In big news, we had our first joint release with WordPress. We collaborated together with the WordPress team on a PHP security issue discovered by a security researcher. We’re thrilled that we had an opportunity to work together with others in the open source CMS community. We shared a few tips and tricks and it was great working with the WordPress team.Keeping Drupal Secure
In keeping with our mission to showcase security best practices at Drupal’s online home, we’ve upgraded https://security.drupal.org to Drupal 7. This ensures we’re on a supported platform. We also took the opportunity to add some new features that help us enhance our team’s efficiency by automating a number of routine tasks.
As part of our dedication to keeping Drupal users safe, we’ve written and announced the Long Term support (LTS) plan for Drupal 6 (https://www.drupal.org/d6-lts-support). This is an important step as we look forward to the release of Drupal 8. Soon we will be introducing two-factor authentication to Drupal.org, thanks to hard work from security team members Ben Jeavons, Greg Knaddison , Neil Drumm, and Michael Hess. (https://groups.drupal.org/node/439868 and https://drupal.org/node/2239973)
And here’s one last, fun note: Security.Drupal.org issues now show up on the drupal.org dashboard if you add the widget. You can get it clicking on dashboard after logging in and adding the widget.
Securing Drupal E-Commerce
Some Drupal security team members were recently involved in putting together a compliance White paper for keeping track of PCI compliance. Anyone who runs a Drupal site and takes credit cards should read the whitepaper. Here’s a little more information:
Version 3.0 of the PCI compliance standard becomes mandatory on January 1st, 2015 and will be a complete game changer for many Drupal eCommerce sites. This includes triple the number of security controls if your website touches credit card information and more. The community supported Drupal PCI Compliance White Paper (http://drupalpcicompliance.org/) will give you a high level overview of what PCI compliance is, why you need to comply, and (most importantly) how to get started. This paper was written and reviewed by several members of the Drupal security team, including Rick Manelius, Greg Knaddison, Ned McClain, Michael Hess, and Peter Wolanin.Simplifying Security
We’ve redesigned our Security Advisory system to make evaluating and analyzing security threats easier and more intuitive. This came about after several core contributors informed us that they wanted a better way to address security threats. We sent out a survey through Twitter to learn more about how people write and read the Security Advisories. Based on the responses we put together a new Security Advisory system that takes much of the guesswork out of the process of evaluating threats. We’ve added and reordered elements on the Security Advisory’s criticality scale and added explanations to help people understand where a security problem is on the spectrum of potential threats.Our Growing Team
We’ve brought a number of new members onto the security team. Please help us give a very warm welcome to our newest security team members:
Alex Pott (alexpott) - IRC nick: alexpott, Organization: Chapter Three
Cash Williams (cashwilliams) - IRC nick: CashWilliams, Organization: Acquia
Dan Smith (galooph) - IRC nick: galooph, Organization: Code Enigma
David Snopek (dsnopek) - IRC nick: dsnopek, Organization: MVPcreator
Rick Manelius (rickmanelius) - IRC nick: rickmanelius, Organization: NewMedia!
We’re always looking for more qualified people who place a high priority on security. If you’d like to join the security team: https://security.drupal.org/joinDrupal version: Drupal 7.x
When it comes to tools that can help businesses reach out to more and more people, customer relationship management (CRM) systems are some of the most important currently being used. In a nutshell, CRM systems help companies keep track of customer information, with automation and organization of data being crucial elements of the software.
Drupal.org will be affected by maintenance Tuesday, September 16th 16:00 PDT, 23:00 UTC.
A regular module update will alter some larger tables, which will block other queries. We plan on up to 30 minutes of downtime while these updates run.
Please follow the @drupal_infra Twitter account for any issues encountered during the maintenance window.
Thanks for your patience!Front page news: Drupal News
The Joomla Event Travel Programme (JET) is pleased to announce that we have selected 15 members from the worldwide Joomla community. With 49 applications to choose from, it was a difficult decision that was made easier because of the criteria point system that was put into place prior to the call for applications.
We also selected some people who are heavily involved in core teams so they will be able to meet face-to-face with their team members. Next year we will be giving more opportunities to new candidates.
We would like to congratulate the following JWC14 JET recipients:
Jorge Leonardo Soto Pozo
They will have the cost of admission covered to the upcoming Joomla! World Conference on November 7 - 9, 2014 in Cancun, Mexico, and will receive assistance with travel and lodging.
The JET Programme is an initiative that was created to support active project volunteers and community members who have dedicated time and energy to make Joomla better; and who would like to attend larger Joomla events, such as J and Beyond and the Joomla! World Conference.
