Everybody who has sense protects their property. Be it their car, house or personal belongings they are protected.
This blog will outline measures to protect your website/business.
1. PasswordsNever use the same password on more than one website. Whilst most websites encrypt your passwords, some do not. This means they or others could have full access to your chosen password.
Make them strong by adding additional characters into the mix, passwords like 'mike999' can easily be accessed in minutes from a home PC automatically. However, adding characters into that makes it almost impossible for it to be exploited an example would be MiK!e9$9"g.
2. Scan for malware/virusesIt is important to keep your malware protected up to date at all time. Personally we use Malwarebytes a free tool, alongside AVG (also free) and Spybot Search & Destroy. It is vital that these are up to date at all time.
Keyloggers are becoming very popular making it easier for others to grab your online world and turn it upside down. A keylogger copies everything you write, copy or paste into a database and sends it back to the intruder and allows them to access your accounts.
3. Hire a Server AdministratorAlthough you may think this is an expensive option in the long run it may not be. Server Admins will be able to scan your server for malware and trojan viruses and keep it safe from exploits.
Note: Always verify the users details and preferably use somebody you personally know.4. BackupIt is VITAL to backup your website/server on a daily basis to avoid having to start all over again if something goes wrong. Remember to use reputable backup companies like WebbyCart.
5. Domain LockingBelieve it or not, if you do not lock your domain name within your account it can be moved out of there within minutes. If you are unsure how to lock your domain contact your registrar.
6. Domain ProtectionProtecting your domain name by paying an additional $20 a year is a must. Using this option adds masses of protection to your domain to help avoid intruders transferring without your knowledge.
7. Do NOT use FTPFTP is only safe if you do not save your passwords to your FTP client, which I bet you do. Never save any password within your PC as it is an easy exploit hole.
Try to avoid using FTP all together by using SFTP (SSH FTP) which is much more secure. (your server admin will help get you setup with this)
8. Expired domains on accountAlways make sure that your domain registrar has an up to date email address on file. Wondering why? This is the easiest method for outsiders to access your account. If they find your email address via whois and find the email domain is no longer owned by anyone it can simply be bought and a password reset can be sent to that email address. Think smart!
9. Use Sandboxie
Sandboxie is like a VPN system which removes any malware from its system on closure. It is recommended that you browse the internet in this environment instead of on your normal desktop PC as any viruses will automatically be shut out when the program is closed.
10. Choose a good host
Always go with the more reputable web hosts as they have more security and higher technical knowledege available. Think about it logically.... If you decide to go with a smaller cheaper host, do you know who runs the company? What if only one person runs the whole company? What if they decide to close down or die? (You may think I am going over the top, but it is a possibility).
11. Chosing your domain registrarYou may think it is a good idea to go with who ever you like, but remember, your website name is the one most important factor of having a website. You can always backup your website files and push to another server if you have issues, this is not the case with your domain name. It is recommended to use english companies like GoDaddy as they are easier to communicate with if issues arise. Remember to always check if the website has a phone number, if it does call it. No answer? Do not go there!
12. Do not share informationDo not share your passwords via email or any other form of online communication e.g. skype/facebook. Call/fax or visit the person who needs the information and provide it in a way that cannot be digitally traced or stolen.
13. Is that Wordpress/Joomla/Drupal/..... Plugin Safe?Before adding plugins or modules to your website have them checked by a professional for backdoor functions. Odesk is your best bet to finding a low cost professional coder.
Remember to always backup your online portfolio and secure it in any way possible.
We hope this helps keep you safe.