09-30-2017, 11:13 AM
I will say that my main reason for not doing something like this is that if someone was trying to brute force attack your site they would go to the registration page and find out which usernames exist and then go to your login page and brute force the password of a known users. That's also why the login page does not tell you which piece of info you got wrong.