Hacker News new | past | comments | ask | show | jobs | submit login
Fans Uncover Super Mario Anniversary Twitter Account (videogameschronicle.com)
1 point by highwind on July 15, 2020 | hide | past | favorite | 1 comment



I'm posting this because fans used the Twitter's password recovery process which reveals only part of the account owner's email to determine that several Twitter accounts are owned by a single entity. Can this be considered security or privacy flaw? Lot of my apps doe not expose any part of the email during the recovery process and I've thought about doing so, but now I'm reconsidering it due to this use case.

(Can someone come up with a better title?)




Consider applying for YC's Summer 2025 batch! Applications are open till May 13

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: