<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>security Archives - CritchCorp Computers Ltd</title>
	<atom:link href="https://www.cc-computers.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.cc-computers.com</link>
	<description>Complete Computer Support</description>
	<lastBuildDate>Thu, 10 Sep 2020 22:12:39 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://www.cc-computers.com/wp-content/uploads/2020/07/favicon.ico</url>
	<title>security Archives - CritchCorp Computers Ltd</title>
	<link>https://www.cc-computers.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>WordPress Flaw found in Social Media plugin</title>
		<link>https://www.cc-computers.com/wordpress-flaw-found-in-social-media-plugin/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=wordpress-flaw-found-in-social-media-plugin</link>
		
		<dc:creator><![CDATA[CritchCorp]]></dc:creator>
		<pubDate>Fri, 15 Feb 2019 16:40:19 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Urgent Attention]]></category>
		<category><![CDATA[flaw]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Simple Social Buttons]]></category>
		<category><![CDATA[wordpress]]></category>
		<guid isPermaLink="false">https://cc-computers.com/?p=1681</guid>

					<description><![CDATA[<p>&#160; URGENT &#8211; If you use the plugin &#8216;Simple Social Buttons&#8217; in your WordPress installation, you should immediately update it to the latest version as there has been a serious flaw found in it that could allow an attacker to take over the site. The flaw, which was discovered last week by security researcher and [&#8230;]</p>
The post <a href="https://www.cc-computers.com/wordpress-flaw-found-in-social-media-plugin/">WordPress Flaw found in Social Media plugin</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></description>
										<content:encoded><![CDATA[<p>&nbsp;</p>
<p><span style="color: #ff0000;"><strong>URGENT</strong></span> &#8211; If you use the plugin &#8216;Simple Social Buttons&#8217; in your WordPress installation, you should immediately update it to the latest version as there has been a serious flaw found in it that could allow an attacker to take over the site. The flaw, which was discovered last week by security researcher and developer Luka Šikić, has been discovered and a video showing how to use it to break in to WordPress websites has been released.</p>
<p>The flaw has been fixed by the developer and a patch released. So if you haven&#8217;t already then you should update now.</p>
<p>The flaw can only be leveraged in sites that allow user sign-up, which most sites have disabled due to security reasons. Never the less you should update before they figure out how to exploit the flaw without user sign-up requirements.</p>
<p>Any of our customers who have website maintenance contracts will have already been updated to the latest security patch. If you are not sure then you should contact your web development team and/or your host to see if they can help.</p>
<p>If you are really stuck then we may be able to help, please submit a <a href="https://shop.cc-computers.com/submitticket.php?step=2&amp;deptid=3">support ticket</a> with your website URL and contact information. Do <span style="color: #ff0000;">NOT</span> post your username and password in the ticket we will contact you separately for the information if needed.</p>
<p>If you use the Simple Social Buttons plugin for WordPress then make sure you update your site to correct the security flaw immediately.</p>
<p>Stay Safe</p>
<p>CritchCorp Computers Ltd.</p>
<p>&nbsp;</p>The post <a href="https://www.cc-computers.com/wordpress-flaw-found-in-social-media-plugin/">WordPress Flaw found in Social Media plugin</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Google Forces Sites to use SSL Certificates</title>
		<link>https://www.cc-computers.com/google-forces-ssl-use/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=google-forces-ssl-use</link>
		
		<dc:creator><![CDATA[CritchCorp]]></dc:creator>
		<pubDate>Wed, 06 Jun 2018 11:01:16 +0000</pubDate>
				<category><![CDATA[Announcement]]></category>
		<category><![CDATA[Informational]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Urgent Attention]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[google forces]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[prevent hacking]]></category>
		<category><![CDATA[secure website]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[SSL certificates]]></category>
		<category><![CDATA[tls certificates]]></category>
		<guid isPermaLink="false">https://cc-computers.com/?p=596</guid>

