Google Strengthens Gmail Security with New Client-Side Encryption for Business Users
Google is significantly boosting the email security of its Workspace Enterprise Plus customers by rolling out client-side encryption capabilities for Gmail.
This new feature offers UK businesses, particularly those in regulated industries, an essential new layer of defense against sophisticated cyber threats.
The timing of this release is crucial, following a wave of high-profile cyber-attacks this summer that targeted major retailers and caused severe operational disruption and the exposure of sensitive customer data.
For startups, which may lack the advanced in-house defenses of larger corporations, this new offering from Google provides an accessible line of protection for their business email communications.
The security technology being offered is known as E2EE, or end-to-end encryption.
As Google explained, this system allows for "secure communication without the hassle of exchanging keys or using custom software."
Users who have the service enabled can simply select an option to add this additional encryption when composing a new email.
It is important to note that this selection must be made before drafting the email, as attempting to add encryption to an already-started message will delete the draft.
The extra encryption can also be easily toggled off by the user.
The system is designed to work seamlessly, even when sending highly sensitive, encrypted emails to recipients using other email providers.
When an external recipient receives an encrypted message, they are notified and gain access via a guest account.
As the redirection is necessary because "Google has no control over recipients’ infrastructure on other providers," this mechanism ensures the security of the communication is maintained from end-to-end.
Google stresses that the setup for this enhanced security requires "minimal efforts for both IT teams and end users," while still preserving enhanced data sovereignty and privacy controls.
The necessity for email encryption stems from the vital role it plays as a layer of defense against cyber-attacks, specifically guarding against data leaks and zero-day exploits.
Encryption fundamentally works by randomizing data so that only the intended recipient can decode it, protecting information while it resides in inboxes and, critically, while it is in transit.
For organizations, this protection is crucial for all sensitive communications, including financial details and, most importantly, customer data.
Strong encryption helps businesses meet key compliance regulations, such as GDPR, which are in place to safeguard consumer privacy.
The financial impact of a security breach highlights why this new feature is so valuable.
According to a Vodafone Business report on the impact of cybercrime on small and medium-sized enterprises (SMEs), the average cost of a cyber-attack for a small business was £3,398, escalating to over £5,000 for mid-sized firms.
By offering client-side encryption, Google is providing its Enterprise Plus customers with a powerful, accessible tool to mitigate the risk of such breaches, offering peace of mind to businesses navigating an increasingly hostile digital landscape.
Google ने व्यावसायिक उपयोगकर्ताओं के लिए नए क्लाइंट-साइड एन्क्रिप्शन के साथ Gmail सुरक्षा को मज़बूत किया
Google, Gmail के लिए क्लाइंट-साइड एन्क्रिप्शन क्षमताएँ पेश करके अपने Workspace Enterprise Plus ग्राहकों की ईमेल सुरक्षा को काफ़ी बेहतर बना रहा है।
