Recently, the news has been full of stories about this so-called Heartbleed bug. It’s one of the worst internet flaws ever uncovered, and it got millions of people shaking in their virtual boots. What is the Heartbleed bug? It is a security flaw that was uncovered in early April in software called OpenSSL. This software is designed to encrypt communications between a user’s computer and a web server. It’s been likened to a sort of secret handshake at the beginning of a secure conversation. The name ‘Heartbleed’ came from the extension to SSL (Secure Sockets Layer) that is affected, which engineers called Heartbeat.

OpenSSL is used extensively throughout the internet – it’s thought that around two-thirds of all websites use it. From major sites, like as Google and Yahoo!, to small sites run by individuals, the list is huge. Mumsnet and the Canada Revenue Agency are just two sites that have reported that they have had data stolen via the Heartbleed bug.

Heartbleed affects much more than just websites, but it’s important to know what types of websites may be affected. Ecommerce shopping sites, financial institutions, web-based e-mail, and social media — fundamentally any website for which you need to login to with a username and password — are all potentially susceptible to Heartbleed. These usually have a website address that begins with HTTPS, where the ‘S’ stands actually for ‘Secure’ – ironic, I know.

When the bug came to light, a security update was released that closed the hole. Do you know if your web host has done their job and ensured that the server your website is running on has been updated?

Working with a reputable hosting provider is vital to ensure that your site is as well-protected as it can be. Good hosting needn’t be very expensive, but ‘cheap’ isn’t necessarily a sign of good value. Many websites use scripting languages and database facilities, such as PHP and MySQL. These are constantly under review and development, with security patches and new features released on a regular basis. Is your hosting provider keeping on top of these releases and installing these updates on your server? As soon as the Heartbleed vulnerability was announced, our servers were updated with the necessary security fixes.

What about backups? Do you have access to be able to take regular backups of your website? Not sure? Just ask your host if you have the facility to do this. If you wouldn’t know how to go about taking a backup yourself, you should at least have the reassurance that your hosting provider is taking regular backups. Sites that we host are backed up daily, with an archive going back to up to the last 30 days.

A new client for whom I was building a fresh website was keen to have the new site hosted with their existing provider. The software being used to build the site had certain server requirements to be able to run. After checking with their current host as to whether their system was up to spec, it transpired that their servers were running scripting and database versions that had been superseded four years previously! No prizes for guessing where the new site is hosted.

It’s almost akin to running your nice new, shiny car with cheap, worn tyres; it may work for a while, but it will inevitably end in tears. Just make sure that it’s not you that needs the handkerchief.

More To Explore

Coronavirus: Help For Your Business

Let’s not beat around the bush here – the Coronavirus Crisis is hitting a lot of businesses really hard. Your orders may have dried up overnight or you’re suddenly having to cope with trying to run your business from home. I’d like to help with some resources that you’ll find really useful: [FREE WEBINAR] How

Do you have a general question about what we do? Here's how to get in touch...

Email

Drop us an email at [email protected]

Telephone

Call FREE 0800 634 92 96 or 01573 440355

Our normal office hours are:
Monday to Friday 8.30am – 5.30pm

Live Chat

Check the Live Chat tab at the bottom right of the page to see if we’re online right now.

Voicebank

Please use our Support service if you are a customer and you are experiencing issues with any of the services we directly provide for you, or if you would like to request updates, amendments, etc. We will get back to you as quickly as possible.

Email

Send an email to [email protected] and a support ticket will be automatically raised for you. You will be notified by email when we have responded to it.

Clicking the button below will open a new email for you, already addressed to [email protected].

Voicebank

Call our Support Voicebank on 0333 335 0056 and leave a message. Remember to leave your name, details of the issue you’re experiencing and the best way to reach you.

We’ll get back to you as soon as possible for any further info that we need to resolve your issue and to keep you updated on progress.

Please use our Support service if you are a customer and you are experiencing issues with any of the services we directly provide for you, or if you would like to request updates, amendments, etc. We will get back to you as quickly as possible.

Email

Send an email to [email protected] and a support ticket will be automatically raised for you. You will be notified by email when we have responded to it.

Clicking the button below will open a new email for you, already addressed to [email protected].

https://securecart.andwedothis.com/jumpstart/