My bet, the user is targeting people with some other criteria not just a DT.
Oh, really? Maybe just the ones with a secret question set. You can figure that out by reading my PM.
This thread is unbelievable dump. I warned affected users of a security problem and they make public they are affected. But what should I expect from users having set a security question, ignoring a warning? If you set a second password, both can be used to login. How can someone think this improves security, especially when the second password is "5"? I would ask greenplastic that question, but unfortunately he is not able to login.