Don't know if this is best place to mention this, but couldn't find anywhere else that seemed more suitable.

I tried to login to earlier today for the first time in a while and discovered that I'd apparently forgotten my password. I clicked the 'I forgot my password' link and then I got a form asking me to answer a single security question, which was a question I'd set myself, then enter whatever I wanted my new password to be. It seems way too easy, especially if someone has set a poor security question.