the shame is not to be related to phpBB but to the way you can be hacked using another script that is not as secure as your own source of revenues...
most people here would call it one day... "i've been hacked, vBulletin is just crap"... but you see now that it's not the main software that is always the case... a Newletter can do it... and PHPList is a very popular one... the bug came from a human error, not the script itself...
|