oiaohm wrote: > > So there is a chance the forum data was not downloaded at all. > I emailed Jeremy asking about the forum, and his response to me was: > We have no evidence that database was compromised, and our suspected attack vector would not allow the attacker access to that table. > Anyone who used the same password for the forum and the AppDB should obviously change it. As to whether others should bother to change their forum password, IMO, it's better to be safe than sorry.