From the guy who makes SMBC to the guy who keeps hacking SMBC
reddit.com
reddit.com
But, I'm afraid, the only real long-term solution to a security problem is better security. This isn't a people problem, it's a technical problem and will require a technical solution.
It's quite likely that Marty is unpaid in these duties, to which I can only say that you get what you pay for. If he IS paid, then I think it's time to replace him, and reflect deeply on the negative stereotypes associated with nepotism.
My first inclination was to just email the guy and see if I could help, but reading on, he apparently maintains a staff for other purposes he considers important, and recognizes that the relative insecurity of his site impacts their livelihoods, but doesn't see security as something worth paying for.
A donation of my time in this regard would, however noble the intent, demean the profession and relative value of security analysts and companies all over the world.
karlr42: The only way you beat crackers is to set your site up securely and maintain it. Nothing else, including this post, will help.
MrWeiner: No argument here. I could explain what the issue has been, but I'd rather not do that publicly. Suffice it to say that we're doing a lot of cleaning house right now.
Depending on how one interprets "cleaning house" it may be the case that Zach has in fact realized the exact point you're making.
Personally my view is that if you want to put up a web site, go for it. If you can't secure it your options are basically:
a) Learn to secure it; or
b) Transfer the risk and get someone to secure it for you.
It seems that from the guy running the comic site, that option a is slowly becoming a reality. However, given their appetite I get the impression they may be more suited to option b.
(Context: http://www.youtube.com/watch?v=hkDD03yeLnU)
The war is over. You lost.
Love,
The Crushing Imperialist Juggernaut of Common Usage.
Hackers in the first sense are dickheads, full stop.