Bisq was hacked by manipulating the fallback address some time ago. Can the same hack not happen again? All of this is done on the adversary side, so the code could still be manipulated. How was the exploit fixed so that we can be confident that the same disaster won’t reoccur?
I can’t give you technical details, but basically the address was not checked by one of the parts, now it is. There is a double check in place now, for the bunch of addresses of burningmen (there was another, bigger change in the trading protocol long after the hack).