<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>bug Archives - CritchCorp Computers Ltd</title>
	<atom:link href="https://www.cc-computers.com/tag/bug/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.cc-computers.com</link>
	<description>Complete Computer Support</description>
	<lastBuildDate>Thu, 17 Aug 2023 06:50:46 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://www.cc-computers.com/wp-content/uploads/2020/07/favicon.ico</url>
	<title>bug Archives - CritchCorp Computers Ltd</title>
	<link>https://www.cc-computers.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>3 million Let&#8217;s Encrypt certificates to be cancelled</title>
		<link>https://www.cc-computers.com/3-million-lets-encrypt-certificates-to-be-cancelled/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=3-million-lets-encrypt-certificates-to-be-cancelled</link>
					<comments>https://www.cc-computers.com/3-million-lets-encrypt-certificates-to-be-cancelled/#comments</comments>
		
		<dc:creator><![CDATA[CritchCorp]]></dc:creator>
		<pubDate>Wed, 04 Mar 2020 10:04:29 +0000</pubDate>
				<category><![CDATA[Archive]]></category>
		<category><![CDATA[bug]]></category>
		<category><![CDATA[CAA]]></category>
		<category><![CDATA[flaw]]></category>
		<category><![CDATA[Let's Encrypt]]></category>
		<category><![CDATA[Security Issue]]></category>
		<category><![CDATA[ssl]]></category>
		<guid isPermaLink="false">https://cc-computers.com/?p=2207</guid>

					<description><![CDATA[<p>Let&#8217;s Encrypt revoked certificates Let&#8217;s Encrypt has announced that it is to revoke aroound 3 million TLS/SSL certificates because of a serious flaw found in the CAA (Certificate Authority Authorization). The certificates will be revokend on the 4th March 2020 from 00:00 UTC. Let&#8217;s Encrypt has around 116 million certificates issued at the moment which [&#8230;]</p>
The post <a href="https://www.cc-computers.com/3-million-lets-encrypt-certificates-to-be-cancelled/">3 million Let’s Encrypt certificates to be cancelled</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></description>
										<content:encoded><![CDATA[<h2>Let&#8217;s Encrypt revoked certificates</h2>
<p>Let&#8217;s Encrypt has announced that it is to revoke aroound 3 million TLS/SSL certificates because of a serious flaw found in the CAA (Certificate Authority Authorization). The certificates will be revokend on the 4th March 2020 from 00:00 UTC.<span id="more-2207"></span></p>
<p>Let&#8217;s Encrypt has around 116 million certificates issued at the moment which means that around 2.6% of them are to be revoked. Sites that have not reissued their certificates will find that users will be unlikely to visit them as they will be warned when trying to visit that the site is likely to be fake or compromised as the certificate has been revoked.</p>
<p>A revoked certificate is far worse from a security point of view for users as it shows that positive action has been taken to make users aware that the certificate has been tagged as &#8220;<strong>Not to be trusted</strong>&#8220;.</p>
<h2>How can you fix it?</h2>
<p>If you own a website that uses Let&#8217;s Encrypt, an automated free certificate system, then you should get your certificate changed ASAP. It is free and easy to do. There is a list of the affected certificate serial numbers which can be downloaded <a href="https://d4twhgtvn0ff5.cloudfront.net/caa-rechecking-incident-affected-serials.txt.gz">here</a> and there is a tool that you can use to check your site <a href="https://checkhost.unboundtest.com/">here</a>. Let&#8217;s Encrypt has sent an email notification to those that have registered an email address whith them but many are thought to be out of date and to be that of their hosting provider. If you are unsure please use the tools to check your site yourself.</p>
<h2>Our clients who use Let&#8217;s Encrypt</h2>
<p>CritchCorp Computers Ltd has already checked all of our clients sites that use Let&#8217;s Encrypt certificates; which come FREE with any of our Feature Rich Hosting accounts. Also anyone using a paid certificate from CritchCorp Computers Ltd is not affected by this latest issue.</p>
<p>If you are affected then you should contact your hosting company or webmaster urgently to get the issue resolved. If you have no-one to contact then we maybe able to help, please submit a support ticket from <a href="https://shop.cc-computers.com/submitticket.php?step=2&amp;deptid=3">our store ticket system</a>.</p>
<h2>Is Let&#8217;s Encrypt still good?</h2>
<p>We have been asked whether or not Let&#8217;s Encrypt certificates are safe given the latest bug. We are confident that they are a great starter certificate and are much better than having no certificate. Let&#8217;s Encrypt have been upfront and transparent about the issue and that is exactly what they should do, so we are confident that they ACME system is a good way to ensure that all sites have some form of security. If your site need better security or more gurentees about who you are and better protection then you should upgrade to a paid certificate whch come with different levels of security and guarentees.</p>
<p>Stay Safe</p>
<p>Support.</p>


<hr class="wp-block-separator has-alpha-channel-opacity is-style-wide"/>



<h2 class="wp-block-heading" id="h-don-t-forget-to-checkout-these-other-products-too">Don&#8217;t forget to check out these other Products too</h2>



