[OpenID] Phishing? Web browser integration?

Alessandro Preziosi lsnpreziosi at gmail.com
Sun Sep 12 16:50:14 UTC 2010


Hi everybody,
A couple of days ago I used openID for the first time.
It was on a low traffic website and when i clicked on the button it
redirected me to Google's login page, where I had to insert my google
password.
Before doing so, I double-checked the address because I'm aware of phishing
scams, but I'm afraid the vast majority of people would not do so.
I think we're kind of lucky that openID isn't widespread, otherwise many
people could see their email accounts stolen, and with them all the other
accounts (paypal etc.).
I think this is a MAJOR flow, and the only solution that i see would be to
try to integrate openID in the browser in some way, to make phishing
impossible.
Any ideas? Any comments?

Have a nice day,

Alessandro Preziosi
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20100912/03ccaa51/attachment.html>


More information about the general mailing list