umm… divulging whether it is the email or the password that is incorrect drastically reduces the effectiveness of the security measure

Comments