<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Attacks | Perugi Web Design | Wordpress Web Design and Development | Greater Boston | MetroWest</title>
	<atom:link href="https://perugi.com/category/attacks/feed/" rel="self" type="application/rss+xml" />
	<link>https://perugi.com</link>
	<description>Wordpress Web Design and Development &#124; Greater Boston &#124; MetroWest</description>
	<lastBuildDate>Mon, 20 Apr 2020 22:05:43 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://perugi.com/wp-content/uploads/2014/04/logofor-home-e1400271931573-100x100.jpg</url>
	<title>Attacks | Perugi Web Design | Wordpress Web Design and Development | Greater Boston | MetroWest</title>
	<link>https://perugi.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Watch out for malware phishing attempts</title>
		<link>https://perugi.com/watch-out-for-malware-phishing-attempts/</link>
		
		<dc:creator><![CDATA[Deborah Perugi]]></dc:creator>
		<pubDate>Mon, 20 Apr 2020 21:34:16 +0000</pubDate>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[Bluehost]]></category>
		<category><![CDATA[Hacked]]></category>
		<category><![CDATA[Hosting]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[Web Care]]></category>
		<guid isPermaLink="false">https://perugi.com/?p=29544</guid>

					<description><![CDATA[I almost got snagged today by some pretty clever malware appealing to my sense of duty. See the email I received today. The email looks right. There were no spelling errors. But there were several clues I will describe that you can watch out for. CLUE #1: No one refers to me as DEBORAH ANN, [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>I almost got snagged today by some pretty clever malware appealing to my sense of duty. See the email I received today. The email looks right. There were no spelling errors. But there were several clues I will describe that you can watch out for.</p>
<p>CLUE #1: No one refers to me as DEBORAH ANN, so that is clue number one, albeit not necessarily a red flag.</p>
<p>&nbsp;</p>
<p><img loading="lazy" decoding="async" class="alignleft size-large wp-image-29545" src="https://perugi.com/wp-content/uploads/2020/04/malware-email-1024x488.png" alt="" width="1024" height="488" srcset="https://perugi.com/wp-content/uploads/2020/04/malware-email-980x467.png 980w, https://perugi.com/wp-content/uploads/2020/04/malware-email-480x229.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) and (max-width: 980px) 980px, (min-width: 981px) 1024px, 100vw" /></p>
<p>CLUE #2: Now look at the link. It starts with http://&#8230; Most reputable sites, especially domain companies will be using httpS://&#8230; The S is for secure and many of us in the know have changed ours two years ago. And again, we see the signature area missing the S on http://.</p>
<p>CLUE #3: Look inside the link. A real url will be simpler. For instance it would read something like &#8230;<strong>bluehost.com/account/reactivation.html.</strong> Instead, we see &#8220;bluehost.com/<strong>cyberlegosite.com</strong>/account/reactivation .html. This is a fake site. Now here is your red flag!</p>
<p>CLUE #4: So if you have been unlucky enough to actually experience malware on your Bluehost site you might have taken the bait and clicked the link. Like me, you&#8217;d hopefully get the warning below. If you missed the first few clues, do pay attention to any warning&#8230;and call your web site manager to check it out!</p>
<p>P.S. I had a chat with Bluehost and they confirmed it was malware and they have been getting a lot of reports on this today.</p>
<p><img loading="lazy" decoding="async" class="alignleft size-large wp-image-29546" src="https://perugi.com/wp-content/uploads/2020/04/malware2-1024x545.png" alt="" width="1024" height="545" srcset="https://perugi.com/wp-content/uploads/2020/04/malware2-980x522.png 980w, https://perugi.com/wp-content/uploads/2020/04/malware2-480x256.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) and (max-width: 980px) 980px, (min-width: 981px) 1024px, 100vw" /></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Staying Home and Staying Safe</title>
		<link>https://perugi.com/staying-home-and-staying-safe/</link>
		
		<dc:creator><![CDATA[Deborah Perugi]]></dc:creator>
		<pubDate>Mon, 16 Mar 2020 20:08:07 +0000</pubDate>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[DIVI]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[Web Care]]></category>
		<guid isPermaLink="false">https://perugi.com/?p=29533</guid>

