netsec

This magazine is from a federated server and may be incomplete. Browse more on the original instance.

As if you needed another reason not to ever use SSO to your Google account for anything (mbin.grits.dev)

For some reason this only just now occurred to me: What's to stop some web site from carefully crafting an imitation of the Google "you need to sign in again" UI, storing your Google password, and storing from the other side the auth cookie from Google, so that it can then poke around through 100% of your Google content...

  • All
  • Subscribed
  • Moderated
  • Favorites
  • netsec@lemmy.world
  • kavyap
  • ngwrru68w68
  • cisconetworking
  • osvaldo12
  • everett
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • khanakhh
  • Youngstown
  • InstantRegret
  • slotface
  • rosin
  • tacticalgear
  • megavids
  • GTA5RPClips
  • anitta
  • Leos
  • mdbf
  • Durango
  • ethstaker
  • modclub
  • cubers
  • provamag3
  • tester
  • normalnudes
  • JUstTest
  • lostlight
  • All magazines