Hacker News new | past | comments | ask | show | jobs | submit login
Fans Uncover Super Mario Anniversary Twitter Account (videogameschronicle.com)
1 point by highwind on July 15, 2020 | hide | past | favorite | 1 comment



I'm posting this because fans used the Twitter's password recovery process which reveals only part of the account owner's email to determine that several Twitter accounts are owned by a single entity. Can this be considered security or privacy flaw? Lot of my apps doe not expose any part of the email during the recovery process and I've thought about doing so, but now I'm reconsidering it due to this use case.

(Can someone come up with a better title?)




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: