https://ubuntuforums.org/announce.html/
This is a warning/notification to anyone who used to use Ubuntu forums, as I know some people here get their Trisquel help from there sometimes.
From their description of the announcement, it sounds a lot like their website was subject to a well-played SQL injection. Many websites have methods of filtering out attacks like this but there are many brute-force crackers who can eventually bypass the filters.
They claim that the passwords are encrypted, but as someone who is somewhat knowledgeable on SQL, I can say they likely used a one-way encryption method like SHA1 or MD5. This means that if you had a weak password, anyone could easily reverse the hash using a rainbow table (or one of the many websites that already have a huge collection of hash cracks easily available). Let this be a warning to anyone in the future who uses a weak password for any websites.
