I'm sorry this is 3 days late, but I'm behind this week on staying caught up on security news. Matt (founder of Wordpress) released an announcement that they've been hacked by a root break-in on multiple servers potentially exposing any and all data stored on their servers. Wordpress is open source, however, there are bits of data inherent to the blog software which is encrypted on sites. With the entire source code for Wordpress potentially copied from their servers, this may pose potential current and future security problems for Wordpress (depending of course on what was taken).
You can read Matt's blog detailing this breach here.What does this mean? Any zero-day attacks or future worms/viruses could be launched against Wordpress blog sites. This site uses both Wordpress for our front page/blog as well as SMF for our forums. Thus, this site could potentially become victim to an attack which would at worst harvest usernames/passwords, etc. I'm pretty sure our raid strats and AFK board are low on the totem pole of info hackers want.
Omega, why does this concern me?Please, most importantly ENSURE that your e-mail linked to this forum is hopefully not the same e-mail you use for any other important websites you use e.g. online banks, World of Warcraft, other MMOs, government websites, work/company/school websites or VPNs, etc. You can easily change your e-mail attached to this site's registration by logging in and clicking the "Profile" button at the top and then selecting "Account Related Settings" on the left side menu. Here you can change your e-mail address to one that isn't the same as one you use for important sites.
Additionally, ENSURE the password you use for this site isn't the same one you use for other important sites listed above -- namely your World of Warcraft password. If you use a common password or one that you use on multiple sites including this one, I implore you to change it. You can do this by following the same directions as above.
But Omega, I didn't understand one word of this computer gobbledygook you typed above. What does it all mean?This site was NOT hacked. However, the software used to power this site WAS hacked. To make a crude analogy: If Plaguechill.com were running a Kentucky Fried Chicken (KFC), our store was not broken into, but someone has gained access to the Colonel's secret flavor recipe of 11 herbs and spices that creates the famous "finger lickin' good" chicken.
TL;DR: Please ensure your e-mail and password you registered on our website aren't the same ones you use for other important websites or VPNs. Take the small amount of time needed to make changes now, to help prevent yourself from potentially having your data or access to other sites of yours exposed.