Hacker News new | ask | show | jobs
by xentronium 5739 days ago
1. "Never said it did prevent CSRF" -- probably should have clarified.

2. You're arguing about semantics. CSRF is a security issue. Being able to send updates without user's knowledge is a security hole too. Backed up by a wrong behaviour if you wish. I should never forget that HN is a Serious Business.

None of the above mentioned makes twitter guys any less lame.