GoranStimac.com

How Can I Help


Let's Connect

Security

Post | 5 min

4 Strategies to Mitigate Pass-the-Cookie Attacks

At the beginning of 2021 CISA (the USA Cybersecurity and Infrastructure Security Agency) stated that there is an increase of attacks targeting cloud environment configurations occurring as a result of the increase in remote working. The fact is that more and more corporate and personal devices are...

Post | 2 min

Magento 2: Introducing the Upgrade Compatibility Tool

You should know the importance of upgrading to the latest version of Magento Commerce to get the most value out of the platform and maintain a secure store. Keeping your Magento Commerce environment up to date is key to meeting your business needs. However, those upgrades take planning and...

Post | 1 min

Node.js April 2021 Security Releases

Maintained projects that rely on Node.js will be updated per schedule. Summary The Node.js project will release new versions of all supported release lines on or shortly after Tuesday, April 6th, 2021. Three High severity issues Impact The 15.x release line of Node.js is vulnerable to two high...

Post | 2 min

Lightsail Databases MySQL 5.6 End-of-Life date is August 3, 2021

Dear partners if AWS sent you THIS email don’t worry all my projects are deployed using the new MySql 8. NOTE: If you do not currently have a Lightsail database running MySQL 5.6, and are not planning to create one, this notice does not apply. Amazon Lightsail is starting the end of life (EOL)...

Post | 2 min

Node v12.22.0 (LTS) is out - notable changes

Maintained projects that rely on Node.js will be updated per schedule. The legacy HTTP parser is runtime deprecated The legacy HTTP parser, selected by the --http-parser=legacy command line option, is deprecated with the pending End-of-Life of Node.js 10.x (where it is the only HTTP parser...

Post | 1 min

A vulnerability in the netmask npm package, tracked as CVE-2021-28918

Maintained projects that rely on this npm package are updated or will be as soon as there is an update. A vulnerability in the netmask npm package, tracked as CVE-2021-28918, could be exploited by attackers to conduct a variety of attacks. The Netmask class was developed to parse and understand IPv4...

Post | 4 min

Symfony 4.4.21 and 5.2.6 released

Maintained projects that rely on Symfony will be updated per schedule. What is Symfony? Symfony is a PHP web application framework and a set of reusable PHP components/libraries. It was published as free software on October 18, 2005 and released under the MIT license. Symfony aims to speed up the...

Post | 1 min

What is SSL and why do you need it?

What is SSL? Secure Sockets Layer or SSL is the name for encrypting or encrypting data from readable text to encrypted text that is readable only by those who have the key to decode that data and allows secure communication over computer networks. Why do you need SSL? Since 2014, Google and other...

Post | 0 min

How to easily make the WordPress system more secure?

Each WordPress installation in the root directory of the application has a file wp-config.php to which you need to add these two lines of code to the very bottom of the file: // SECURE WP define( 'FORCE_SSL_ADMIN', true ); define( 'DISALLOW_FILE_MODS', true ); FORCE_SSL_ADMIN...

Post | 2 min

Mozilla has reduced the lifespan of TLS certification to 1 year

Mozilla has officially announced that as of September 1, 2020, it will no longer consider valid any newly issued certificate with a shelf life of more than 398 days or just over a year. Browser developers and certificate security experts have been trying for some time to reduce the lifespan of a TLS...

Looking for an IT professional?

Schedule a Consultation