Hacker News new | ask | show | jobs
by Dylan16807 2689 days ago
Tor Browser accepts session cookies. It won't have an established google identity, but it fully supports a temporary "solved the captcha" identity.
2 comments

> The problem immediately goes away if you let google track you

I took that to mean they were blocking cookies

What prevents a botnet from sharing that same session cookie?
A botnet doesn't need Tor in the first place. And you can limit the use of a single captcha solution. It's not much different from the problem of a legitimate google account being borrowed by a bot.