Spotify and Facebook: Is that phishing?
1–10 of 96 posts
Re: Spotify and Facebook: Is that phishing?
#2Also, this is yet another privacy threat that I dodged because I use the PwdHash extension (https://www.pwdhash.com/). You type the same password for all sites, but the extension invisibly uniquifies them on a per-site basis.
Re: Spotify and Facebook: Is that phishing?
#3As far as I know, spotify uses username for login, and not email. By using your email, it's assuming you want to use facebook.
Re: Spotify and Facebook: Is that phishing?
#4http://benjamin.sonntag.fr/Moglen-at-Re-Publica-Freedom-of-t...
Re: Spotify and Facebook: Is that phishing?
#5Amazing. Also, this is yet another privacy threat that I dodged because I use the PwdHash extension ( https://www.pwdhash.com/ ). You type the same password for all sites, but the extension invisibly uniquifies them on a per-site basis.
http://zx2c4.com/projects/password-store/
It works damn well.
Re: Spotify and Facebook: Is that phishing?
#6The thing that numbs me even more is that client work, no matter how good of an argument one gives, will always have some form of third-party social login because it's oh-so-important and users will _always_ use it.
Re: Spotify and Facebook: Is that phishing?
#7It says "Facebook Email or Spotify Username" in the login box before typing in a username/email. As far as I know, spotify uses username for login, and not email. By using your email, it's assuming you want to use facebook.
Of course, the lesson here (besides that spotify cannot be trusted) is that you should never use a password for more than one account. Sure makes me glad I switched to using a password manager that uses randomly generated different passwords for each service I sign up to.
Re: Spotify and Facebook: Is that phishing?
#8Re: Spotify and Facebook: Is that phishing?
#9Amazing. Also, this is yet another privacy threat that I dodged because I use the PwdHash extension ( https://www.pwdhash.com/ ). You type the same password for all sites, but the extension invisibly uniquifies them on a per-site basis.
Think Google's different domains (google.com, google.co.uk, google.nl, gmail.com etc.) The demo gives a different hashed password whenever the TLD differs. And seeing that Google by default redirects you to the homepage of whatever country you're in at the moment, you might end up getting burned by the extension when travelling.
Re: Spotify and Facebook: Is that phishing?
#10Facebook and Spotify share a number of investors: billionaire Li Ka Shing has a stake in Facebook and Spotify. Yuri Milner’s DST Global, which owns roughly 10% of Facebook, is also in negotiations to buy a stake in Spotify. Facebook’s founding president and Napster founder Sean Parker, sits on the board of Spotify. http://benjamin.sonntag.fr/Moglen-at-Re-Publica-Freedom-of-t...
Are you trying to suggest that a mutual investor somehow has enough product control to strong-arm Facebook and Spotify into this?