Hacker News new | ask | show | jobs
by tmpz22 1102 days ago
LinkedIn famously abused oauth permissions to take over the email accounts of their users and send invites to their service to the contact list.

Please don’t normalize this. Just because it has many famous examples does not mean it should ever become socially acceptable. Fuck every company that has done this.

1 comments

> abused oauth permissions to take over the email accounts of their users

Woah, never knew this. Do you have any reference? I cannot find anything about it.