Rob Beckers
1st February 2012, 07:16
As some of you that regularly visit these forums no doubt noted there recently was a post, under my name, with profanity in it. It seems some joker in Turkey found a hole in the forum software, and choose to post this, pretending for it to come from my account. Apologies to those that read it. I've fixed the mechanism that was used to post the bogus message.
Unfortunately there are likely many security holes in the vBulletin software, especially since we are running a somewhat older version (this because upgrading in vBulletin is a tedious, and largely manual process, taking many hours for this forum due to the modifications to the stock software). With a rather busy business to run, I'm not really looking forward to spending many hours to 'harden' the software, with no guarantee since even newer versions likely have holes.
For the time being I'll make some changes that should make it a little harder for hackers. We'll see if that does the trick. If anyone with lots of PHP/MySQL/vBulletin experience has any suggestions, please contact me. I'm definitely open to suggestions!
-RoB-
Unfortunately there are likely many security holes in the vBulletin software, especially since we are running a somewhat older version (this because upgrading in vBulletin is a tedious, and largely manual process, taking many hours for this forum due to the modifications to the stock software). With a rather busy business to run, I'm not really looking forward to spending many hours to 'harden' the software, with no guarantee since even newer versions likely have holes.
For the time being I'll make some changes that should make it a little harder for hackers. We'll see if that does the trick. If anyone with lots of PHP/MySQL/vBulletin experience has any suggestions, please contact me. I'm definitely open to suggestions!
-RoB-