OptinMonster for SiteGround Users

Email communication is one of the foundations of an effective online marketing and a key to growing your business. But in order to start an email communication, you need to get those visitors’ emails first. One of the best ways to do this is to convert visitors into subscribers while they're still on your website, using opt-in forms. And some of the most effective opt-in forms are the dynamic ones that grab your visitors’ attention instantly - the exit pop-ups or floating subscription bars for example. But how do you create and implement a beautiful and effective opt-in popup form without having a team of designers, marketers and developers? A good option used by many of our customers is OptinMonster - a tool for a hassle-free lead generation. And through a recent SiteGround partnership with OptinMonster our users can now get a 30-day free trial and some special discounts.
Read More

Get your WordPress on PHP 7.0 now!

We have just released a new version of our WordPress plugin 3.2.1 the SG Optimizer, which allows you to move to PHP 7.0 with a click.  We encourage all SiteGround customers to utilize this great option and make their WordPress installation run on PHP 7.0 now. PHP 7.0 has been available on our servers for over a year and it is high time that all of our customers take full advantage of the considerable performance boost it provides.

Read More

NextGEN Vulnerability Patched on SiteGround Hosting

Yesterday, our partners from Sucuri have discovered a serious SQL injection vulnerability in one of the most popular WordPress gallery plugins - NextGen Gallery. Our security team started working immediatelly on the issue and created a rule in our web application firewall (WAF) to block any potential attempts to exploit this vulnerability. However, we strongly recommend that all NextGen Gallery users update their plugin to version 2.1.79 which fixes the core of the issue in the plugin code.

WordPress AutoUpdater Restarted

We first launched our WordPress AutoUpdater in 2012. Some tweaks were made to the system a year later, when the original AutoUpdate feature was included in the WordPress core, but we continued to rely primarily on our own system for our customers. The SiteGround AutoUpdater has been used successfully for the last 5 years and has kept a lot of our customers up-to-date and safe from hacks. Thanks to it, more than 70% of the WordPress installations on our servers have been constantly using the latest software version. However, we have been thinking for a while how to get this percentage even closer to 100. The recent security issues with WordPress REST API motivated us to introduce a change into the system that increased the upgrade rate to more than 90%.

Read More

HTTPS for WordPress With a Click

UPDATE: If you're using CloudFlare with your website, make sure you set the SSL Option in our CloudFlare tool in cPanel to Flexible,  then configure WordPress to work through HTTPS and finally, switch the option in CloudFlare to Full Strict. This way, you will not have any downtime during the reconfiguration process. Check out our CloudFlare tutorial for additional information on that matter.

A month ago we made the first step to increase the adoption rate of SSL certificates amongst our customers by starting to issue automatically Let's Encrypt certificates for all domains hosted on our servers. However, there still remained a manual step to configure all applications to use the certificates we've made available. We knew that if we really wanted to see a rise in the HTTPS usage we not only needed to provide the SSLs, but also make it easy for our clients to implement them. Today we are happy to announce that we have achieved this second goal for a large group of our customers -- the WordPress users.

Read More

PHP 7.1 Already Available on Our Servers

php7-1-available-siteground-servers
We are thrilled to announce that one more time SiteGround has made the latest PHP version (PHP 7.1) available on most of its servers just minutes after it was officially released. PHP 7.1 comes with exciting new features for developers. However, it also introduces backward incompatible changes and migrations from 7.0 to 7.1 should be performed with great caution.
Read More

When Your CMS Reaches End of Life

cms-end-of-life

End of Life (EOL) in the CMS world refers to the point in time when an older version stops being supported by the company or community that has built it, and all efforts are focused on current and future versions. No support means performance, and more importantly, security issues, which nobody wants.
Read More

Jetpack Critical Security Vulnerability

jetpack

Today a critical vulnerability was found in one of the most popular and widely used WordPress plugins - Jetpack. Fortunately, according to the plugin authors there is no evidence that this issue has been used to hack real sites. However, an update of the plugin was released - Jetpack 4.0.3.

As usual, our security team was pro-active and updated our WAF (web application firewall), adding rules to prevent the hack from being used. This means that even if your plugin is not updated to the latest version, your site will still be protected. However, we urge all Jetpack users to update the plugin to its latest version in which the vulnerability is patched.