TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Go home Twitter, you're drunk

211 pointsby thefreemanover 10 years ago

7 comments

homm88over 10 years ago
&lt;__&gt;: it&#x27;s fake<p>&lt;__&gt;: the SSL seal is missing<p>&lt;__&gt;: it&#x27;s a javascript edit<p>&lt;__&gt;: open a https site in firefox and look at the addressbar<p>&lt;__&gt;: sec<p>&lt;__&gt;: yeah<p>&lt;__&gt;: it DOESN&#x27;T appear if you used a javascript hack to make it go away<p>&lt;__&gt;: and changed the page
评论 #8480072 未加载
评论 #8480008 未加载
评论 #8480024 未加载
评论 #8480093 未加载
评论 #8480343 未加载
评论 #8480189 未加载
ggggggggover 10 years ago
anyone care to let me know just why this is so bad? i.e. does it really matter?
评论 #8479684 未加载
评论 #8479702 未加载
评论 #8479673 未加载
评论 #8479678 未加载
评论 #8479680 未加载
评论 #8479699 未加载
评论 #8479893 未加载
l33tbroover 10 years ago
I&#x27;m not convinced. Anyone could do this &quot;hack&quot; with MS Paint. If it were real, then surely the proof would manifest with some kind of change of the Twitter interface.
pronikover 10 years ago
A stupid 1am question: is it common among ops teams to replace these &quot;common&quot; binaries by a honeypot-like wrapper which notifies the security team immediately, just in case of a complete meltdown on the web developer side?
评论 #8479936 未加载
评论 #8480016 未加载
kentosiover 10 years ago
Sorry but could someone please explain to me what the joke is about?<p>I don&#x27;t get what&#x27;s going on, and cards.twitter.com throws an error page saying that the site is down :-(
hackerthenewsover 10 years ago
Has this confirmed to be real? Seems somewhat trivial of an exploit for such a large company (url-based RCE)?
kodishaover 10 years ago
i hope that twitter has 24&#x2F;7 team to respond to this.
评论 #8479922 未加载