| 3 | | mark-k lives in a world where computers can't store information, only people. And people can't read the screen either, so a changed login link is a "password". mark also lives in a world where parsing for a login link in free-form text is just as easy as parsing for a captcha which is presented in exactly the same html in every site. Against all evidence to the contrary. |
| 4 | | note that this is exactly the same problem Wordpress has. Make it always the same, you make it easy to attack. |
| | 3 | mark-k lives in a world where computers can't store information, only people. And people can't read the screen either, so a changed login link is a "password". mark also lives in a world where parsing for a login link in free-form text is just as easy as parsing for a captcha which is presented in exactly the same html in every site. Against all evidence to the contrary. (note that this is exactly the same problem Wordpress has. Make it always the same, you make it easy to attack) |