यह नई सुविधा ब्रिटेन के व्यवसायों, विशेष रूप से विनियमित उद्योगों में कार्यरत व्यवसायों को, जटिल साइबर खतरों से सुरक्षा का एक आवश्यक नया स्तर प्रदान करती है।
इस गर्मी में बड़े खुदरा विक्रेताओं को निशाना बनाकर किए गए कई हाई-प्रोफाइल साइबर हमलों के बाद, इस सुविधा को जारी करने का समय महत्वपूर्ण है, जिससे गंभीर परिचालन व्यवधान और संवेदनशील ग्राहक डेटा का खुलासा हुआ।
स्टार्टअप्स के लिए, जिनके पास बड़ी कंपनियों की तरह उन्नत आंतरिक सुरक्षा का अभाव हो सकता है, Google की यह नई पेशकश उनके व्यावसायिक ईमेल संचार के लिए एक सुलभ सुरक्षा प्रदान करती है।
पेश की जा रही सुरक्षा तकनीक को E2EE, या एंड-टू-एंड एन्क्रिप्शन के रूप में जाना जाता है।
जैसा कि Google ने बताया, यह प्रणाली "कुंजियों के आदान-प्रदान या कस्टम सॉफ़्टवेयर का उपयोग करने की परेशानी के बिना सुरक्षित संचार" की अनुमति देती है।
जिन उपयोगकर्ताओं के पास यह सेवा सक्षम है, वे नया ईमेल लिखते समय इस अतिरिक्त एन्क्रिप्शन को जोड़ने के लिए बस एक विकल्प चुन सकते हैं।
यह ध्यान रखना ज़रूरी है कि यह चयन ईमेल का ड्राफ़्ट तैयार करने से पहले ही किया जाना चाहिए, क्योंकि पहले से शुरू किए गए संदेश में एन्क्रिप्शन जोड़ने का प्रयास करने से ड्राफ़्ट मिट जाएगा।
उपयोगकर्ता अतिरिक्त एन्क्रिप्शन को आसानी से बंद भी कर सकता है।
यह सिस्टम अन्य ईमेल प्रदाताओं का उपयोग करने वाले प्राप्तकर्ताओं को अत्यधिक संवेदनशील, एन्क्रिप्टेड ईमेल भेजते समय भी निर्बाध रूप से काम करने के लिए डिज़ाइन किया गया है।
जब किसी बाहरी प्राप्तकर्ता को एन्क्रिप्टेड संदेश प्राप्त होता है, तो उन्हें सूचित किया जाता है और उन्हें अतिथि खाते के माध्यम से पहुँच प्राप्त होती है।
चूँकि पुनर्निर्देशन आवश्यक है क्योंकि "Google का अन्य प्रदाताओं पर प्राप्तकर्ताओं के बुनियादी ढाँचे पर कोई नियंत्रण नहीं है," यह तंत्र सुनिश्चित करता है कि संचार की सुरक्षा शुरू से अंत तक बनी रहे।
Google इस बात पर ज़ोर देता है कि इस उन्नत सुरक्षा के लिए "आईटी टीमों और अंतिम उपयोगकर्ताओं, दोनों के लिए न्यूनतम प्रयास" की आवश्यकता होती है, जबकि उन्नत डेटा संप्रभुता और गोपनीयता नियंत्रण भी संरक्षित रहते हैं।
ईमेल एन्क्रिप्शन की आवश्यकता साइबर हमलों के विरुद्ध सुरक्षा की एक परत के रूप में इसकी महत्वपूर्ण भूमिका से उपजी है, विशेष रूप से डेटा लीक और ज़ीरो-डे एक्सप्लॉइट से सुरक्षा प्रदान करती है।
एन्क्रिप्शन मूलतः डेटा को यादृच्छिक बनाकर काम करता है ताकि केवल इच्छित प्राप्तकर्ता ही उसे डिकोड कर सके, जिससे जानकारी इनबॉक्स में रहते हुए और, सबसे महत्वपूर्ण रूप से, ट्रांज़िट के दौरान सुरक्षित रहती है।
संगठनों के लिए, यह सुरक्षा सभी संवेदनशील संचारों के लिए महत्वपूर्ण है, जिसमें वित्तीय विवरण और सबसे महत्वपूर्ण, ग्राहक डेटा शामिल हैं।
मज़बूत एन्क्रिप्शन व्यवसायों को GDPR जैसे प्रमुख अनुपालन नियमों को पूरा करने में मदद करता है, जो उपभोक्ता गोपनीयता की रक्षा के लिए लागू हैं।
सुरक्षा उल्लंघन का वित्तीय प्रभाव इस बात पर प्रकाश डालता है कि यह नई सुविधा इतनी मूल्यवान क्यों है।
छोटे और मध्यम आकार के उद्यमों (SME) पर साइबर अपराध के प्रभाव पर वोडाफ़ोन बिज़नेस की एक रिपोर्ट के अनुसार, एक छोटे व्यवसाय के लिए साइबर हमले की औसत लागत £3,398 थी, जो मध्यम आकार की फर्मों के लिए £5,000 से अधिक हो गई।
क्लाइंट-साइड एन्क्रिप्शन की पेशकश करके, Google अपने एंटरप्राइज़ प्लस ग्राहकों को ऐसे उल्लंघनों के जोखिम को कम करने के लिए एक शक्तिशाली, सुलभ टूल प्रदान कर रहा है, जो तेजी से प्रतिकूल डिजिटल परिदृश्य में व्यवसायों को मानसिक शांति प्रदान करता है।
వ్యాపార వినియోగదారుల కోసం కొత్త క్లయింట్-సైడ్ ఎన్క్రిప్షన్తో Google Gmail భద్రతను బలోపేతం చేస్తుంది
Gmail కోసం క్లయింట్-సైడ్ ఎన్క్రిప్షన్ సామర్థ్యాలను ప్రవేశపెట్టడం ద్వారా Google దాని Workspace Enterprise Plus కస్టమర్ల ఇమెయిల్ భద్రతను గణనీయంగా పెంచుతోంది.
