The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
![]()
This weekend, started from Friday 21th, http://www.GameReviews.com was hacked. Vbulletin was closed and this is the board message. Screen shot:
http://www.SmartClickz.com/hacked.jpg Now, it looks like the site was being SQL Injection, the hacker changed admin email, using forgot password option, then change the Forum Closed Message. But it has more problem that just that, right now, the site is still being abuse and spam by and being DOS attack, The hacker somehow able to put malicious files on the server. It seems to me they been exploited PhotoBlog upload options to upload files Edit: Security bug found. |
#2
|
|||
|
|||
![]()
^ ^
first thing then, disable your photoblog for now. Also get checking server logs, and get banning ip ranges to keep these people out. Obviously remove any malicious files found. If you can identify and patch the initial exploit, you may want to restore from a backup then immediately patch. |
#3
|
|||
|
|||
![]() Quote:
|
![]() |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|