He tried it again while I was looking over the control panel log, I noticed his IP, but this time on MY username. He made numberous changes to css.php and some templates. Unfortunatly I can't seem to revert the original template, all of the custom code remains untouched. I also can't delete the default template. Is there a way to upload the original default templates from RC1 so I can overwrite what I have?
I blocked his IP from the entire domain, randomized the names of the admin control panel, changed my password several times, and banned all the users he tried to promote to admins. So far so good. Now I just need to make sure the templates are purified of his perversions.
I don't suppose the recent update to 3.0.8 had anything to do with an exploit floating around does it? He got into my system on the 23rd when I was still using 3.0.6. How he got access to all the admin accounts remains a mystery to me. He made a regular post saying he knows alot about hacking and security. I hope he has not found some major hole in vbulletin. I hope he is just a script kiddie.
|