I must say, I'm one of the victims.
My passwords have not changed for more than 2-3 years, I have discussed this with my friends as well for these cases. The possibility for my case is by:
- Reused password.
- The password getting leaked due reused password.
- Saved password (google) getting leaked (my friend says).
I have not done anything regarding bitcointalk and discussions with strangers for the past month.
Based on the hacker requesting a loan, seems like they're overview activity from the original owner. I checked my Bitcointalk IP, I have 4 activities not from my the first one on (18th December). at that time I still had a loan of around 300$ with shasan, I and him have a successful loan with 7-10+ of course with the same address.
I finished my loan more early, paid all back on 30th December. Then, the hacker had activity yesterday 3-4x times and requested a loan with the 300$ (the most amount can pay, around 300-400$) mark.
Luckily shansan knew the address differently and rejected the loan.
IP Log from My Account
Yesterday

18th December (First Activity)

I change my password after these 2x time to make sure + add my account with 2FA as well.