Discovery of an OpenID session at an OP

SitG Admin sysadmin at shadowsinthegarden.com
Thu Dec 17 23:00:25 UTC 2009


I should clarify this:

"All an attacker (phisher) has to do is pretend they have a 
legitimate intent, just like you."

Ambiguous parsing. Read as:

"All an attacker (phisher) has to do is pretend they, just like you, 
have a legitimate intent."

-Shade


More information about the specs mailing list