ఈ కొత్త ఫీచర్ UK వ్యాపారాలకు, ముఖ్యంగా నియంత్రిత పరిశ్రమలలోని వారికి, అధునాతన సైబర్ బెదిరింపులకు వ్యతిరేకంగా అవసరమైన కొత్త రక్షణ పొరను అందిస్తుంది.
ఈ వేసవిలో ప్రధాన రిటైలర్లను లక్ష్యంగా చేసుకుని తీవ్రమైన కార్యాచరణ అంతరాయం మరియు సున్నితమైన కస్టమర్ డేటాను బహిర్గతం చేసిన హై-ప్రొఫైల్ సైబర్ దాడుల తరంగం తర్వాత, ఈ విడుదల సమయం చాలా కీలకమైనది.
పెద్ద కార్పొరేషన్ల యొక్క అధునాతన అంతర్గత రక్షణలు లేని స్టార్టప్ల కోసం, Google నుండి ఈ కొత్త సమర్పణ వారి వ్యాపార ఇమెయిల్ కమ్యూనికేషన్లకు అందుబాటులో ఉండే రక్షణను అందిస్తుంది.
అందించబడుతున్న భద్రతా సాంకేతికతను E2EE లేదా ఎండ్-టు-ఎండ్ ఎన్క్రిప్షన్ అని పిలుస్తారు.
Google వివరించినట్లుగా, ఈ వ్యవస్థ "కీలను మార్పిడి చేసుకోవడం లేదా కస్టమ్ సాఫ్ట్వేర్ను ఉపయోగించడంలో ఇబ్బంది లేకుండా సురక్షితమైన కమ్యూనికేషన్"ని అనుమతిస్తుంది.
సేవను ప్రారంభించిన వినియోగదారులు కొత్త ఇమెయిల్ను కంపోజ్ చేసేటప్పుడు ఈ అదనపు ఎన్క్రిప్షన్ను జోడించడానికి ఒక ఎంపికను ఎంచుకోవచ్చు.
ఈమెయిల్ను డ్రాఫ్ట్ చేయడానికి ముందే ఈ ఎంపిక చేసుకోవాలని గమనించడం ముఖ్యం, ఎందుకంటే ఇప్పటికే ప్రారంభించబడిన సందేశానికి ఎన్క్రిప్షన్ను జోడించడానికి ప్రయత్నించడం వలన డ్రాఫ్ట్ తొలగించబడుతుంది.
అదనపు ఎన్క్రిప్షన్ను వినియోగదారు సులభంగా టోగుల్ చేయవచ్చు.
ఇతర ఇమెయిల్ ప్రొవైడర్లను ఉపయోగించి గ్రహీతలకు అత్యంత సున్నితమైన, ఎన్క్రిప్ట్ చేసిన ఇమెయిల్లను పంపినప్పుడు కూడా, సిస్టమ్ సజావుగా పనిచేసేలా రూపొందించబడింది.
