People who have been re-using passwords on multiple websites have been getting hacked since it seems like the databases of some other faucets have been compromised or the owner of those faucets decided to use the passwords that they had to compromise freebitco.in accounts. Like I have warned countless times before - Please do not re-use passwords on multiple websites and use a password manager!
If you use the same password on multiple websites, you will get hacked, it is only a matter of when. I have added a protection in the signup and change password functions to force users to create a secure password which should somewhat help in users not re-using their passwords. Login authorization emails which were previously being sent only for users who had a balance > $5 (because a lot of users were marking these emails as spam negatively impacting our email deliverability) has been enabled for all users now.