Hacker News new | ask | show | jobs
by londons_explore 2588 days ago
Hosting things under microsoft.com is bad for security. One xss attack anywhere on the domain can steal cookies for the whole domain.

As a web developer, I only want to build to the security level my site needs, not the security needed for Microsoft logins.

1 comments

They must own the .microsoft TLD.