As in title. Just wanted to report this in case somehow the Lemmy.world devs somehow aren’t already well aware of this. I’ve had a new, not detected by my email provider (so probably fresh) phishing email on the address associated with my Lemmy.world account almost daily since the hack. While there’s always a possibility it was grabbed somewhere else, I assume that means the hackers grabbed the user email address’s of the Lemmy.world users to flog cheaply to spammers. Not much Lemmy.world can do retrospectively but might be worth looking at ways to avoid that being as easy in the event of another lemmy software security issue (could the addresses be stored encrypted possibly?) and, if possible, confirm that this has actually happened then issue a PSA to users so they are alert to be wary of suspicious emails to the account they registered with.
FWIW I do not observe a spike in spam
I don’t either.