Earlier quoted context omitted.
> You seem unfamiliar with the specific case. It wasn't the user database that was compromised. Which isn't really relevant. A password leak is a password leak, whatever its source is. > It was plainly obvious to any user of IEEE that they were storing your password in clear text And nobody every took issue with that? > And the mail would have live hyperlinks to access your account, which generally means GET requests…
Which isn't really relevant. Then please don't bring it up, i.e., say things like "if the user database is compromised, you can safely assume all of the site is". And nobody every took issue with that? Maybe they did, maybe they didn't. IEEE members are probably slightly more informed than your random AOL user. There are plenty of mail managers out there that mail you your password automatically every month.
The user database was compromised in a major way, even if nobody got root.