We wish to thank all those who applied, and congratulate those who were accepted! We look forward to seeing you in sunny Cancun in November!The JET Team
The Joomla Event Travel Programme team members are:
- Guillermo Bravo (Community Leadership Team)
- Javier Gómez (Production Leadership Team)
- Dianne Henning (Community Leadership Team)
- Saurabh Shah (Open Source Matters)
- Radek Suski (Open Source Matters)
It may come as a bit of a shock, but many people simply don’t have security on their minds. With all the stories concerning major security breaches of large corporations like Target and Home Depot, businesses are definitely paying attention, but many private individuals don’t look at data security as a top priority. Even some smaller companies, while focusing on security for sensitive information, may unwittingly engage in practices putting that data at risk. One particular point of emphasis is the WiFi network.
Brands Rank Higher Without Fulfilling Many Criteria Required Of Other Websites According To Searchmetrics US Google Ranking Factors 2014 Study
To achieve a high ranking position on Google, websites need to include high quality content that provides a great user experience according to new research announced today by Searchmetrics. The company found that high quality content covers a topic more comprehensively and is written in a way that is easier for the average person to read. As expected, these types of pages have better user signals, such as higher click-through rates and more time spent on site. They also have shorter page load times and well-organized internal links. However, well known brand websites still rank in top positions without having to fulfil many of the criteria Google seems to require from other websites.
Earlier this week, I mentioned that I had questioned whether social media could replace my need to blog. In my blog post, I mentioned that Google+ and LinkedIn as social network platforms able to provide blog-like functions. Since that article posted, I've already heard comments from my Facebook and Twitter friends that no one uses Google+. I have to respectfully disagree with my friends. While people like to call Google+ a ghost town the numbers don't support their opinion.
Worldwide, Google+ has the third most active social media users with Facebook in first followed by YouTube in second place. Surprising to Twitter fans (I'm one of them), Twitter has only half the active users (271 Million) as Google+ (540 Million). Where did I get these numbers? Over the past couple years I've googled them, but recently I came across Mike Allton's article, Social Media Active Users by Network, via The Social Media Hat.
The Bluetooth Special Interest Group (SIG) today announced the final agenda for Bluetooth Europe 2014, taking place in Amsterdam, The Netherlands on 16th – 17thSeptember. Continuing the discussion from Bluetooth World in San Jose and Bluetooth Asia in Shanghai earlier this year, Bluetooth Europe brings together wireless industry heavyweights, from across the value chain, to discuss the future of the Internet of Things.
With more than 500 million marketable Bluetooth® Smart devices at the end of 2013, and a projected 3 billion products to be shipped by 2018, experts will discuss the role of the technology in driving innovation in key areas including beacons, wearables and the smart home. Wireless innovators, developers, OEMs, media and analysts who register for the event will be able to hear from a range of speakers including leading manufacturer Adidas, wireless connectivity expert Nordic Semiconductor and mobile development specialist Matchbox Mobile.
Version 4.0 of WordPress, named “Benny” in honor of jazz clarinetist and bandleader Benny Goodman, is available for download or update in your WordPress dashboard. While 4.0 is just another number for us after 3.9 and before 4.1, we feel we’ve put a little extra polish into it. This release brings you a smoother writing and management experience we think you’ll enjoy.Manage your media with style
Explore your uploads in a beautiful, endless grid. A new details preview makes viewing and editing any amount of media in sequence a snap.Working with embeds has never been easier //s.w.org/images/core/4.0/embed.mp4
Paste in a YouTube URL on a new line, and watch it magically become an embedded video. Now try it with a tweet. Oh yeah — embedding has become a visual experience. The editor shows a true preview of your embedded content, saving you time and giving you confidence.
