Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Still seems far, far more likely that the average user will have their account stolen via password theft/reuse than the more complicated scheme the author is describing. Links instead of codes also fixes the issue.


Links are not trustworthy and can leak to compromise.


*lead, oops!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: