I had another iframe injection attack this morning. Luckily, they only infected 4-5 pages which was a quick edit but I had to check every page to see if it was edited. I don’t understand how it works exactly but I can’t figure out how to prevent it. I have done a few things that will hopefully fix it but I’m not sure if they’ll work. Why do people do this? Argh.