Hacker News new | ask | show | jobs
by stavros 1300 days ago
If evil.com requests access to manage my Twitter account, and it fools me into accepting, why does it matter how the token is transported? Evil.com now has access to my Twitter account.
1 comments

Twitter would need to approve the evil.com app.