Month: May 2018 Page 1 of 2

CMS security update

Joomla! Releases Security Update in Version 3.8.8

Joomla! recently released version 3.8.8 which included nine security updates addressing various vulnerabilities as well as over 50 other bug fixes. Many of the security vulnerabilities impacted all versions of Joomla! from version 2.5.0 through 3.8.7, making application updates important to protecting sites using the open source platform.

Among the vulnerabilities are three cross-site scripting (XSS vulnerabilities) that impact different parts of the core Joomla! Application. In addition to the low and moderate XSS vulnerabilities, there are six other low priority security issues addressed in the new version. These include addressing possibly vulnerable access to website data and field filtering for Joomla! components.

Read More

Decoding Security 120: We Could All Use A Good WAF

Making headlines last week, the spam campaign Brain Food has been feeding email recipients a steady diet of junk messages, infecting over 5,000 compromised websites over the last four months. Additionally, the U.S. Federal Bureau of Investigation (FBI) took control of a large cyber-attack aimed at Ukraine in late May 2018. The massive malware campaign infected up to 500,000 routers, many located in small businesses and home offices around the world.

Read More

Website backups

SiteLock Reviews: Events We Love in 2018

SiteLock is passionate about the open-source community, and we are fortunate to attend a new content management systems (CMS)  event nearly every single weekend. These events include WordPress, Joomla!, and Drupal events. While we love every event we attend, we’ve rounded some of our favorites from the past year so you can start marking the calendar for opportunities that fit your business or personal needs (hence the title—SiteLock Reviews: Events We Love in 2018). Each of these events are focused on education and networking, so whether you or your organization is an avid user of a CMS platform or seeking to expand your options in this category, these events provide the ideal setting for understanding best practices on a variety of topics such as coding, blogging, and security. As a bonus, even if you can’t attend, video recordings and live streams are available for most events.

We want you to attend these events too, so the SiteLock has reviewed just SOME of our favorites:

Read More

SiteLock reviews

Independent Photographer Focuses On Website Security [Case Study]

Company Background

Amanda Naor’s camera lens has a distinct purpose: “to authentically tell a story through images.” A hobby photographer turned professional, Amanda is known for her documentary-style photos of children, families, and “the beauty of the everyday.” She established her small business, Amanda Naor Photography, to pursue a career that would allow her the flexibility to start a family of her own.

Sharing her images with clients and acquiring new customers is essential to building a successful business, so Amanda created a custom website, amandanaorphotography.com with WordPress. Using a plugin specifically designed for photographers, she added galleries to showcase her beautiful photos and even installed a template to help give her website a professional, polished look. After prospective customers view her work, they can easily schedule a session through a contact form on her site. While all these features helped define her brand and made for a great user experience, Amanda’s website was missing one very important component: website security.

Read More

Malware

Pluginsmonsters Fake Plugin Allows Access to WordPress Sites

The SiteLock Research team has become aware of sites infected with fake WordPress plugins that provide cybercriminals with backdoor access and allow them to inject malicious content onto web pages. Below is a high-level overview of the plugins and malware being detected by our scanners and analyzed by SiteLock Research analysts. We also cover effective tips to help protect your site.

Read More

The GDPR Law Starts on Friday: Here’s How to Prepare for It

If you live outside the EU, you may not have felt effects of the impending GDPR ruling yet, but you will. The ruling goes into effect on May 25 (this Friday!!) and everyone who has a website that MAY EVER be visited by someone living or residing within the European Union will potentially be affected by this law. It’s important to familiarize yourself with GDPR now if you haven’t already. This post will help you figure out how to address and implement new privacy and security practices in your business or organization.

Read More

WordCamp St Louis: It’s in the Details

While Portland was having an out-of-season heatwave this past weekend, I was lucky to jet off to St. Louis, Missouri for their… out-of-season heatwave! But three days of 90-degree weather didn’t matter — because a whole lot of us were in the Washington University air conditioning all weekend (May 12-13) for WordCamp St. Louis, learning and sharing our skills and knowledge. I was there as a speaker and attendee.

This WordCamp was special for a few reasons.

Read More

Website Security for Clients: Are You Prepared?

This is the fourth and final chapter of our Making Security Make Sense to Clients series. In this post, I’ll be reviewing how to include website security in your freelance projects and the various benefits of doing so. I’ll also highlight some key points and answer the following questions:

  • Why should website security matter to your clients?
  • How does including website security as part of your project costs benefit your freelance business?
  • Why and how do websites get hacked?
  • How can you secure any website in five simple steps?

Read More

sitelock reviews

SiteLock Keeps Website Safe for Memphis Restaurant [Case Study]

Company Overview

MarlowesMemphis.com is the online face of Marlowe’s Ribs and Restaurant in Memphis, TN. Established in 1974, Marlowe’s has become an institution in Memphis with a loyal base of local customers, national and international tourists that flock to Elvis Presley’s iconic mansion, Graceland, while stopping for a bite to eat on the way. In fact, Marlowe’s is one mile south of Elvis Presley’s estate, which welcomes more than 500,000 visitors each year. Marlowe’s uses its website to capitalize on these tourist visits by offering online ordering for take-out, delivery, drive-thru pick up window, or reserving their free pink limo shuttle to bring customers to the restaurant for their World Class Award Winning Memphis-Style BBQ.

Read More

Decoding Security 119: Hacking Politics

Cybersecurity issues can occur anywhere, even in cardiac devices and pacemakers. The U.S. Food and Drug Administration (FDA) announced an upgrade to the firmware installed on certain vulnerable cardiac devices. The update protects these devices from unauthorized access that could be harmful to patients. Also making headlines last week, Georgia’s governor vetoed a bill that would have criminalized unauthorized computer access. The bill received blowback from the state’s booming cybersecurity industry for claiming vulnerabilities in important computer systems would not be uncovered and disclosed responsibly. As a result, cybercriminals would be able to exploit them with ease.

Read More

Page 1 of 2

Powered by WordPress & Theme by Anders Norén