					<description><![CDATA[This March 2020 is not like any other March I have known in my lifetime. The Corona Virus is upon us and we must take care of ourselves like never before. We will be inside except for perhaps a walk outdoors to take in some sunshine. Nature generously reminds us that this will pass and [&#8230;]]]></description>
										<content:encoded><![CDATA[<p><img loading="lazy" decoding="async" class="alignright wp-image-29534" src="https://perugi.com/wp-content/uploads/2020/03/webcarelist-228x300.jpg" alt="" width="350" height="460" />This March 2020 is not like any other March I have known in my lifetime. The Corona Virus is upon us and we must take care of ourselves like never before. We will be inside except for perhaps a walk outdoors to take in some sunshine. Nature generously reminds us that this will pass and eventually we will get back to our routine and be grateful for it.</p>
<p>In the meantime, those of us who can work from home are doing so, and this includes me updating your websites at once or twice every week to keep it safe. Rest assured, I am keeping a lookout for any potential viruses that might be lurking. If you want weekly security updates please contact me and we can add it to your service. My program has the potential to add services that may be useful to you. But because they cost more, I don&#8217;t include them in the normal subscription.</p>
<p>Today, I made Divi Theme updates to over 30 websites, two Woo Commerce database updates that had to be done manually, over 20 plugin updates to various client websites. There were no scammy comments to delete. One website&#8217;s dashboard recommended I check on a potential virus. I had the Manage WP program review it and it was declared safe. All sites are backing up fine so no corrections were needed.</p>
<p>These are the things I check on every week&#8230;</p>
<p>Until next month stay safe and take advantage of your down time with family and loved ones.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The Twelve Days of a Website Consultancy</title>
		<link>https://perugi.com/the-twelve-days-of-websites/</link>
		
		<dc:creator><![CDATA[Deborah Perugi]]></dc:creator>
		<pubDate>Tue, 20 Dec 2016 22:32:24 +0000</pubDate>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[Clients]]></category>
		<category><![CDATA[Domain]]></category>
		<category><![CDATA[Hacked]]></category>
		<category><![CDATA[Maintenance]]></category>
		<category><![CDATA[Malware]]></category>
		<guid isPermaLink="false">http://perugi.com/?p=26862</guid>

					<description><![CDATA[Being a website consultant is not all fun and games. Much of the time the work can be tedious. Which is why you want me to do it! Here are some of the things I do on a daily basis to help website owners get the best out of their internet presence. These scenarios are based on real help we have [&#8230;]]]></description>
										<content:encoded><![CDATA[<p><img loading="lazy" decoding="async" class="alignleft size-full wp-image-26876" src="http://perugi.com/wp-content/uploads/2016/12/12days.jpg" alt="" width="220" height="211" /> Being a website consultant is not all fun and games. Much of the time the work can be tedious. Which is why you want me to do it! Here are some of the things I do on a daily basis to help website owners get the best out of their internet presence. These scenarios are based on real help we have given to clients on a daily basis.</p>
<p><strong>On the first day&#8230;</strong> you are notified that your domain will expire in 6o days. The domain was purchased years ago and the registrar is a place you never heard of before. Worst case scenario: You ignore the message and your site goes down. The domain goes public and someone buys it. He asks for $6,000&#8230;. Best case scenario: We transfer the domain to our host and update it for you without you having to worry about it again.</p>
<p><strong>On the second day&#8230; </strong>your WordPress website gets hacked because you followed a scam email. Worst case scenario: you never made a back up and you have to hire a security company to clean your website. It takes a month and you have to take your site offline. Best case: Luckily, you signed up for a maintenance plan with us so there is a backup of your website that we restore for you. But no worries, our maintenance plan should prevent it in the first place.</p>
<p><strong>On the third day&#8230;</strong> you are having problems with your website made by an acquaintance who is now too busy to help you update it. We find out your custom hand-built theme has never had security updates and it has malware. We recreate your site using our module based theme that gets regular security updates.</p>
<p><strong>On the fourth day&#8230; </strong>the free plugin on your site is abandoned by the developer and is no longer working correctly. We replace the plugin with one that is similar but supported. When using free plugins we like to contribute to the developer so they can continue working, but they are still a good value.</p>
<p><strong>On the fifth day&#8230; </strong>the Paypal Donation button stopped working on your website. It could be a number of reasons including someone changed your pp password. We reset the code and fix the problem.</p>
<p><strong>On the sixth day&#8230; y</strong>our company is moving and you need the addresses and Google maps to be changed. We also help you by creating an announcement on the website prior to the move.</p>
<p><strong>On the seventh day&#8230; y</strong>ou have been adding images to your blog posts but forgot to reduce their size. Your site slows down because each image is over one megabyte. We reduce the sizes of your images and recheck the performance of your site.</p>
<p><strong>On the eighth day&#8230; </strong>you want to highlight a new service or product but don&#8217;t know the best way to do it. We make recommendations and make the changes for you.</p>
<p><strong>On the ninth day&#8230; </strong>You want to send your clients a holiday email card but don&#8217;t have an image to use. We find a great inexpensive image from a stock agency and send the samples for you to choose. We set it up for you.</p>
<p><strong>On the tenth day&#8230; </strong>You forgot how to add a photo to a newsletter, so you call us and we help you by walking you though it over the phone.</p>
<p><strong>On the eleventh day&#8230; </strong>One of the plugins on your WordPress website won&#8217;t update in the dashboard. You call us and we download a new version from the developers website and replace it.</p>
<p><strong>On the twelfth day&#8230;</strong> You have text and pdfs to add on a new web  page and you want help organizing the material to fit your design and brand. We are happy to assist.</p>
<p><em><strong>Merry Christmas and Happy New Year to all!</strong></em></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Amazing SEO Tool in Maintenance Plan</title>
		<link>https://perugi.com/amazing-seo-tool-in-maintenance-plan/</link>
		