We’ve expanded the services supported by default, too — you can embed videos from CollegeHumor, playlists from YouTube, and talks from TED. Check out all of the embeds that WordPress supports.Focus on your content //s.w.org/images/core/4.0/focus.mp4
Writing and editing is smoother and more immersive with an editor that expands to fit your content as you write, and keeps the formatting tools available at all times.Finding the right plugin
There are more than 30,000 free and open source plugins in the WordPress plugin directory. WordPress 4.0 makes it easier to find the right one for your needs, with new metrics, improved search, and a more visual browsing experience.The Ensemble
This release was led by Helen Hou-Sandí, with the help of these fine individuals. There are 275 contributors with props in this release, a new high. Pull up some Benny Goodman on your music service of choice, as a bandleader or in one of his turns as a classical clarinetist, and check out some of their profiles:
Aaron D. Campbell, Aaron Jorbin, Adam Harley, Adam Silverstein, adelval, Ajay, Akeda Bagus, Alex Concha, Alex Shiels, Alison Barrett, Allan Collins, Amy Hendrix (sabreuse), Andrea Fercia, Andrew Nacin, Andrew Norcross, Andrew Ozz, Andrey "Rarst" Savchenko, Andy Keith, Andy Skelton, Anton Timmermans, Aubrey Portwood, Barry, Bartosz Romanowski, bassgang, bcworkz, Ben Dunkle, Bernhard Riedl, bigdawggi, Bob Gregor, bobbingwide, Brad Touesnard, bradparbs, bramd, Brandon Kraft, brasofilo, bravokeyl, Bryan Petty, cgaffga, Chirag Swadia, Chouby, Chris Blower, Chris Marslender, Chris Olbekson, Chris Scott, chriseverson, chrisguitarguy, Christopher Finke, ciantic, Comparativa de Bancos, Connor Jennings, Cor van Noorloos, Corphi, cramdesign, Daniel Bachhuber, Daniel Jalkut (Red Sweater), Danny de Haan, Daryl Koopersmith, Dave Kellam (eightface), DaveE, David A. Kennedy, David Anderson, David Marichal, Denis de Bernardy, Dion Hulse, Dominik Schilling, Doug Wollison, Drew Jaynes, DrProtocols, Dustin Filippini, eatingrules, edik, Eduardo Reveles, Elio Rivero, enej, Eric Lewis, Eric Mann, Erica Varlese, Erick Hitter, Evan Anderson, Fahmi Adib, fboender, Frank Klein, Gary Cao, Gary Jones, Gary Pendergast, genkisan, Gennady Kovshenin, George Stephanis, Graham Armfield, Grant Mangham, Gregory Cornelius, Gregory Karpinsky (@tivnet), hakre, hanni, ippetkov, Ipstenu (Mika Epstein), J.D. Grimes, Jack Reichert, jameslee, Janneke Van Dorpe, janrenn, JayCC, Jeff Sebring, Jen Mylo, Jeremy Felt, Jesin A, Jesper Johansen (jayjdk), jnielsendotnet, Joan Artes, Joe Dolson, Joe Hoyle, John Blackbourn, John James Jacoby, John P. Bloch, John Regan, Jon Cave, Jonas Bolinder (jond3r), Joost de Valk, Josh Pollock, Joshua Abenazer, jstraitiff, Julio Potier, Justin Kopepasah, Justin Sainton, K.Adam White, Kailey (trepmal), Kaspars, Kelly Dwan, kerikae, Kevin Worthington, Kim Parsell, Kirk Wight, kitchin, klihelp, Knut Sparhell, Konstantin Kovshenin, Konstantin Obenland, Krzysiek Drozdz, Lance Willett, Lee Willis, lpointet, Luc De Brouwer, Lucas Karpiuk, Luke Woodward, Mark Barnes, Mark Jaquith, Marko Heijnen, Marventus, Matt (Thomas) Miklic, Matt Banks, Matt Mullenweg, Matthew Boynes, Matthew Denton, Matthew Haines-Young, mattonomics, mattyrob, Matías Ventura, Max Cutler, mcadwell, Mel Choyce, meloniq, Michael Arestad, Michel - xiligroup dev, Miguel Fonseca, Mike Burns, Mike Hansen, Mike Manger, Mike Schinkel, Mike Schroder, mikecorkum, mitcho (Michael Yoshitaka Erlewine), Mohammad Jangda, Morgan Estes, Morten Rand-Hendriksen, Naoko Takano, Nashwan Doaqan, nendeb55, Nick Halsey, Nicole Arnold, Nikhil Vimal (NikV), Nivi Jah, nofearinc, Nuno Morgadinho, olivM, Omer Korner, OriginalEXE, patricknami, Paul Bearne, Paul Gibbs, Paul Wilde, pavelevap, Peter Westwood, Philip Arthur Moore, Pippin Williamson, Prasath Nadarajah, prettyboymp, Raam Dev, Rachel Baker, Ram Ratan Maurya, ramonchiara, Rescuework Support, Rhys Wynne, Ricardo Correia, Richard Sweeney, Richard Tape, richard2222, Ricky Lee Whittemore, Robert Chapin, robmiller, Rodrigo Primo, romaimperator, roothorick, Ruud Laan, Ryan Boren, Ryan McCue, Sal Ferrarello, Samuel Wood (Otto), Sandeep, Scott Lee, Scott Reilly, Scott Taylor, ScreenfeedFr, scribu, sdasse, Sean Butze, Sean Hayes, Sean Nessworthy, Sergey Biryukov, shahpranaf, Shaun Andrews, ShinichiN, Simon Prosser, Simon Wheatley, Siobhan, Siobhan Bamber (siobhyb), sirzooro, solarissmoke, sonjanyc, Spencer Finnell, Spencer Piontkowski, stephcook22, Stephen Edgar, Stephen Harris, Steve Bruner, Steven Word, Takayuki Miyauchi, Tanner Moushey, Taylor Lovett, tbrams, TobiasBg, Tom Auger, Tom Willmot, Topher, topquarky, Torsten Landsiedel, Toru, Travis Smith, Umesh Kumar, undergroundnetwork, VarunAgw, wawco, Weston Ruter, wokamoto, xsonic, Yoav Farhi, Yuri Victor, Zach Tirrell, and Ze Fontainhas. Also thanks to Michael Pick for producing the release video, and Helen with Adrián Sandí for the music.
