"Login with Google" Pwn, boy this will be probably one of the biggest hacks in history...

AFAIK, attackers were able to fool google into thinking they owned your domain, some DNS attack or business logic flaw. Then signup for google workspace with your domain, then go and login into any service that had "Login with Google"...

That's as thirsty one

DNS is a shitcoin too.

Seeing some reports on twitter that seems to validate this. No public comms yet.

Reply to this note

Please Login to reply.

Discussion

What about β€œLogin with Apple”? And the hide my email option? 🫣

Who needs an EMP when you have social login

And the ETF providers think it would be a good idea to store all Bitcoin at Coinbase 🀑

Worse than AT&T hack? Guess we'll find out.

nostr:note1pydrv084ku0wzlxe342knrjv74udk4a8v4dvw0e25qzmqmlanjjsukys36

πŸ‘€ scary

Putz ! 😬😎⚑️

when the security of the whole internet is vested in one corporation 😞

wow let's hope this is true

Nice advertisement for Nostr Web Services. No DNS required.

PNS (Pleb Name Service)

Whats sad is that none of these projects had the task on their board. The state of security in this space blows my mind.