This hacker chose 10 forums to take down last night and was successful in doing so with all of them. The only thing the forums had in common is that they were all using vbulletin. This is obviously a security flaw in the software and it hasn't been fixed as of the 4.1.4 update (which I was running). My forum was one of the 10 victims of this attack and I believe this was achieved by cracking the stored MD5 hash for my admin password.
This is a serious issue which needs investigation. I'm more than willing to help any way possible but I stress the fact that vb developers must fix this before there are more attacks.
This is a serious issue which needs investigation. I'm more than willing to help any way possible but I stress the fact that vb developers must fix this before there are more attacks.
Comment