Hacker News new | ask | show | jobs
by Narkov 5097 days ago
Surely after say, three invalid attempts, your app should lock the account and/or send an email and/or present a CAPTCHA?
1 comments

Sure, that would be another way to stop automated enumeration attempts.