Aren't double hashed passwords only more secure than single hashed passwords when the attacker doesn't know they are double hashed?cb1000rider wrote:The passwords on vBulletin are double hashed, but your contact information is likely exposed.
Now since there probably isn't any financial info (bank acct #, cc # etc...) attached to TGT accounts, I doubt they would spend the energy to brute force a bunch of salted double hashed account passwords.
That being said, if you use the same password on other more sensitive sites, I would still suggest changing them.