27 Aug 2015

Should your website be encrypted?


When Google announced in August 2014 that it is now favouring sites that are entirely encrypted in search results, websites started switching, using the secure HTTPS protocol as default. Many sites already use encryption for key pages such as login or online purchases, but the new trend is to encrypt everything. Is this something your website should be doing? On 1 st August 2014, HTTP Archive, a website which tracks trends in the World Wide Web, showed that 9% of web pages were encrypted. This figure jumped after Google’s announcement, and currently stands at 20%. One big reason behind this
26 Feb 2015

Extra security and speed with CloudFlare


Anyone running a website will be aware of a growing threat from malicious software, usually powered by networks of infected computers known as botnets. Vulnerabilities in software are increasingly targeted, and the numbers of distributed denial of service (DDoS) attacks on websites are estimated to have increased tenfold since 2009. I’ve been running websites for over 15 years, and I’ve seen first-hand how much growth there has been in this type of traffic. Checking the logs for most websites will reveal that a botnet has been testing for a vulnerability. Website security has never been so
17 Sep 2014

Unions & cloud-based services


Cloud-based services have been growing in popularity over the last few years. These services are delivered online and are usually paid for on an ongoing basis, with flexible pricing depending on the needs of the user. This usually results in lower costs and lower risks, combined with reliable and well-built software. While some unions are already using these services, their popularity will grow over the next few years. One cloud-based service that a number of unions are already using is MailChimp. This web-based application allows unions to email their members and can handle a huge number of
08 Nov 2011

Power of the Password


The recent News of the World phone hacking scandal illustrated how easy it can be to access poorly protected information. The investigators who hacked into the phones were not IT geniuses; they just exploited basic flaws in the caller ID and PIN systems. A few years back, a default PIN was provided for access to mobile messages – with the onus on the user to change it if they wanted to. Needless to say, many people never bothered to change this default PIN. Even when they did, it was often to an easy to guess number, like 1234 or 3333. While things have improved with mobile message security