Publicado en
March 20, 2018

Umbraco: One of the most secure CMS

Leandro Benítez
Director General

When you are about to create a website for your business and think about a content management system (commonly known as CMS), you will most likely think of the most used in Spain such as WordPress, Joomla or Magento, but have you ever stopped to think if these CMS are safe enough for your business? Currently WordPress, Joomla and Magento are the CMS most attacked by hackers and with the most security problems in the current market, problems that you could save yourself if you used Umbraco.

Why is Umbraco more secure than WordPress, Joomla or Magento?

One of the main reasons is that Umbraco, unlike other CMS, is not as well known, and that makes it a minority target for hackers who are dedicated to looking for vulnerabilities. Another reason is that Umbraco works on ASP.NET, while the other CMS mentioned above work on PHP. With this we are not going to enter into a war over which language is better, since it is also true that The security of a website depends a lot on its implementation, but Microsoft ASP.NET provides a good stack of technologies that allow the development of a sustainable, high-performance and secure website. Microsoft makes sure to test each layer of this technology stack for security vulnerabilities, and when one of them is identified, in any layer of this stack, the solution is implemented immediately. Applications and websites written using ASP.NET use these facilities provided by the stack instead of using third-party libraries, as is usually the case in other applications or websites written in PHP.

Apart from these reasons, In Umbraco, penetration tests are also carried out every 6 months to improve your security and verify that the content manager does not have any vulnerabilities. The tests they carry out are the following:

  • Tests that focus on new features by selecting a few areas so that the security company can examine them and see if they may be vulnerable.
  • Implementing the recommended fixes and sharing what has been fixed on your website for consultation.
  • If a critical problem is detected, report it immediately and create patches to fix it.

This and everything they do to improve their security, you can check out the Umbraco's official website. In addition, security reports and penetration tests are received from web agencies to which several security companies have tested their site and these recommendations are always implemented, this is also thanks to the fact that Umbraco is open source and its community helps every day to make it better and safer.

WordPress, Joomla and Magento continue to be the most hacked CMS on the market

Based on 2017 statistics, these popular content managers continue to be the most hacked platforms. Among all the hacked websites, 74% were running WordPress, which is not surprising considering that it is one of the most used CMS worldwide. In addition to all this, Joomla with 17% and Magento with 6%, follow WordPress to make up the three most pirated platforms in the market.

Plataformas CMS más atacadas en 2016

Source: BleepingComputer

Does this mean that if I don't have a site with Umbraco I'm not protected?

No, don't worry. Just because your page is built with WordPress, for example, doesn't mean that it has to be an insecure page or that WordPress itself is an insecure platform. As we have mentioned before, what matters most in the security of your website is the way in which it is implemented. If your website has an updated version of WordPress and the webmaster has done a good job configuring the website, you probably won't have any problems, since obsolete installations are the most important source of problems for these CMS.


Porcentaje de sitios out of date hackeados

Source: BleepingComputer

 

As we explained in a Comparative article of Wordpress vs. Umbraco, WordPress - but also the other managers mentioned above - have advantages over Umbraco. Although, if what you are looking for above all else is for your website to be secure, using a CMS like Umbraco will make your work easier and will surely save you some headaches.

If you have any questions regarding the security of your current content manager or your interest in Umbraco has aroused, do not hesitate to get in touch with us, we will resolve your concerns and give you advice on how to improve the security of your website.