Security

11 Top Tips for WordPress Security

With around 8.5% of all world’s websites powered by it, and Pipe Ten customers using it more and more each day, we’ve put together this post about securing WordPress and keeping your blog safe. In no particular order: 1. Avoid … Continue reading

Tagged

PHP allow_url_fopen now allowed

For the past few years we have as policy prevented the use of PHP allow_url_fopen on our shared and reseller web servers in order to mitigate against the most common code exploits and attack vectors seen within customers PHP code. … Continue reading

Software security updates

Aside from having a secure initial installation with robust passwords, correct file permissions and running under FastCGI the single best method for ensuring long term security of your site, whatever the software, would be keeping up to date with the … Continue reading

Tagged ,

Creating secure passwords

To create a secure password that is easy for you to remember try to follow these simple steps: Do not use personal information. Anything that is guessable such as pets name, your last name, date of birth, address should be … Continue reading

Tutorial: Webshell Password Protect Wizard

A quick FAQ on how to password protect a directory in your web space using the control panels password protect wizard built into WebShell/FileManager.

Tagged

UK – Service Modifications 01/03/2010 onwards [allow_url_fopen]

Brief: On Monday March 1st we will be changing a php.ini configuration option on all of our shared and reseller hosting servers which may affect your website code.

Tagged , ,

How to change your hosting passwords

You can change all your passwords related to your Pipe Ten hosting account from within the control panel as follows: Control panel password. Primary FTP account password. Sub-FTP user passwords – Navigate to ‘FTP/User Account’ > ‘FTP User’ in the menu … Continue reading

How to update your contact details

It is imperative that you keep your contact details updated as Pipe Ten will use this information to contact you about your account account as required, especially that there is a valid email address listed on the account as this … Continue reading

Security note for WordPress users

“It looks like sites which have not upgraded to 2.6.3 are being exploited in an interesting way whereby a hacker, probably using an automated script, is hacking into sites with the vulnerability and changing the settings of one of the … Continue reading

Tagged

What are EV SGC SSL certificates?

Quite a few of you have been asking what our new EV SGC SSL certificates do, and why they are “so expensive”. Hopefully we’ll explain in relatively simple terms below why these certificates are worth every penny…

What is Mod Security?

What is Mod Security? ModSecurity is a web application firewall.

Tagged ,

Do you use a firewall on your servers?

We operate both inbound and outbound firewalls across all of our shared hosting offerings. We also have IDS (intrusion detection systems) on both the servers and routers to capture/track/prevent malicious requests where possible. This is all coupled with high frequency … Continue reading