Hacker attacks on such communities mostly use automated scripts that scan the web for certain Mambo/Joomla installations and then specifically compromise PHP or layout files. Favouring are a not quite current software version, a generic mass host without CMS-specific hardening as well as the high spread of the system. After an attack, a timely complete update to a current forum software is sensible, although private messages in the new system may under certain circumstances be lost and should be saved in advance. Encrypted-stored user data were not affected in the specific case; in future a specialised Joomla host as well as consistent care of all dynamic files (PHP, CSS) are recommended.