TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Deceiving Users with the Facebook Like Button

92 点作者 arnabdotorg大约 15 年前

6 条评论

tlrobinson大约 15 年前
Checking the referrer (errr, "referer") header seems obvious to me, I wonder why they're not doing it.<p>Sure, the referrer can be spoofed <i>if</i> you can set arbitrary headers, but you can't set headers on iframe requests anyway (and even XHR explicitly disallows setting Referer)
easyfrag大约 15 年前
A related side-note: my organization blocks access to Facebook, the iframe with his like button was also blocked by the filter.
评论 #1285206 未加载
avdempsey大约 15 年前
As the author points out, the easy fix is to let users know what they just liked, or ask them to confirm.<p>Also I suspect this service is fairly self-regulating. Facebook users are generally careful about what they broadcast. The author gives the captcha trick used by porn sites as an example...how many people are going to broadcast their taste in porn?
评论 #1284351 未加载
评论 #1284196 未加载
评论 #1284329 未加载
vinhboy大约 15 年前
You have to click the button again to remove the "Like" relationship. --- Wow, talk about confusing as hell...
评论 #1284202 未加载
jmm大约 15 年前
another similar issue i've come across is when there are multiple like buttons on the same page. e.g., does one like this blog/site or just the article?<p>not a terrible confusion or potentially too sinister, but a bit more attention than usual is required than the simple share.
TotlolRon大约 15 年前
"The new button trades off this security for convenience."<p>Trend?
评论 #1284119 未加载