Jump to content

DS-Dennis

Clients
  • Posts

    211
  • Joined

  • Last visited

Reputation Activity

  1. Like
    DS-Dennis reacted to cem12_merged in Security improvement   
    Hello,

    I searched in my admin panel, but couldn't find this feature; I was wondering if you can add the option to disallow potential members to signup using the same password as their username (username=password)? This is a big security issue with forums at the moment as you could just extract the member names and bruteforce the forum. The current "login security system" does not block this even if you dont use proxy servers, due to the fact that you are targeting seperate member accounts instead of the same member account.

    I know that it is plain stupid to use the same username as your password, but there are just many people out there who still prefer to do that to remember their password easily.

    Looking forward to your reply.

    Thank you.

    Cem
×
×
  • Create New...