There are some people who don't upgrade, I agree- I am not sure it's the main issue though. Many people do at least patch even if they don't upgrade which is better than nothing. The biggest reason for so many hacked forums these last few months were people who didn't get or didn't read their emails about needing to delete their /install/ directories. We still get tickets most days from people who don't know they were supposed to delete the /install/ directory because they changed their email address a year or two back and never notified us or if they did notify us, never responded back to confirm the change.
It's just unfortunate all around.
|