		<dc:creator><![CDATA[Deborah Perugi]]></dc:creator>
		<pubDate>Wed, 02 Nov 2016 20:25:59 +0000</pubDate>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[Maintenance]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[New tools]]></category>
		<category><![CDATA[SEO]]></category>
		<category><![CDATA[Spam]]></category>
		<category><![CDATA[Updates]]></category>
		<guid isPermaLink="false">http://perugi.com/?p=26504</guid>

					<description><![CDATA[Perugi Design uses a powerful new tool that reports website data on everthing from latest backups to SEO standings. On the SEO report page for Perugi Design, it gave me a flow chart of how my website has performed over the past month. (See image below on left). You can filter any amount of time; a whole year or even just one week. Perhaps [&#8230;]]]></description>
										<content:encoded><![CDATA[<p><img loading="lazy" decoding="async" class="alignleft size-thumbnail wp-image-26505" src="http://perugi.com/wp-content/uploads/2016/11/managewp-150x150.png" alt="managewp" width="150" height="150" srcset="https://perugi.com/wp-content/uploads/2016/11/managewp-150x150.png 150w, https://perugi.com/wp-content/uploads/2016/11/managewp-400x400.png 400w, https://perugi.com/wp-content/uploads/2016/11/managewp-100x100.png 100w" sizes="(max-width: 150px) 100vw, 150px" />Perugi Design uses a powerful new tool that reports website data on everthing from latest backups to SEO standings. On the SEO report page for Perugi Design, it gave me a flow chart of how my website has performed over the past month. (See image below on left). You can filter any amount of time; a whole year or even just one week.</p>
<p><img loading="lazy" decoding="async" class="alignright wp-image-26519" src="http://perugi.com/wp-content/uploads/2016/11/SEO-1-1.png" alt="seo-1" width="500" height="355" srcset="https://perugi.com/wp-content/uploads/2016/11/SEO-1-1.png 1015w, https://perugi.com/wp-content/uploads/2016/11/SEO-1-1-510x362.png 510w, https://perugi.com/wp-content/uploads/2016/11/SEO-1-1-300x213.png 300w, https://perugi.com/wp-content/uploads/2016/11/SEO-1-1-768x545.png 768w, https://perugi.com/wp-content/uploads/2016/11/SEO-1-1-600x426.png 600w, https://perugi.com/wp-content/uploads/2016/11/SEO-1-1-610x433.png 610w, https://perugi.com/wp-content/uploads/2016/11/SEO-1-1-400x284.png 400w" sizes="(max-width: 500px) 100vw, 500px" />Perhaps you made a major marketing effort the previous month and want to see how that affected your website&#8217;s SEO. You can see here that visits were doubled in the period from October 11 to October 22. I made some home page edits and wrote a few blog posts. I was surprised to see the change. The chart on the right side lists my top competitors in the area.</p>
<p><strong>This tool also allows you to track specific key words</strong></p>
<p>Let me give you an example. The keywords I wanted to track are &#8220;web design&#8221; and the also towns where I do the most business, such as Framingham, Natick and Boston. One of the ten keywords I chose is &#8220;Framingham Web Design&#8221; and another &#8220;Boston Web Design&#8221;.</p>
<p><strong>How did I do?</strong></p>
<p><img loading="lazy" decoding="async" class="alignright wp-image-26507" src="http://perugi.com/wp-content/uploads/2016/11/SEO-2-300x211.png" alt="seo-2" width="500" height="352" />I am on the first page of Google for the keywords &#8220;boston divi theme&#8221;, &#8220;framingham website design&#8221;, &#8220;natick web maintenance&#8221; and wellesley web maintenance.&#8221; Perugi Design is number 12 for &#8220;natick website design&#8221; and number 14 for &#8220;boston wordpress websites&#8221;. I think that&#8217;s quite good considering the number 12 spot is located on  the second page of the orgainic area on Google.</p>
<p>Part of the work is figuring out the best keywords for the audience you are trying to attract. There are other tools we use for that too.</p>
<p>The softeare creates a pdf booklet that itemizes everything that is updated on a weekly basis. such as number and dates of backups saved, plugins that have been updated, security checks, spam comments that have been removed and if and when and how long your website was offline.</p>
<p>Only clients on the monthly web maintenance plan gets these reports, either monthly or quarterly. (It cannot be accessed via the dashboard.) The pdf report is great for presentation purposes, too. If you are an existing or new client thinking about taking advantage of this service, message me. I&#8217;d be happy to talk to you about it!</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Latest news on WordPress security</title>
		<link>https://perugi.com/latest-news-on-wordpress-security/</link>
		
