Search This Blog
Popular Posts
-
Elegant Themes has been developing WordPress themes for a long time. It has developed lots of popular themes including Divi, Nexus, Fa...
-
Flickr/Laura D'Alessandro See Also I took Harvard Business School's new pre-MBA course online — and it is definitely w...
-
Hello there! My blog post 'Spikes' was published on Sept. 22nd; however, the post before it called 'Flow' was published on...
-
I will publish an article only when I have something important to say. That's what I reminded myself every time the egocentric ...
-
Hi there! There isn't a true e-commerce solution here at WordPress.com. You can, however get a PayPal button. If you get a PayPal bu...
-
Good news for the secure web: WordPress will now encrypt the traffic for over a million more websites that are hosted on its servers. Wo...
-
How to start a blog or website in 5 minutes with WordPress. After publishing the post on how I started blogging full-time, I'v...
-
KOZHIKODE: E A Jabbar, a retired teacher and an activist of Malappuram based Yukthi vadi Sangham, has filed a complaint before chief minis...
-
At the ripe young age of 32, back in 2009, Uber CEO Travis Kalanick apparently launched a Wordpress blog called Swooshing, and for some ...
-
Wednesday the latest version of WordPress 4.7.1 was released by the WordPress Team, it is classified as a security release for all pre...
Blog Archive
- December (18)
- November (29)
- October (27)
- September (29)
- August (31)
- July (30)
- June (29)
- May (29)
- April (30)
- March (31)
- February (28)
- January (31)
- December (31)
- November (30)
- October (31)
- September (30)
- August (43)
- July (42)
- June (33)
- May (43)
- April (36)
- March (37)
- February (31)
- January (4)
- December (1)
- November (1)
- October (24)
- September (24)
- August (25)
- July (28)
- June (18)
- September (1)
Total Pageviews
Blogroll
WordPress sets up default HTTPS encryption for custom domains
WordPress has turned on HTTPS encryption for every custom domain hosted on WordPress.com. The publishing platform started working with the certificate authority Let's Encrypt to launch a beta rollout of HTTPS earlier this year. In 2014, WordPress implemented HTTPS for websites that used WordPress.com subdomains.
"The Let's Encrypt project gave us an efficient and automated way to provide SSL certificates for a large number of domains," wrote Barry Abrahamson, chief systems wrangler at Automattic, WordPress' parent company, wrote on a blog post. "We launched the first batch of certificates in January 2016 and immediately started working with Let's Encrypt to make the process smoother for our massive and growing list of domains."
The encryption capability is the latest security fix that WordPress has added to its security measures. In September 2015, WordPress released version 4.3.1, an update that fixed three security issues, and warned users that earlier versions were discovered to contain a cross-site scripting vulnerability. In April 2013, WordPress began offering two-factor authentication as an opt-in for users.
Several vulnerabilities affecting popular plugins on WordPress have been discovered in recent months. Most notably, gaping vulnerabilities were discovered on the website of Mossack Fonseca, the Panamanian law firm that experienced an email server breach that led to the exfiltration of 2.6 terabytes, including 11.5 million confidential documents, now referred to as the Panama Papers. The firm's website contained at least two WordPress plugins that would provide login credentials to the email server if WordPress was hacked, allowing remote attackers to send and receive email.
WordPress is used on 25 percent of websites, according to data published by W3Techs. "We should be comfortably past 25 [percent] by the end of the year," Automattic founder Matt Mullenweg wrote on his personal blog in November.
Source: WordPress sets up default HTTPS encryption for custom domains
0 comments:
Post a Comment