My Invision board 1.3.1 recently got hacked, somehow some script kiddies gained access to the admin CP. I actually did care about known exploits, and did try to fix that by themself before. My question is weather there is a known exploit which enables access to he admin CP, or if the hackers simply did guess admin passwords.
Sorry to hear about that, seems to be quite a nasty one: http://www.securitytracker.com/alerts/2005/Apr/1013676.html My guess is he got the md5 hash of a user by using that exploit.
Maybe he cannot pay almost 200 USD for a script 1.3 is free Look for some of the exploits' cure (codes to prevent them) and also keep a database and files backup handy. There's not a 100% secure script. have backups and you're online in minutes
Having the last IPB does not make you 100% hack free. recently Invisionize got hack again... Ref: http://forums.invisionize.com/index.php?showtopic=115237&pid=1752656&st=0&# better to buy vBulletin. Ratio of it getting hacked is very very less... plus the owned licence for vBulletin is even cheaper. $160 i think. or you can a used licence with upto 10months support for $120