					<description><![CDATA[<p>***Notice to all Website owners*** That&#8217;s right, as of July 2018 Google Chrome will start reporting non-SSL sites (that is sites that don&#8217;t use https:// for access) as insecure. This is a major change from the current norm which is to highlight sites that use SSL certificates with a green SECURE next to the address [&#8230;]</p>
The post <a href="https://www.cc-computers.com/google-forces-ssl-use/">Google Forces Sites to use SSL Certificates</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></description>
										<content:encoded><![CDATA[<h1>***Notice to all Website owners***</h1>
<p>That&#8217;s right, as of <strong>July 2018</strong> Google Chrome will start reporting non-SSL sites (that is sites that don&#8217;t use http<strong>s</strong>:// for access) as insecure. This is a major change from the current norm which is to highlight sites that use SSL certificates with a green <strong><span style="color: #339966;">SECURE</span></strong> next to the address and other browsers who use a green padlock. They will from July this year not show the green <strong><span style="color: #339966;">SECURE</span></strong> but they will show a<strong> <span style="color: #ff0000;">NOT SECURE</span> </strong>next to any site that does not have an SSL certificate. Making the norm to have an SSL certificate. That is going to be followed in the future by a warning screen that informs users that continuing to your site is not recommended. Though the warning wall is not being implemented right away it is planned for the future.</p>
<figure id="attachment_598" aria-describedby="caption-attachment-598" style="width: 640px" class="wp-caption aligncenter"><img fetchpriority="high" decoding="async" class="wp-image-598 size-full" src="https://cc-computers.com/wp-content/uploads/2018/06/google-https-july.png" alt="Google's July update, what it looks like" width="640" height="231" srcset="https://www.cc-computers.com/wp-content/uploads/2018/06/google-https-july.png 640w, https://www.cc-computers.com/wp-content/uploads/2018/06/google-https-july-600x217.png 600w, https://www.cc-computers.com/wp-content/uploads/2018/06/google-https-july-300x108.png 300w, https://www.cc-computers.com/wp-content/uploads/2018/06/google-https-july-500x180.png 500w" sizes="(max-width: 640px) 100vw, 640px" /><figcaption id="caption-attachment-598" class="wp-caption-text">What the browser will report before and after July for sites that do not have an SSL certificate.</figcaption></figure>
<p>The new move forces website owners to have an SSL certificate and make their site secure, even if it is not required, or risk losing visitors that are scared away.</p>
<p>There are several different types of SSL certificate and the higher (more expensive) ones will still show the green bar in the address bar, but the norm will be to have one of the cheaper ones and if you don&#8217;t have any or it expires, the company backing the SSL cert (Cert provider not the retailer) goes out of business or has their master certificate rejected then you will be faced with a blocking screen when trying to get to your site which will prevent users from going there, with warnings that your site is insecure and should not be visited. This is obviously not good for business.</p>
<p>Google have also hinted that sites that use SSL certificates currently get a boost in the Google rankings over those who do not.</p>
<p>At CritchCorp Computers Ltd we have a quick and easy way for you to comply with this new Google rule for all our shared hosting customers you can purchase a fully managed SSL certificate from your yesDomains account or submit a support ticket <a href="https://shop.cc-computers.com/submitticket.php?step=2&amp;deptid=3">here</a> to get the ball rolling. It is quite an in-depth process but we will take care of it for you, with as little interaction as possible required by you. Please go <a href="https://shop.cc-computers.com/cart.php?gid=2">here</a> to get started.</p>
<p>The industry is working towards lowering the cost of SSL certificates to nothing and automating the install and renewal process, but that is still in development so for the time being you will need to purchase an SSL certificate in the normal way. If you want the users browser to light up in green then you need to select the Extended Validation (EV) certificate otherwise the cheaper normal one will suffice to prevent you being labelled as <span style="color: #ff0000;"><strong>NOT SECURE</strong>.</span> We have monthly or annual billing options to spread the cost but all certificates are annual commitments.</p>
<p><span style="color: #3366ff;"><em>We use Comodo, DigiCert, Symantec, Thwarte, GeoTrust and Trustwave certificates  that are strong providers in this field and highly unlikely to go out of business or have their master certificates rejected. This provides you with stability and reassurance that your certificate will not become invalid before it expires as does happen from time to time with smaller SSL providers.<br />
</em></span></p>
<p>If you want to read the Google blog entry about this; with their advertising spin on it then click <a href="https://blog.chromium.org/2018/02/a-secure-web-is-here-to-stay.html">here</a>. What this does do is add further costs to businesses. Whilst we absolutely agree that any site that accepts payments or collects user data should be secure, there are still many sites that do not and so forcing them to have this does seem unfair to us, but that is what the mighty Google has decided and so it shall unfortunately be.</p>
<p>There has been some discussion about the colour of the <span style="color: #ff0000;"><strong>NOT SECURE</strong></span>. The current <span style="color: #339966;"><strong>SECURE</strong></span> label is green and it is understood that the new <strong><span style="color: #ff0000;">NOT SECURE</span></strong> is going to be Red, although some discussions at Google say it will be more neutral, which ever it is it isn&#8217;t good for business.</p>
<p>Keep safe</p>
<p>CritchCorp Computers Ltd</p>The post <a href="https://www.cc-computers.com/google-forces-ssl-use/">Google Forces Sites to use SSL Certificates</a> appeared first on <a href="https://www.cc-computers.com">CritchCorp Computers Ltd</a>.]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
