educational

Hosting Talk: Site Security, Content Protection

Online adult business owners and webmasters face an array of challenges in the current market, everything from competition to piracy, but most recently the Web experienced a world-wide shock with the Heartbleed Bug. This serious OpenSSL vulnerability allowed hackers to steal protected information through a weakness in SSL/TLS encryption and exposed personal, financial and other important and private information. And it affected websites of all sizes and categories, everything from Yahoo to RollingStone.com, sending users around the globe scrambling to change their passwords. The list of affected sites is pages long, and websites including heartbleed.com have provided an easy search bar that allows users to type in any website to test for vulnerability.

The Heartbleed Bug has rocked the Internet, as OpenSSL is the backbone of an incredible number of programs and services that allow SSL or TLS based protocols, as well as almost 60 percent or more of websites that offer HTTPS connections. And in the adult industry, user data protection is key not only for credit card and payment processing but also for discretion and privacy of site members. And the Heartbleed flaw exposed both valuable members’ information, but also that of our very own networks – and if you haven’t already, adopting Fixed SSL and alerting users should be your No. 1 priority.

The bright side of this Heartbleed “disaster” is that we all have the opportunity up give our security strength a serious upgrade.

If your site(s) have been confirmed vulnerable, alert all members immediately. Possible exploitation or attacks are untraceable, which means there’s no way to know 100 percent if your users’ information was leaked. This means it’s up to you to patch this security threat, and until you do – and can confirm to your user base – there’s a serious risk of revenue loss. Trust is key, and without fast and straight-forward communication, trust will be lost.

Recommend that users check every website they commonly use (adult or otherwise) to test for Heartbleed vulnerability and edit their passwords as needed. There’s a chance that every user has been affected by Heartbleed either directly or indirectly. To test your site for the Heartbleed vulnerability, visit https://www.redapplemedia.com/go/heartbleed.

The bright side of this Heartbleed “disaster” is that we all have the opportunity up give our security strength a serious upgrade. Our personal data may have been exposed, but so has the infrastructure of these cyber criminals’ hacking methods. And fortunately there are tools that website owners can use to test their own systems for privacy weaknesses, including Heartbleed, as well as services that help beef up site-wide security.

The new SafeGuard feature by Codenomicon Defensics can detect and reveal all kinds of vulnerabilities and bugs, including Heartbleed, and is automated to make the process as fluid as possible. Be sure to replace any vulnerable SSL certificates and cryptographic protocols with those that have been patched to protect from these kinds of vulnerabilities. Considerations like keeping up to date on virus protection and definitions is crucial, as well: threats to your website are dynamic and ever-changing, so it’s absolutely critical that your protection is updated consistently and evolves to deal with threats that morph on a daily basis.

A good managed hosting package and a close relationship with your hosting provider also will go a long way toward optimizing your security. Many companies simply aren’t staffed with IT professionals who can handle the broad range of tasks and techniques that are required to provide solid security in-house, so it’s common sense to work with a host that has the expertise, man power, and service packages that include essentials like robust firewalls, software that detects and prevents unauthorized server access, traffic tracking to detect sudden bandwidth spikes, intrusion attempts, and other indicators of malicious use of your sites. Security can be a daunting subject for business owners, especially those who lack technical background of their own. But these security protection challenges can’t be ignored – they must be faced head on and handled in a proactive and timely fashion. Whether you address these needs with in-house hires or outsource them to capable third parties, the important thing is to act decisively and urgently to lock down your network and its content as effectively as possible. The alternative is to leave your online business at the mercy of a global network that’s teeming with pirates, hackers, scammers and thieves – none of whom have a particularly strong reputation of being merciful.

Steven Daris is CEO and co-founder of Red Apple Media (RedAppleMedia.com), a managed hosting, ecommerce and video streaming solutions provider.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More Articles

profile

WIA Profile: Samantha Beatrice

Beatrice credits the sex positivity of Montreal for ultimately inspiring her to pursue work in adult entertainment. She had many friends working in the industry, from sex workers to production teams, so it felt like a natural fit and offered an opportunity to apply her marketing and social media savvy to support people she truly believes in and wants to see succeed.

Women In Adult ·
opinion

Understanding the Latest Server Processors

Over the last decade, we mostly stopped talking about CPU performance. Recently, however, there has been a seismic and exciting change in the CPU landscape, due to innovation by a chip company called Advanced Micro Devices (AMD).

Brad Mitchell ·
opinion

User Choice, Privacy and the Importance of Education in AV

As we discussed last month, age verification in the adult sector is critical to ensuring legal compliance with ever-evolving regulations, safeguarding minors from inappropriate content and protecting the privacy of adults wishing to view adult content.

Gavin Worrall ·
opinion

Maintaining Payment Processing Compliance When the Goalpost Keeps Moving

VIRP is the new four-letter word everyone loves to hate. The Visa Integrity Risk Program went into effect last year, and affects several business types — including MCC 5967, which covers adult and anything else with nudity, and MCC 7273, dating services that don’t allow nudity.

Jonathan Corona ·
opinion

Making the Most of Your Sales Opportunities

The compliance road has been full of twists and turns this year. For many, it’s been a companywide effort just to make it across that finish line. Hopefully, most of us can now return our attention to some important things we’ve left on the back burner for months — like driving revenue.

Cathy Beardsley ·
profile

YourPaysitePartner Marks 25-Year Anniversary Amid Indie Content Renaissance

For 25 years, YourPaysitePartner has teamed up with stars and entrepreneurial brands to bring their one-stop-shop adult content dreams to life — and given the indie paysite renaissance of the past few years, the company’s efforts have paid off in spades.

Alejandro Freixes ·
opinion

WIA Profile: B. Wilde

B. Wilde considers herself a strategic, creative, analytical and entertaining person by nature — all useful traits for a “marketing girlie,” a label she happily embraces.

Women In Adult ·
opinion

Proportionality in Age Verification

Ever-evolving age verification (AV) regulations make it critical for companies in the adult sector to ensure legal compliance while protecting the privacy of adults wishing to view adult content. In the past, however, adult sites implementing AV solutions have seen up to a 60% drop in traffic as a result.

Gavin Worrall ·
opinion

Goodbye to Noncompete Agreements in the US?

A noncompetition agreement, also known as a noncompete clause or covenant not to compete, is a contract between an employer and an employee, or between two companies.

Corey D. Silverstein ·
opinion

The Search for Perfection in Your Payments Page

There has been a lot of talk about changes to cross sales and checkout pages. You have likely noticed that acquirers are now actively pushing back on allowing merchants to offer a negative option, upsell or any cross sales on payment pages.

Cathy Beardsley ·
Show More