A few months ago, I had a problem. After eight years of non-stop writing, I found myself exhausted of all enthusiasm to blog. Let me tell you, it's a sad day in Web City when an advocate for content management systems has no real desire to author new content. I was also questioning in this age of "always on" social media whether the traditional blog had lost value not only to me but my readers. If content is no longer king, why should I spend so much effort creating new content? So as summer approached, I decided to take a break from blogging.
At the beginning of my sabbatical I made a secret promise to myself. If at the end of three months I found no value in blogging, I would call Agility to say it's time to shutdown CMS Report. I was prepared to resign myself to writing only an occasional post on Google+ (which "experts" claim no one reads) or on my personal blog (which I know nobody reads). If I did this, would I really miss CMS Report? Would the readers miss me if I was no longer blogging? On more practical terms, do I really need to blog in an era where Facebook, LinkedIn, Google+, or Twitter is available to me?
Honestly, three months ago I had hoped to find that blogging no longer has value. It would have been a revolutionary moment and raise the eyebrows of my peers. I was hoping to shock the world on my "discovery" that blogging didn't matter. Alas, after three months of not blogging, I've found that I will be given absolutely no opportunity to shock and awe. To my surprise, I've found that blogging still matters. Here is what I discovered...
This week, we added a feature to projects on Drupal.org to help highlight the contributions made by supporting organizations. Maintainers of distributions, modules, and themes can give credit to organizations that have materially contributed to projects on Drupal.org using the new “Supporting Organizations” field.
How do you use this field? When an organization funds the development of a project or when a company takes on maintainership of a key module in the community, the maintainers of that project can add a reference to one or more of them on the project node. Maintainers may chose to give this credit to any organization that contributes significant code or support to a project.
We noticed that many projects would manually follow this pattern in the project description, but wanted to take it a step further. Not only will this provide a link to the organization, it will also show up on the organization’s marketplace page.
This is just the first step, we are also looking for community feedback and help in providing credit to companies, organizations and customers that contribute to the development of Drupal. Implementing this step will be a key way to show how organizations are giving code and support to Drupal Core. Look for it in the coming months.
Dries has written an excellent post on how we might give credit to organizations and another on the value of hiring a core contributor to help push Drupal forward that were a basis for much of this work.
If you are a project maintainer, take a moment to give some credit to the organizations that have helped build the Drupal ecosystem.Front page news: Drupal News
The first release candidate for WordPress 4.0 is now available!
In RC 1, we’ve made refinements to what we’ve been working on for this release. Check out the Beta 1 announcement post for more details on those features. We hope to ship WordPress 4.0 next week, but we need your help to get there. If you haven’t tested 4.0 yet, there’s no time like the present. (Please, not on a production site, unless you’re adventurous.)
To test WordPress 4.0 RC1, try the WordPress Beta Tester plugin (you’ll want “bleeding edge nightlies”). Or you can download the release candidate here (zip). If you’d like to learn more about what’s new in WordPress 4.0, visit the awesome About screen in your dashboard ( → About in the toolbar).
Developers, please test your plugins and themes against WordPress 4.0 and update your plugin’s Tested up to version in the readme to 4.0 before next week. If you find compatibility problems, please be sure to post any issues to the support forums so we can figure those out before the final release. You also may want to give your plugin an icon, which we launched last week and will appear in the dashboard along with banners.
It is almost time
For the 4.0 release
And its awesomeness
When people think of big data, they naturally assume that it’s just about gathering large amounts of information to provide more accurate searches online and help companies provide more targeted advertisements and marketing efforts. They’re both right and wrong. True, there is so much more to big data than just marketing and advertising. It’s effects are now being seen in numerous industries across the globe. It’s solving world problems and improving the quality of life for millions of individuals. With all that, however, the big data platform such as that provided by Qubole is still making it’s presence felt in the advertising world — helping companies advertise better and consumers get more of what they want.
This week, Kentico Software announced the release of Kentico 8.1. According to the company, Kentico 8.1 features a variety of new enhancements that bring greater website performance and ease of use to the digital marketing activities of today’s digital agencies and professional marketers. With new “Buy X, get Y” discount capabilities, Kentico 8.1 promises to offer customers new ways to maximize their online sales.
While the overall job market may still be struggling, for those in the field of big data, the opportunities are plentiful. We’re currently in the middle of a big data boom, where companies of all shapes and sizes are finding ways to use big data to grow and be more successful than ever before.