yeah I thought of this hoped that limiting it to trusted admins would minimise this, they had access to see users passwords before 2.2.x
I didn't plan it on someone who was banned trying passwords, I was thinking of people trying to brute force accounts.
Reports for my forums are
6 failed logins
4 were for admin users and 2 was someone trying to guess a password.
|