|
|
|
|
|
by cshimmin
3819 days ago
|
|
This is perhaps a general question about 3rd-party auth, but how am I supposed to trust an app like this when I click "log in with google/github/etc"? I'm simply shown a new pane within the same application that could easily be a phishing attack. There's no way to verify who the hell I'm sending my user/pass to. Is there some way for native apps to launch my preferred default browser to do this task? (Note: this is by no means an accusation towards OP; I just tend not to type my gmail password into random apps I downloaded from strangers on the internet). |
|
I see this happening over and over again on my phone. Especially with Facebook logins.