How seriously should "security attack was stopped!" notifications be taken? We've received two of these since the upgrade to 7.0.5... one at 4am, one at 11am. The only differences in the reports were:
REMOTE_ADDR: 90.178.66.175
HTTP_X_FORWARDED_FOR:
HTTP_CLIENT_IP:
SCRIPT_FILENAME: /home/folkdire/public_html/home/member_menu_queries.php
QUERY_STRING: action=get_bubbles_values&bubbles=Spy%3A0%2CMail%3A0%2CFriends%3A0%2C&_r=0.1950293662957847
REQUEST_URI: /home/member_menu_queries.php?action=get_bubbles_values&bubbles=Spy%3A0%2CMail%3A0%2CFriends%3A0%2C&_r=0.1950293662957847
QUERY_STRING: action=get_bubbles_values&bubbles=Spy%3A0%2CMail%3A0%2CFriends%3A0%2C&_r=0.1950293662957847
SCRIPT_NAME: /home/member_menu_queries.php
PHP_SELF: /home/member_menu_queries.php
and
REMOTE_ADDR: 90.178.66.175
HTTP_X_FORWARDED_FOR:
HTTP_CLIENT_IP:
SCRIPT_FILENAME: /home/folkdire/public_html/home/modules/index.php
QUERY_STRING: r=simple_messenger/get_operation/new_messages&_r=0.09350282908417284®istered_chat_boxes=
REQUEST_URI: /home/modules/?r=simple_messenger/get_operation/new_messages&_r=0.09350282908417284®istered_chat_boxes=
QUERY_STRING: r=simple_messenger/get_operation/new_messages&_r=0.09350282908417284®istered_chat_boxes=
SCRIPT_NAME: /home/modules/index.php
PHP_SELF: /home/modules/index.php
