Simon Willison’s Weblog

Subscribe

Items tagged twitter, phishing in 2009

Filters: Year: 2009 × twitter × phishing × Sorted by date


The username/password key’s major disadvantage is that it open all the doors to the house. The OAuth key only opens a couple doors; the scope of the credentials is limited. That’s a benefit, to be sure, but in Twitter’s case, a malicious application that registered for OAuth with both read and write privileges can do most evil things a user might be worried about.

Alex Payne # 5th January 2009, 10:47 am

Types

Years

Months

Tags