Change the password right at the authors database table just remember to select MD5 from the dropdown list next to where you enter the new pass, as for the site what fixes did you have and what third party add-ons do you have at the site? Several add-ons allow sites to be hacked with ease (i.e. MyeGallery)
I use nuke 6.5 and I have applied, I think, all possibles bug fixes found four or five months ago...so ?
I have many addons: HTMLarea 3.1, Baribas Newsletter 1.70, IFRAME, Wherebisdu 1.5, MS Analysis 2.0, Nukewrap 1.0, Coopermine 1.1 beta 2,
NSN My account for nuke 6.5
What can be?
The hacker left messges in th news seccion, polls and messages.
Can be the news module the hole?
I see you are using some WYSIWYG add-ons, those alter the allowed html tags by almost allowing all tags which is a big mistake as people can insert malicious code through them.
1.If the WYSIWYG modules are inactive, are they still a hacker accesss?
2.Can I protect my site having a WYSIWYG module to be use just to registered members and as admin I control the registration of new members (not admiting user-self registration) ?
Making the add-on for reg'd users only or disabling it not always stops attacks, in some cases you don't even need to have it on your site (MyeGallery), it only takes one site to have it to make all others on a shared server to be vulnerable.
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum