maintaining the same footprint and price.

“The energy landscape is shifting quickly, and more homeowners are thinking beyond the upfront specs to what really pays off over time,” said Steve Ruskin, General Manager of FranklinWH Australia. “This upgrade is about delivering more performance over the life of the system, more usable energy, greater throughput, while staying true to our ‘buy once, buy right’ philosophy.”

The increase in warrantied throughput translates into savings for homeowners. Based on typical usage patterns and an electricity rate of A$0.35 per kilowatt-hour, the additional throughput may represent up to approximately A$5,950 in value over the lifetime of the system. The increase in usable capacity also improves energy density, lowering the effective cost per kilowatt-hour and supporting more efficient use of stored energy.

The 15 kWh configuration also aligns with current and upcoming policy frameworks benefitting residential battery adoption. This includes the updated Cheaper Home Batteries Program, with changes coming into effect for Australian homeowners from 1 May, 2026, helping households maximise value as incentives continue to evolve.

As the residential battery market expands, FranklinWH continues to focus on reliability and system performance. The aPower incorporates design elements to support durability, including structural reinforcement to reduce cell stress over time, per-cell temperature monitoring, and the separation of the battery pack and control systems to maintain reliable performance.

“We believe performance should be measured over years, not just at installation,” Ruskin added. “We focus on building systems that deliver consistent, reliable results over time. That long-term perspective is what ultimately defines value for homeowners.”

The aPower is designed to operate as part of the FranklinWH System, an integrated home energy management platform that coordinates energy generation, storage, and consumption. The system is designed to optimise multiple energy inputs, provide reliable backup power, and support more efficient and independent energy use at the household level.

About FranklinWH

FranklinWH Energy Storage is the manufacturer of the FranklinWH System. FranklinWH is a market-oriented, research-driven company focused on next-generation residential energy management and storage solutions. Located in Macquarie Park, Sydney with a global head office in the San Francisco Bay Area, FranklinWH’s team has decades of experience in energy systems, from design, through manufacturing, to sales and installation. FranklinWH is AVL-listed with multiple financial institutions.

Contact: Media@franklinwh.com

View original content to download multimedia:https://www.prnewswire.com/apac/news-releases/franklinwh-introduces-enhanced-15-kwh-apower-in-australia-and-new-zealand-302759086.html

SOURCE FranklinWH Australia Pty Ltd

Continue Reading

Technology

Peninsula Visa Launches Comprehensive OCI Processing Services

Published

on

By

Peninsula Visa, a trusted leader in immigration and visa processing services with over 50 years of expertise, today announced the launch of its comprehensive Overseas Citizen of India (OCI) processing services. To celebrate this milestone, Peninsula Visa is offering new users an exclusive 20% discount with promo code OCI20 at checkout.

SAN JOSE, Calif., May 3, 2026 /PRNewswire-PRWeb/ — Peninsula Visa, a trusted leader in immigration and visa processing services with over 50 years of expertise, today announced the launch of its comprehensive Overseas Citizen of India (OCI) processing services. To celebrate this milestone, Peninsula Visa is offering new users an exclusive 20% discount with promo code OCI20 at checkout.

For 50 years, Peninsula Visa has helped families navigate immigration. OCI processing is one of our most impactful services, connecting the Indian diaspora to their heritage. We’re proud to bring our expertise to help families secure OCI status with confidence. Evan James, CEO

A Full Suite of OCI Services

Peninsula Visa’s OCI services cover every stage of the OCI lifecycle, ensuring that members of the Indian diaspora receive expert support from start to finish.

The four service types now available are:

New OCI Application — For foreign nationals of Indian origin, spouses of Indian citizens or existing OCI card holders, and minor children with at least one Indian parent applying for OCI status for the first time.OCI Card Renewal — For card holders whose OCI card has expired, or whose linked passport has been renewed or replaced and requires an updated booklet.Re-issuance (Age Milestones) — OCI cards must be re-issued when minors reach the age of 18 and again when card holders turn 50, due to significant changes in appearance. Peninsula Visa guides clients through both transitions seamlessly.Miscellaneous OCI Services — Covering corrections to existing records, lost or damaged card replacement, address changes, and other administrative updates to the OCI file.

Why Choose Peninsula Visa for Your OCI Application

Peninsula Visa brings decades of institutional knowledge and a client-first philosophy to every OCI case.

Key value propositions include:

Expert Guidance — Dedicated OCI specialists with deep knowledge of consulate requirements, eligibility rules, and documentation standards across all service types.High Approval Rate — A meticulous multi-stage review process that identifies and resolves issues before submission, dramatically reducing the likelihood of rejection or delay.Fast Turnaround — Standard processing in 12-15 Business Days for most OCI service types, with real-time status updates throughout the process.End-to-End Support — Personalized document checklists, secure document uploads, expert form preparation, consulate submission, and post-submission tracking — all in one place.

Launch Promotion

Save 20% on any OCI service — new users only

OCI20

Enter code OCI20 at checkout. Available to new users. No expiration date.