		<dc:creator><![CDATA[Deborah Perugi]]></dc:creator>
		<pubDate>Sat, 10 Oct 2015 15:01:30 +0000</pubDate>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[WordPress]]></category>
		<guid isPermaLink="false">http://www.perugidesign.com/?p=4812</guid>

					<description><![CDATA[As a web developer I am aware that security is getting difficult in manage and we need to be proactive to prevent our websites from being compromised. Security Week writes &#8220;Attackers have been abusing an XML-RPC method to amplify their brute force attacks against WordPress websites, experts have warned. According to security firm Sucuri, malicious [&#8230;]]]></description>
										<content:encoded><![CDATA[<p><strong><img loading="lazy" decoding="async" class="alignleft wp-image-5724" src="http://perugi.com/wp-content/uploads/2015/10/Lock-icon.png" alt="Lock-icon" width="150" height="150" srcset="https://perugi.com/wp-content/uploads/2015/10/Lock-icon.png 256w, https://perugi.com/wp-content/uploads/2015/10/Lock-icon-100x100.png 100w, https://perugi.com/wp-content/uploads/2015/10/Lock-icon-150x150.png 150w" sizes="(max-width: 150px) 100vw, 150px" />As a web developer I am aware that security is getting difficult in manage and we need to be proactive to prevent our websites from being compromised. </strong></p>
<p><span style="text-decoration: underline;">Security Week</span> writes &#8220;Attackers have been abusing an XML-RPC method to amplify their brute force attacks against WordPress websites, experts have warned.</p>
<p>According to security firm Sucuri, malicious actors are leveraging the fact that the XML-RPC protocol, which is supported by WordPress and several other popular content management systems, allows users to execute multiple methods within a single request by using the “system.multicall” method.</p>
<p>It’s not uncommon for attackers to launch brute force attacks against WordPress websites in hopes that their administrators have <strong>set a weak password</strong> that can be easily guessed. However, making a large number of requests to the “wp-login.php” login page raises red flags and the attack is not difficult to block by security systems.</p>
<p>By abusing the “system.multicall” method, attackers can make hundreds and even thousands of attempts with just a handful of HTTP requests. In <a href="https://blog.sucuri.net/2015/10/brute-force-amplification-attacks-against-wordpress-xmlrpc.html" target="_blank">attacks</a> spotted by Sucuri, the malicious actors have been using the “wp.getCategories” method within “system.multicall.”</p>
<p>“wp.getCategories” is the method of choice in these attacks because it requires a username and a password, which allows attackers to try out widely used credential combinations, such as the “admin” username with the password “demo123.” However, experts have pointed out that they could use numerous other XML-RPC methods that require a username and a password.&#8221;</p>
<p>I recommend that you check your user name and password by going to the User info on your dashboard. Do not use &#8220;admin&#8221; for a user name. Use either your email address or your name instead. Make sure your password is Strong. It should contain Upper and lower case letters, numbers, and symbols. It is possible to use a combination of these characters that you can remember.</p>
<p>If you would like me to set this up for you, do not hesitate to ask. Let&#8217;s be safe!</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
