It appears that sign in security is currently non existent. User names and passwords should be sent over a secure HTTPS connection. As far as I can tell the new wire forum does not do that.
If they are indeed un-encripted that is kind of a glaring security hole that really needs to be fixed.