Live data from Hacker News

A URL Lengthener

aaa.aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa.com

171–180 of 313 posts

Re: A URL Lengthener

#172

Back in the early days of web hosting I recall that a customer had a domain name that was literally as long as ICANN would allow at the time. It was very nearly a full sentence. I don't recall the limit but this domain aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa.com is 57 characters (not including .com) and I think that sounds familiar. One could have a lot of fun with that if they wanted to (and such as…

Some companies still don't mind long domain names.

This one launched very recently: https://www.hardrockcasinonorthernindiana.com

Nearby, the Chicago Botanic Garden went short: https://ohwow.org

Re: A URL Lengthener

#174
post #152

This domain uses 56 `a`-s. Interestingly enough 63 `a`-s .com is also a URL lengthener: http://aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa...

Try scrolling to the right they have an infinite scroll with a's going.

Re: A URL Lengthener

#176

fun fact. in the browser wars of 1993(?) i looked at the specs from netscape (mozilla dady for the young folks) and microsoft (what w3c? ha!) and netscape release a browser spec that said "X must support up to Y", as in "url must be up to 1024 chars", "cookies must be up to 1mb", etc... then microsoft release IE4 (or 6?) web spec. It was literally a copy of netscape's but with "up to" replaced with "at least". and fr…

Didn't IE have buffer overflow attacks due both to long headers and long URLs?

Talk about being hoisted on your own petard...

Re: A URL Lengthener

#178
post #152

This domain uses 56 `a`-s. Interestingly enough 63 `a`-s .com is also a URL lengthener: http://aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa...

That's very weird! How did you even find this?

Sometimes instead of typing google.com I end up typing gooooooooogle.com

Re: A URL Lengthener

#180

you got a xss bro https://aaa.aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa...

Thought I'd comment to note that (as of 2021-05-14T22:07:00Z) this just does the alert() POC and isn't nefarious, if anyone is deeply curious enough to click but cautious enough to avoid a deaddove.jpg situation
Post reply on HN