What is Nostr?
ndeet
npub1qm7…74md
2024-07-18 18:05:14

ndeet on Nostr: 👀 ...

👀
"Login with Google" Pwn, boy this will be probably one of the biggest hacks in history...

AFAIK, attackers were able to fool google into thinking they owned your domain, some DNS attack or business logic flaw. Then signup for google workspace with your domain, then go and login into any service that had "Login with Google"...

That's as thirsty one

DNS is a shitcoin too.

Seeing some reports on twitter that seems to validate this. No public comms yet.
Author Public Key
npub1qm72nur0wn8cdgt0unp0amzssuqxg03tzpd4r87e856nxtz344fs6g74md