Forum being defaced rapidly
<a href="http://westtexasimports.net" target="_blank">http://westtexasimports.net</a> has been hacked 4 times in recent history, including two times today. The only thing that has not changed (until now) is we have been using the RedBar style. 3 of them were caused by injecting base64 code into spacer_open. The other one was a deface of template_home (I believe).
I have changed the sql db password, upgraded to 3.8, and disabled all hacks/plug-ins. I've looked through the logs and they're not getting in through SSH or through my password.
Thoughts?
|