Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This is pretty dumb.

It's like writing `[google.com](notgoogle.com)` and making out like its a significant security flaw or new idea.



This is actually quite more complicated. Your webbrowser (firefox does, at least) will show you the destination link if you hover over any link element. In the case on the article, the destination link is exactly how it is written. So how can we now trust that twitter's shortening links only go to twitter?


Isn't the destination link `t.co/XYZ` ?

That's what it has been for me in Facebook, Twitter, Instagram, etc. their own mangled URL. And no, I don't trust those either.

>So how can we now trust that twitter's shortening links only go to twitter?

They never did.

Edit: Just checked his example, and yes. It looks like the hover link is still a random garbled `t.co/XYZ` and not `uniswap.org`. I'm still right and it's still pretty dumb.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: