Earlier quoted context omitted.
You can also use Mailinator[0] and their many other domains for throwaway email addresses. In fact, you can point your MX records to mail.mailinator.com for a custom domain without running a VPS.[1] [0] http://www.mailinator.com/ [1] http://mailinator.blogspot.com/2008/01/your-own-private-mail...
True, but those services are quite limited and not that secure in that anybody who knows the email address can login to your account.
Spotify and Facebook: Is that phishing?
61–70 of 96 posts
Re: Spotify and Facebook: Is that phishing?
#62Re: Spotify and Facebook: Is that phishing?
#63If this type of behavior continues to be tolerated by users, the entire industry will suffer the backlash at some point. A few companies using obfuscated or unclear defaults will make it more likely that the government will bring down heavy legislation on all companies.
Why is everyone jumping to blame Spotify for maliciousness? All I see is that they have a bug where they instantly assume emails = Facebook login. Then they try logging in using that email, and because this user reuses passwords, it works. It takes two to Tango, but I see incompetence on both sides rather than maliciousness.
So if the user provides their facebook email and the correct password to match, which this user did, the correct behaviour is to log the user in via facebook. Which of course Spotify did.
No bug there. I'd say that this is mostly user error - but possibly Spotify could make it more obvious.
Re: Spotify and Facebook: Is that phishing?
#64This absurd behavior was the last straw with me with Facebook. I deleted my FB account that day. I can't believe facebook has so many users still. This company has just been one big screw up since day one.
Re: Spotify and Facebook: Is that phishing?
#65Did anyone else read this and then scroll to the top only to realize they'd been reading and comprehending german the entire time and then suddenly forgot it? I did. :/
Re: Spotify and Facebook: Is that phishing?
#66https://www.facebook.com/music
You have the ability to pause and play music from Facebook (which I doubt exists for any other music player with any sort of Facebook integration)
Re: Spotify and Facebook: Is that phishing?
#67I'm ashamed that this doesn't surprise me much. This looks like a huge oversight on Facebook's part, but with the countless reports on Facebook failing with privacy here, there and everywhere, it's like I don't care anymore. The thing that numbs me even more is that client work, no matter how good of an argument one gives, will always have some form of third-party social login because it's oh-so-important and users w…
As an example, using FB to authenticate with Quora does not list access to friends list in the permissions but Quora will send an email to every friend of yours already on Quora to notify them that you joined.
Another issue with this is that if you have never given any Facebook permission to Blizzard, but happen to use the same email address as listed on your Facebook account then Blizzard will attach your real name to your account without your permission.
Re: Spotify and Facebook: Is that phishing?
#68I somehow thought that apps could no longer 'login' to social network accounts using usernames/passwords, so that they would have to use OAuth instead? There should be a way that Facebook and Twitter would prevent an app from using login information in order to bypass the 'app authorization' dialog which is supposed to be shown to users to tell them what the app can do to their account.
Re: Spotify and Facebook: Is that phishing?
#69Earlier quoted context omitted.
I don't understand this comment. Many companies share investors, especially at the level of Facebook and Spotify. Are you trying to suggest that a mutual investor somehow has enough product control to strong-arm Facebook and Spotify into this?
Are you suggesting that a mutual (or any) investor has no influence whatsoever?
Re: Spotify and Facebook: Is that phishing?
#70Earlier quoted context omitted.
I don't understand this comment. Many companies share investors, especially at the level of Facebook and Spotify. Are you trying to suggest that a mutual investor somehow has enough product control to strong-arm Facebook and Spotify into this?
I am not suggesting anything. Please listen to Eben's talk: it is much more serious than an "accidentally" entangled account.
But you were clearly trying to suggest that shared investors have something to do with this. There's no other information in your comment except that the two companies share investors. And in the context of this incident the only possible implication of your comment is that shared investors somehow influenced this. Otherwise why post the comment at all?