Hacker News new | ask | show | jobs
by jessaustin 3941 days ago
That hash didn't really hurt anyone. E.g., it wouldn't allow one to impersonate the OP in a comment on TFA, since Blogger has its own auth cookies. (That would be an embarrassing vuln for a security blogger.)
1 comments

I agree with you.

When in doubt I publish the nice links.