Skip to content
Joomla

HOSTING AND DOMAINS The Heartbleed flaw: everything you need to know

Team Host.it 2 min read

Content

Used by about two thirds of servers, the flaw has been present since last December 2011 and was resolved in recent days by a security company in collaboration with a Google researcher.

The bug was "fixed" (resolved) in OpenSSL version 1.0.1g, the vulnerable versions of OpenSSL range from 1.0.1 to 1.0.1f.

What is OpenSSL? It is an implementation of the two open source protocols SSL and TSL which guarantee web security of communications and transactions (secure connection) for a certain period of time. The use of security software, such as OpenSSL, encrypts sensitive data (such as login passwords) and protects it until it reaches the destination server, for example from our home PC to the server of our online bank.

In simple words, the well-known yellow padlock at the top left near the website address with the incipit "https" which appears when we connect, for example, to the reserved area of our bank or to e-mail and transmit sensitive data such as name, surname, credit card or access password.

The padlock and the "https" protocol guarantee that the connection is encrypted and therefore safe and that once the sensitive data has been sent, it cannot be deciphered by third parties as it is encrypted and only the destination server knows the encryption key.

JoomlaHost and Heartbleed JoomlaHost.it confirms that this global flaw has not impacted our systems, we therefore assure that every transaction or data exchange carried out is and has been totally safe. None of our users were affected by the bug. For those who wish to verify the vulnerability they can connect to the following link:

https://filippo.io/Heartbleed/

By typing joomlahost.it in the search field, the system will confirm that our website is completely unrelated to the Heartbleed bug.

JoomlaHost, hosting and dedicated servers In addition to the complete security of our sites and hosting hosted on our servers, by today all customers with active managed and unmanaged dedicated servers will be notified and informed of the security flaw and assisted in checking or updating the version of the OpenSSL software, if active.

JoomlaHost, leader in the Joomla! hosting market, once again confirms its commitment to the web security of its sites, shared hosting and managed and unmanaged dedicated servers.

For any information or doubts the technical staff remains at your disposal via ticket.

Joomla hosting

Joomla hosting in Italy

Plans with backups, SSL certificates and tools for developers and agencies.

From the blog

WordPress

WordPress 7.0 e l’AI

Cosa cambia per le web agency

Sicurezza

Patch a caldo, sito acceso

CVE kernel senza riavvii a raffica

From the archive

Joomla

Why Host.it chose Joomla 4 as its frontend

Joomla

Data Protection Day - The importance of Privacy and Security