

Make sure the tools.php file is NOWHERE on your website.ĥ. Password protect your Administrator and Moderator Control Panels directories using. Do not install any unofficial hacks or plugins as they are not written or reviewed by VBulletin developers.ģ. Always upgrade to the latest stable version.Ģ.

Any website can get hacked and this won’t make it into Fort Knox, but I’m told it can help keep the vanilla kid hackers out.ġ. Here is a list of steps you can take to secure your VBulletin 3.x or 4.x forums. I had not taken steps in the past to secure my forums because I didn’t think it was needed. This was malicious and with thought-out bad intentions.įYI – this did not happen here on my blog website or forum. I’m confident that no innocent people were harmed from my website but it was an unsettling event for me. For someone not internet savvy or a little sleepy – they might input their PayPal login info that the hackers can log.įortunately the files were on my server less than two hours before I was notified about it and files removed. The link would take them to my website with a login that looked exactly like PayPal. They probably sent out mass emails to innocent random people with links to login to PayPal. In my case they uploaded folders to replicate the PayPal website. The phishing hackers exploit a discovered software vulnerability and upload files to your website to replicate other websites. But in July 2011, for the first time, I had a hacker use one of my websites as a phishing site. Normally just kids having fun and reading instructions on how to hack using the latest software vulnerability in VBulletin 4.x.

They seem to have increased in 2011 with an almost monthly hack on one of my forums. I haven’t had my phpBB 2.x sites hacked but have had several hacks on VBulletin. The release of Phpbb 2 and 3 seemed to alleviate a lot of the problems, but in the meantime I switched many forums over to VBulletin. PhpBB was my first software but they had a major software exploitation back in December 2004 that brought down my forum network. Since 2001 I’ve run online discussion forums.