బాహ్య గ్రహీత ఎన్క్రిప్ట్ చేసిన సందేశాన్ని అందుకున్నప్పుడు, వారికి తెలియజేయబడుతుంది మరియు అతిథి ఖాతా ద్వారా యాక్సెస్ పొందుతుంది.
"ఇతర ప్రొవైడర్లపై గ్రహీతల మౌలిక సదుపాయాలపై Googleకి నియంత్రణ లేదు" కాబట్టి, దారి మళ్లింపు అవసరం కాబట్టి, ఈ విధానం కమ్యూనికేషన్ యొక్క భద్రతను ఎండ్-టు-ఎండ్ వరకు నిర్వహించబడుతుందని నిర్ధారిస్తుంది.
ఈ మెరుగైన భద్రత కోసం సెటప్కు "IT బృందాలు మరియు తుది వినియోగదారులు ఇద్దరికీ కనీస ప్రయత్నాలు" అవసరమని Google నొక్కి చెబుతుంది, అదే సమయంలో మెరుగైన డేటా సార్వభౌమాధికారం మరియు గోప్యతా నియంత్రణలను సంరక్షిస్తుంది.
ఇమెయిల్ ఎన్క్రిప్షన్ యొక్క ఆవశ్యకత సైబర్ దాడులకు వ్యతిరేకంగా రక్షణ పొరగా ఇది పోషించే కీలక పాత్ర నుండి వచ్చింది, ప్రత్యేకంగా డేటా లీక్లు మరియు జీరో-డే దోపిడీల నుండి రక్షణ కల్పిస్తుంది.
ఎన్క్రిప్షన్ ప్రాథమికంగా డేటాను యాదృచ్ఛికంగా మార్చడం ద్వారా పనిచేస్తుంది, తద్వారా ఉద్దేశించిన గ్రహీత మాత్రమే దానిని డీకోడ్ చేయగలడు, సమాచారం ఇన్బాక్స్లలో ఉన్నప్పుడు మరియు ముఖ్యంగా, అది రవాణాలో ఉన్నప్పుడు దానిని రక్షిస్తాడు.
సంస్థలకు, ఆర్థిక వివరాలు మరియు ముఖ్యంగా కస్టమర్ డేటాతో సహా అన్ని సున్నితమైన కమ్యూనికేషన్లకు ఈ రక్షణ చాలా ముఖ్యమైనది.
బలమైన ఎన్క్రిప్షన్ వ్యాపారాలు వినియోగదారుల గోప్యతను కాపాడటానికి అమలులో ఉన్న GDPR వంటి కీలక సమ్మతి నిబంధనలను చేరుకోవడానికి సహాయపడుతుంది.
భద్రతా ఉల్లంఘన యొక్క ఆర్థిక ప్రభావం ఈ కొత్త ఫీచర్ ఎందుకు అంత విలువైనదో హైలైట్ చేస్తుంది.
చిన్న మరియు మధ్య తరహా సంస్థలపై (SMEలు) సైబర్ నేరాల ప్రభావంపై వోడాఫోన్ బిజినెస్ నివేదిక ప్రకారం, చిన్న వ్యాపారం కోసం సైబర్ దాడి యొక్క సగటు ఖర్చు £3,398, మధ్య తరహా సంస్థలకు £5,000 కంటే ఎక్కువ పెరిగింది.
క్లయింట్-సైడ్ ఎన్క్రిప్షన్ను అందించడం ద్వారా, గూగుల్ తన ఎంటర్ప్రైజ్ ప్లస్ కస్టమర్లకు అటువంటి ఉల్లంఘనల ప్రమాదాన్ని తగ్గించడానికి శక్తివంతమైన, ప్రాప్యత చేయగల సాధనాన్ని అందిస్తోంది, పెరుగుతున్న శత్రు డిజిటల్ ల్యాండ్స్కేప్ను నావిగేట్ చేసే వ్యాపారాలకు మనశ్శాంతిని అందిస్తుంది.
No comments:
Post a Comment
Please Dont Leave Me