Cloud authentication: locked out of your home?

On Wednesday, October 10th, it was reported in the Daily Mail and The Register that the security company Yale had unplanned network maintenance which caused their cloud service to go offline for 24 hours. Please bear with us, we apologise for any inconvenience caused. *Please note this issue affects all of our app-controlled alarm systems, … Read more

Are your S3 buckets private?

Alongside checking your backups are working, updating your systems, checking for viruses, and all the other monthly tasks, it’s easy to overlook simple security areas of your network and storage. Over the past few months, there have been a deluge of exposed Amazon S3 buckets which have been exposed or found. The data of 123 … Read more

Are Cloudflare to start their own Public DNS?

It’s heavily rumoured that Cloudflare will soon be announcing a Public DNS server. Their website, every1dns.com is currently empty, but Google have a cached version of the site available. The two DNS servers, easier to remember than Googles are said to be 1.1.1.1 and 1.0.0.1. According to their website, both support encrypted DNS as well … Read more

UK Gov sites hijacked by Cryptominer, and Subresource Integrity

Over the weekend, thousands of websites around the world, including the UK’s NHS and ICO and the US Government Court system, were compromised, and caused visitors to mine crypto-coins – generating money for the miscreants. These sites were using a popular plugin called Browsealoud. Their support software “adds speech, reading, and translation to websites facilitating … Read more

Which Payment Gateway

Often, the choice of which payment provider to use is a case of which offers the lowest cost, or which offers the functionality that’s required for your business. Once past these limitations, many payment providers are the same; offering either an on-page or external redirection site to take payment, and returning a secure callback to … Read more

WordPress 4.9 – “Tipton”

WordPress 4.9 was released a few days ago, with some new features which are likely to cause panic amongst developers and designers, and provide some fantastic new features to users and administrators. The new version, named “Tipton” in honour of jazz musician and band leader Billy Tipton, is available for download from the WordPress site, … Read more

Keep up with Magento 1.x and 2.x Maintenance

Probably the most tedious part of running a website is the constant maintenance and updates. Continuing our previous post on WordPress, we’ve put together a quick guide of routine checks and changes for both Magento 1.x and 2.x. A poorly maintained website can be a security nightmare, or even impact on your website appearance and … Read more

Keeping up with WordPress Maintenance

WordPress maintenance is a tedious and thankless chore, but absolutely essential to the smooth-running of your website. A poorly maintained website can be a security nightmare, or even impact on your website appearance and search position with potential attacks and spam. We’ve put together a basic list of the most essential WordPress maintenance; Backups A … Read more

Secure Websites – HTTPS, SSL, and Let’s Encrypt

Many websites are switching to HTTPS, a secure website. Including us! You can see in your URL bar, that our website address now has a small padlock. This indicates that all the communications between you and our server is encrypted and much harder, or impossible, to view what is being sent and received. How TLS/SSL/HTTPS … Read more

DigiNotar CA hack, and serious weaknesses in security

Support for TLS 1.1 and 1.2 is virtually non-existent, Qualys Director of Engineering Ivan Ristic says via The Register

DigiNotar, the Dutch certificate authority was recently the center of a significant hacking case. On the 19th July, the CA discovered that at least 531 rogue certificates has been issued. However, it was only in August that the attacked became public knowledge. Security firm, Fox-IT were hired to investigate the breach, and the compromise has … Read more