Wolverine wrote:So in terms a lit major can understand...someone is using usernames from the memberlist and trying to guess passwords to hack accounts. Someone has far too much time on their hands if they're getting their jollies by hacking MMBA accounts
Best I can establish, yes.
But, it's not a person doing it. It's a person using a tool to do it automatically; no one is sitting there trying things over and over. The accounts would then likely have their signatures changed to contain spammy links for gaming search engines. It's possible that, because people tend to reuse passwords across sites, that the username/email address/password would then be tried at sites like PayPal and whatnot in order to get actual monies.
In short, the CAPTCHA coming up is it doing its job in cutting off brute force attempts. If you have a reasonably sane password it's extremely unlikely that you'll get hit. Read
this for a primer on decent passwords.