ne_zavarj: So is this means the GOG Galaxy client insecure ?
OneFiercePuppy: No. You know better. Correlation != causation, and all that.
More precisely, with the (likely large) influx of new users picking up Galaxy and Witcher 3 and the otehr fairly new, AAA games that GOG has very recently released, there's bound to be both more attention, and more accounts made with very poor security. How many new accounts have been made in the last ten weeks with password equal to a simple variant of username, or with the same password on an already-compromised email account that got the notification of the account creation and such?
Sure, Galaxy could be insecure, but I've worked IT and infosec for decades, and I can tell you, humans are the greatest weakness in any computer system. Always.
The thing is I had this account for years and my email requires phone verification to get in sooo I have no idea how the "hacker" could get my password