Warning: session_start() [function.session-start]: Cannot send session cookie - headers already sent by (output started at /home/gareth/public_html/blog/index.php:1) in /home/gareth/public_html/blog/wp-content/plugins/wordpress-automatic-upgrade/wordpress-automatic-upgrade.php on line 122

Warning: session_start() [function.session-start]: Cannot send session cache limiter - headers already sent (output started at /home/gareth/public_html/blog/index.php:1) in /home/gareth/public_html/blog/wp-content/plugins/wordpress-automatic-upgrade/wordpress-automatic-upgrade.php on line 122
Security « HostedFX Blog
Home | Client Login | Site Map | Our Blog | Contact Us



4 Years Experience in Enterprise Cluster Hosting--
spacer spacer spacer spacer spacer

Posts Tagged ‘Security’

WordPress 2.6.5 - All Should Upgrade

Tuesday, November 25th, 2008

WordPress 2.6.5 is immediately available and fixes one security problem and three bugs. We recommend everyone upgrade to this release, in order to make your blog as secure as possible.

The security issue is an XSS exploit discovered by Jeremias Reith that fortunately only affects IP-based virtual servers running on Apache 2.x. If you are interested only in the security fix, copy wp-includes/feed.php and wp-includes/version.php from the 2.6.5 release package.

2.6.5 contains three other small fixes in addition to the XSS fix. The first prevents accidentally saving post meta information to a revision. The second prevents XML-RPC from fetching incorrect post types. The third adds some user ID sanitization during bulk delete requests.

Note that WordPress are skipping version 2.6.4 and jumping from 2.6.3 to 2.6.5 to avoid confusion with a fake 2.6.4 release that made the rounds. There is not and never will be a version 2.6.4.

A New Payment Method and a Securer Client Area

Sunday, August 10th, 2008

As we expand as a company, we have to think even more so about how we can make each and every visitor to our website have a better and safer experience - regardless of if they are a customer or not. With this in mind, I have made two fairly significant updates to the HostedFX website.

A new payment gateway - Google Checkout
Google Checkout is becoming quite popular lately. If you haven’t heard of it, it is quite similar to the ever-popular PayPal. “With Google Checkout you can quickly and easily buy from stores across the web and track all your orders and shipping in one place.” So far, we have found the fee’s on transactions to be slightly lower than PayPal’s and the whole interface is extremely pleasing on the eye and pleasant to use.

Google Checkout

For this reason, HostedFX now accepts Google Checkout as a payment method for all new orders and invoices for existing customers. Simply select Google Checkout from the drop-down box when paying an invoice. The only downside that I’ve found of Google Checkout is that there is no option for subscriptions; so for those of you who prefer to use a subscription, Google Checkout probably isn’t for you just yet.

The client area is now even more secure
We’ve decided to go ahead and add SSL encryption to all of our transactions and activity within the client area (notice the new URL). For those of you who are not aware of what this means; “An SSL Certificate refers to the digital certificate used with the most popular security protocol on the Internet. When you make a purchase on the Web and notice the closed lock icon at the top or bottom of your browser or the HTTPS:// prefix in the URL, it means you have established a secure SSL connection.

Two simple updates, which have meant more flexibility along with a greater sense of security for all of our clients. As always, if you have any suggestions just let us know.

Thank you,

Gareth Hodson

HostedFX Web Hosting CEO.

The Clients Area Has Moved…(Kind Of)

Monday, August 4th, 2008

Very quick update for you guys,

The clients/order/support area for HostedFX has always been located at hostedfx.com/clients/ - but now I have decided to move it onto the domain of clients.hostedfx.com.

This is predominantly for two main reasons;

1. Having the area on a subdomain means we will be adding an SSL certificate to the clients area to make logging in/ordering even more secure.

2. We will soon (hopefully this week!) be offering Google Checkout as a payment method, so you will be able to choose between Google Checkout and PayPal in order to pay invoices. Additionally, Google Checkout happens to require an SSL certificate in order to use it…(see point 1).

Two simply reasons to further improve the whole HostedFX experience. Please let me know your thoughts on this, especially with regards to the new payment method of Google Checkout.

Thanks all,
Gareth

P.S you may still access the client area via hostedfx.com/clients, but in order to use it more securely from next week I strongly recommend using the subdomain of clients.hostedfx.com.


Our Blog   |    Terms of Service   |    Privacy   |   Clients Login   |   Contact-Us
Copyright © 2005-2009 HostedFX.com. All Rights Reserved