<div class="wp-block-blockspare-blockspare-list aligncenter blockspare-393e5569-01e3-4 blockspare-block-iconlist-wrap" blockspare-animation=""><style>.blockspare-393e5569-01e3-4 .blockspare-list-wrap{border-radius:0px;margin-top:30px;margin-bottom:30px;padding-top:0px;padding-right:0px;padding-bottom:0px;padding-left:0px}.blockspare-393e5569-01e3-4 .blockspare-list-wrap .listDescription li{color:#404040;text-align:left;font-size:16px}.blockspare-393e5569-01e3-4 .blockspare-list-wrap .listDescription li:before{color:#404040}.blockspare-393e5569-01e3-4 .listDescription li:before{font-size:14px}@media screen and (max-width:1025px){.blockspare-393e5569-01e3-4 .blockspare-list-wrap .listDescription li{font-size:14px}.blockspare-393e5569-01e3-4 .listDescription li:before{font-size:14px}}@media screen and (max-width:768px){.blockspare-393e5569-01e3-4 .blockspare-list-wrap .listDescription li{font-size:14px}.blockspare-393e5569-01e3-4 .listDescription li:before{font-size:14px}}</style><div class="blockspare-blocks blockspare-list-wrap blockspare-hover-item"><ul class="blockspare-list-arrow-right listDescription"><li><a href="https://www.cc-computers.com/critchcorp-smart-light-bulb/">CritchCorp Smart™ Light Bulbs</a></li><li><a href="https://www.cc-computers.com/incense/">Resin Incense</a></li><li><a href="/subscribe-and-save/">NEW: Subscribe and Save</a></li><li><a href="https://store.cc-computers.com/collections/all-subscribe-and-save-items" target="_blank" rel="noreferrer noopener">NEW: Subscribe and Save Collections</a></li><li><a href="https://www.cc-computers.com/free-hosting/">Free Hosting</a></li><li><a href="https://www.cc-computers.com/feature-rich-hosting-cpanel/">Feature Rich Hosting</a></li><li><a href="https://www.cc-computers.com/wordpress/">WordPress Hosting</a></li><li><a href="https://www.cc-computers.com/website-security/">Website Security</a></li><li><a href="https://www.cc-computers.com/cloud-services/cloud-email/">Cloud eMail</a></li><li><a href="https://www.cc-computers.com/cloud-services/cloud-files-data-backup-and-collaboration/">Cloud Sharing &amp; backup</a></li><li><a href="https://www.cc-computers.com/cloud-services/cloud-sharepoint/">Cloud Share Point</a></li><li><a href="https://www.cc-computers.com/phone-and-internet/">Internet &amp; VoIP</a></li></ul></div></div>



<p>You can also read more <a href="https://www.cc-computers.com/about-critchcorp-computers-ltd/">about us</a> and the products and services we offer.</p>



<hr class="wp-block-separator has-alpha-channel-opacity is-style-wide"/>The post <a href="https://www.cc-computers.com/3-million-lets-encrypt-certificates-to-be-cancelled/">3 million Let’s Encrypt certificates to be cancelled</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></content:encoded>
					
					<wfw:commentRss>https://www.cc-computers.com/3-million-lets-encrypt-certificates-to-be-cancelled/feed/</wfw:commentRss>
			<slash:comments>59</slash:comments>
		
		
			</item>
		<item>
		<title>Remote Desktop Protocol (RDP) Flaw</title>
		<link>https://www.cc-computers.com/rdp-flaw/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=rdp-flaw</link>
		
		<dc:creator><![CDATA[CritchCorp]]></dc:creator>
		<pubDate>Wed, 21 Mar 2012 01:02:47 +0000</pubDate>
				<category><![CDATA[Informational]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Urgent Attention]]></category>
		<category><![CDATA[bug]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[rdp]]></category>
		<category><![CDATA[rdp over internet]]></category>
		<category><![CDATA[Remote Desktop Protocol]]></category>
		<category><![CDATA[vpn]]></category>
		<category><![CDATA[windows]]></category>
		<guid isPermaLink="false">http://www.cc-computers.biz/Blog/?p=123</guid>

					<description><![CDATA[<p>Just a quick note to all, although I only know of a couple of folks that do this and they will be contacted urgently. If you use Microsoft Remote Desktop Protocol (RDP) over the Internet then there is a serious bug that has just been discovered that allows an attacker to gain entry even with [&#8230;]</p>
The post <a href="https://www.cc-computers.com/rdp-flaw/">Remote Desktop Protocol (RDP) Flaw</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></description>
										<content:encoded><![CDATA[<p>Just a quick note to all, although I only know of a couple of folks that do this and they will be contacted urgently.</p>
<p>If you use Microsoft Remote Desktop Protocol (RDP) over the Internet then there is a serious bug that has just been discovered that allows an attacker to gain entry even with out a username and password.</p>
<p>The good news is that if you use a VPN connection first, then you are completely safe from this. Likewise if you use Network Layer Authentication only then you are not at risk either.</p>
<p>As always we recommend that you use RDP over a VPN tunnel, this way you are not vulnerable to any problems found in the protocol.</p>
<p>If you are concerned then please contact us and we will assess your situation with you.</p>
<p>If you want to deal with this yourself then you need to run updates on your servers as well as your desktops. The problem has now been fixed in the latest updates.</p>
<p>Keep Safe.</p>
<p>CritchCorp Support Team!</p>The post <a href="https://www.cc-computers.com/rdp-flaw/">Remote Desktop Protocol (RDP) Flaw</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
