I wouldn't want to post full details online. It was more to get the developer (who I've PM'd also) to check what's going on with it.
PM me your email address and I'll send you some details we've obtained about this possible flaw.
Though the basics of it was there was a redirect being added to the forum which meant traffic coming from search engines was being directed to a dodgy URL with spam, malware, and ads and pop-ups all over it. This affected upto 25% of traffic from search engines on one forum hosted on one server, and even affected several forums hosted on another server using different security software and a slightly different setup. So I'm guessing whoever/whatever has found this flaw, can find all forums with the flaw.
Not saying it's all arcades that will be affected here, but certainly all mine running the arcades had been effectively hacked and redirection code injected. Took a while to find out what the cause of it was too!
I have my host(s), vbulletin, and vbseo all suggesting fixes and monitoring the servers / sites now to make sure we have actually locked the rest down now we've removed it.
|