As a computer scientist who has studied cryptography, I am going to have to completely disagree with your so-called hacker group's conclusion. Saying that brainwallets are insecure is the same as saying all passphrases (colloquially: passwords) are insecure. If you use a phrase to one-way encode your wallet, that is no different than using a phrase to one-way encode any other data. It all boils down to entropy; garbage-in garbage-out, low entropy passwords aren't good.¹ According to Bruce Schneier² it better be more than 5 words.³

Anyone who is smart enough to use a brainwallet, should be smart enough to choose an appropriately high entropy (long) passphrase.