If someone enters an invalid login name or password, the system should say “invalid login” without giving details as to which one was wrong. Why give hackers information they can use, like telling them if a username is valid? has 25x more code than Facebook? Are the contractors paid by the line? This is complete insanity.

The experts said the site needed to be completely rebuilt to run more efficiently, making it easier to protect. They said runs on 500 million lines of code, or 25 times the size of Facebook, one of the world’s busiest sites.