Leadership Perspective

“For 50 years, Peninsula Visa has helped individuals and families navigate the complexities of immigration documentation. OCI processing is one of the most impactful services we have ever added — it directly connects the Indian diaspora to their heritage country in a lasting, meaningful way. We are proud to bring our proven expertise and client-centric approach to this important service, and we look forward to helping thousands of families secure their OCI status with confidence.”

Founded in 1975, Peninsula Visa has built its reputation on precision, transparency, and a genuine commitment to client outcomes. The addition of OCI processing services reflects the company’s ongoing mission to expand its offerings to meet the evolving needs of immigrants and their families across the United States.

Get Started Today

Eligible applicants can begin their OCI journey by visiting Peninsula Visa’s dedicated OCI Services page. New users can take advantage of the 20% launch discount by entering promo code OCI20 at checkout when selecting any OCI service type.

Media Contact

Evan James, Peninsula Visa, 1 4087277515, media@peninsulavisa.com, https://peninsulavisa.com/

View original content to download multimedia:https://www.prweb.com/releases/peninsula-visa-launches-comprehensive-oci-processing-services-302760544.html

SOURCE Peninsula Visa

Continue Reading

Technology

Peninsula Visa Launches Comprehensive OCI Processing Services

Published

on

By

Peninsula Visa, a trusted leader in immigration and visa processing services with over 50 years of expertise, today announced the launch of its comprehensive Overseas Citizen of India (OCI) processing services. To celebrate this milestone, Peninsula Visa is offering new users an exclusive 20% discount with promo code OCI20 at checkout.

SAN JOSE, Calif., May 3, 2026 /PRNewswire-PRWeb/ — Peninsula Visa, a trusted leader in immigration and visa processing services with over 50 years of expertise, today announced the launch of its comprehensive Overseas Citizen of India (OCI) processing services. To celebrate this milestone, Peninsula Visa is offering new users an exclusive 20% discount with promo code OCI20 at checkout.

For 50 years, Peninsula Visa has helped families navigate immigration. OCI processing is one of our most impactful services, connecting the Indian diaspora to their heritage. We’re proud to bring our expertise to help families secure OCI status with confidence. Evan James, CEO

A Full Suite of OCI Services

Peninsula Visa’s OCI services cover every stage of the OCI lifecycle, ensuring that members of the Indian diaspora receive expert support from start to finish.

The four service types now available are:

New OCI Application — For foreign nationals of Indian origin, spouses of Indian citizens or existing OCI card holders, and minor children with at least one Indian parent applying for OCI status for the first time.OCI Card Renewal — For card holders whose OCI card has expired, or whose linked passport has been renewed or replaced and requires an updated booklet.Re-issuance (Age Milestones) — OCI cards must be re-issued when minors reach the age of 18 and again when card holders turn 50, due to significant changes in appearance. Peninsula Visa guides clients through both transitions seamlessly.Miscellaneous OCI Services — Covering corrections to existing records, lost or damaged card replacement, address changes, and other administrative updates to the OCI file.

Why Choose Peninsula Visa for Your OCI Application

Peninsula Visa brings decades of institutional knowledge and a client-first philosophy to every OCI case.

Key value propositions include:

Expert Guidance — Dedicated OCI specialists with deep knowledge of consulate requirements, eligibility rules, and documentation standards across all service types.High Approval Rate — A meticulous multi-stage review process that identifies and resolves issues before submission, dramatically reducing the likelihood of rejection or delay.Fast Turnaround — Standard processing in 12-15 Business Days for most OCI service types, with real-time status updates throughout the process.End-to-End Support — Personalized document checklists, secure document uploads, expert form preparation, consulate submission, and post-submission tracking — all in one place.

Launch Promotion

Save 20% on any OCI service — new users only

OCI20

Enter code OCI20 at checkout. Available to new users. No expiration date.

Leadership Perspective

“For 50 years, Peninsula Visa has helped individuals and families navigate the complexities of immigration documentation. OCI processing is one of the most impactful services we have ever added — it directly connects the Indian diaspora to their heritage country in a lasting, meaningful way. We are proud to bring our proven expertise and client-centric approach to this important service, and we look forward to helping thousands of families secure their OCI status with confidence.”

Founded in 1975, Peninsula Visa has built its reputation on precision, transparency, and a genuine commitment to client outcomes. The addition of OCI processing services reflects the company’s ongoing mission to expand its offerings to meet the evolving needs of immigrants and their families across the United States.

Get Started Today

Eligible applicants can begin their OCI journey by visiting Peninsula Visa’s dedicated OCI Services page. New users can take advantage of the 20% launch discount by entering promo code OCI20 at checkout when selecting any OCI service type.

Media Contact

Evan James, Peninsula Visa, 1 4087277515, media@peninsulavisa.com, https://peninsulavisa.com/

View original content to download multimedia:https://www.prweb.com/releases/peninsula-visa-launches-comprehensive-oci-processing-services-302760544.html

SOURCE Peninsula Visa

Continue Reading

Trending