if(stristr($_SERVER["QUERY_STRING"],'AddAuthor') || stristr($_SERVER["QUERY_STRING"],'UpdateAuthor'))
{
die("Illegal Operation");
}
Neither op should pass through the url anyway so my first choice is to block them, i will check into this issue tomorrow.
[Admin Note:] For those who use my Hacker Script, you can do thisif(stristr($_SERVER["QUERY_STRING"],'AddAuthor') || stristr($_SERVER["QUERY_STRING"],'UpdateAuthor')) {
$loc = $_SERVER['QUERY_STRING'];
header("Location: hackattempt.php?$loc");
die();
}