Having read over his explanation again, he claimed he was on at the time of the attack and "immediately" shut it down in response. He said the attacker exploited a vulnerability in the forum software.
But if Skins was on when it happened, and shut things down immediately, wouldn't it been true that the attacker had been there before, had already found the backdoor, had already written whatever codes would need to be placed, and knew exactly where to go to place them and get out before Skins could shut things down and block them out? And if that is the case, shouldn't something have already been in place to alert the admins that someone had been in the site in places they shouldn't have been able to go, and that there was a backdoor somewhere that wasn't closed, and they needed to find it and plug the hole?
He makes it sound like someone found a secret entrance, went in and inserted code, and got out, as if the infiltrator had never been there before. I just don't believe that. I would have to believe the infiltrator had practiced going in and out of the site several times in the past to make sure when the time came that they knew exactly what to do to be successful.
This stuff is not my area of expertise; not even close. But I'm betting one of you could explain what likely happened in layman terms. I'm interested in how it probably took place, the prep work, how they knew what code to do and where to place it, etc....
Please explain.
.