educational

Hosting Talk: Site Security, Content Protection

Online adult business owners and webmasters face an array of challenges in the current market, everything from competition to piracy, but most recently the Web experienced a world-wide shock with the Heartbleed Bug. This serious OpenSSL vulnerability allowed hackers to steal protected information through a weakness in SSL/TLS encryption and exposed personal, financial and other important and private information. And it affected websites of all sizes and categories, everything from Yahoo to RollingStone.com, sending users around the globe scrambling to change their passwords. The list of affected sites is pages long, and websites including heartbleed.com have provided an easy search bar that allows users to type in any website to test for vulnerability.

The Heartbleed Bug has rocked the Internet, as OpenSSL is the backbone of an incredible number of programs and services that allow SSL or TLS based protocols, as well as almost 60 percent or more of websites that offer HTTPS connections. And in the adult industry, user data protection is key not only for credit card and payment processing but also for discretion and privacy of site members. And the Heartbleed flaw exposed both valuable members’ information, but also that of our very own networks – and if you haven’t already, adopting Fixed SSL and alerting users should be your No. 1 priority.

The bright side of this Heartbleed “disaster” is that we all have the opportunity up give our security strength a serious upgrade.

If your site(s) have been confirmed vulnerable, alert all members immediately. Possible exploitation or attacks are untraceable, which means there’s no way to know 100 percent if your users’ information was leaked. This means it’s up to you to patch this security threat, and until you do – and can confirm to your user base – there’s a serious risk of revenue loss. Trust is key, and without fast and straight-forward communication, trust will be lost.

Recommend that users check every website they commonly use (adult or otherwise) to test for Heartbleed vulnerability and edit their passwords as needed. There’s a chance that every user has been affected by Heartbleed either directly or indirectly. To test your site for the Heartbleed vulnerability, visit https://www.redapplemedia.com/go/heartbleed.

The bright side of this Heartbleed “disaster” is that we all have the opportunity up give our security strength a serious upgrade. Our personal data may have been exposed, but so has the infrastructure of these cyber criminals’ hacking methods. And fortunately there are tools that website owners can use to test their own systems for privacy weaknesses, including Heartbleed, as well as services that help beef up site-wide security.

The new SafeGuard feature by Codenomicon Defensics can detect and reveal all kinds of vulnerabilities and bugs, including Heartbleed, and is automated to make the process as fluid as possible. Be sure to replace any vulnerable SSL certificates and cryptographic protocols with those that have been patched to protect from these kinds of vulnerabilities. Considerations like keeping up to date on virus protection and definitions is crucial, as well: threats to your website are dynamic and ever-changing, so it’s absolutely critical that your protection is updated consistently and evolves to deal with threats that morph on a daily basis.

A good managed hosting package and a close relationship with your hosting provider also will go a long way toward optimizing your security. Many companies simply aren’t staffed with IT professionals who can handle the broad range of tasks and techniques that are required to provide solid security in-house, so it’s common sense to work with a host that has the expertise, man power, and service packages that include essentials like robust firewalls, software that detects and prevents unauthorized server access, traffic tracking to detect sudden bandwidth spikes, intrusion attempts, and other indicators of malicious use of your sites. Security can be a daunting subject for business owners, especially those who lack technical background of their own. But these security protection challenges can’t be ignored – they must be faced head on and handled in a proactive and timely fashion. Whether you address these needs with in-house hires or outsource them to capable third parties, the important thing is to act decisively and urgently to lock down your network and its content as effectively as possible. The alternative is to leave your online business at the mercy of a global network that’s teeming with pirates, hackers, scammers and thieves – none of whom have a particularly strong reputation of being merciful.

Steven Daris is CEO and co-founder of Red Apple Media (RedAppleMedia.com), a managed hosting, ecommerce and video streaming solutions provider.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More Articles

opinion

The Search for Perfection in Your Payments Page

There has been a lot of talk about changes to cross sales and checkout pages. You have likely noticed that acquirers are now actively pushing back on allowing merchants to offer a negative option, upsell or any cross sales on payment pages.

Cathy Beardsley ·
opinion

Unpacking the Payment Card Industry's Latest Data Security Standard

The Payment Card Industry Data Security Standard (PCI DSS) is a set of requirements and guidelines that apply to all businesses that accept credit card payments, and is designed to ensure the security of those transactions.

Jonathan Corona ·
opinion

Compliance With State Age Verification Laws

During the past year, website operators have faced a slew of new state age verification laws entailing a variety of inconsistent compliance obligations.

Lawrence Walters ·
opinion

Merchants in Spotlight With Visa's VIRP

By now, most merchants know about the Visa Integrity Risk Program (VIRP) rolled out in spring 2023. The program is designed to ensure that acquirers and their designated agents — payment facilitators, independent sales organizations and wallets — maintain proper controls and oversight to prevent illegal transactions from entering the Visa payment system.

Cathy Beardsley ·
opinion

How to Know When Hosting Upgrades Are Really Needed

I was reminded about an annoyingly common experience that often frustrates website owners: upgrades. Sometimes, an upgrade of physical system resources like CPU, RAM or storage really is required to solve a problem or improve performance… but how do you know you’re not just being upsold?

Brad Mitchell ·
profile

WIA Profile: Natasha Inamorata

Natasha Inamorata was just a kid when she first picked up a disposable camera. She quickly became enamored with it and continued to shoot with whatever equipment she could afford. In her teens, she saved enough money to purchase a digital Canon ELPH, began taking portraits of her friends, shot an entire wedding on a point-and-shoot camera and edited the photos with Picnik.

Women in Adult ·
trends

Collab Nation: Top Creators Share Best Practices for Fruitful Co-Shoots

One of the fastest ways for creators to gain new subscribers and buyers, not to mention monetize their existing fan base, is to collaborate with other creators. The extra star power can multiply potential earnings, broaden brand reach and boost a creator’s reputation in the community.

Alejandro Freixes ·
opinion

Bridging Generational Divides in Payment Preferences

While Baby Boomers and Gen Xers tend to be most comfortable with the traditional payment methods to which they are accustomed, like cash and credit cards, the younger cohorts — Millennials and Gen Z — have veered sharply toward digital-first payment solutions.

Jonathan Corona ·
opinion

Legal and Business Safety for Creators at Trade Shows

As I write this, I am preparing to attend XBIZ Miami, which reminds me of attending my first trade show 20 years ago. Since then, I have met thousands of people from all over the world who were doing business — or seeking to do business — in the adult industry.

Corey D. Silverstein ·
opinion

Adding AI to Your Company's Tech Toolbox

Artificial intelligence is all the rage. Not only is AI all over the headlines, it is also top of mind for many company leadership teams, who find themselves asking, “How can this new tool help our company?”

Cathy Beardsley ·
Show More