2013 ColdFusion Security Update Posted
2013 Neglected ColdFusion Servers Invite Hackers
Information Week has published an important article entitled ColdFusion Hacks Point To Unpatched Systems. The basic premise is nothing ColdFusion specific; if you deploy public facing servers and then neglect to patch or update them, well, you're asking for trouble. That said, ColdFusion seems to be particularly vulnerable not because of the software itself, but because ColdFusion servers are often deployed and used by less experienced developers and administrators. (That, and many are considered "legacy" code for "we'll keep using it but will never actually pay attention to it").
If you host public facing servers, then you have a responsibility to manage and maintain them. So, two practical suggestions:
- If you are not using ColdFusion 10, upgrade now! ColdFusion 10 can notify you of available updates, and also simplifies installing them. While I wish ColdFusion would have offered this years ago, it does offer it now, so use it!
- Sign up with HackMyCF, a monitoring service that will probe your ColdFusion servers and will then send you notifications and alerts. It's inexpensive, and will more than pay for itself the first time it alerts you to plug a hole.
2013 Adobe Gaming SDK 1.3 Released
Adobe Gaming SDK 1.3 has been released. Improvements include AIR support for iOS7 and Mac OS 10.9.
2013 November Inspire Magazine Now Available
2013 Jens Loeffler Explains HTML5 Video
Fellow Adobian Jens Loeffler has summarized all you need to know to get stated using the HTML5 <video> tag in a great post (appropriatley) entitled HTML5 Video Guide - All You Need to Know for 2014.
2013 Adobe MAX 2014
2013 PhoneGap Build Update
2013 Snap.svg Released
2013 99U Conference 2014 Tickets On Sale
2013 cf.Objective() 2014