If you try to log in using https it appears that the SSL cert expired a year and a half ago (so also not secured).
Not sure who the site admin is, but you can get free--really truly free--SSL certs from Let's Encrypt, https://letsencrypt.org/. Following that it should be a simple incomig load balancer tweak to have all http traffic redirect to https.
As to why you didn't notice it before... Chrome released a version last June that explicitly added the words "Not Secure" in the info part of the URL line for http sites. Prior to that (if you had noticed) there would have been an info icon, but no text.