you are viewing a single comment's thread.

view the rest of the comments →

[–][deleted] 5 insightful - 3 fun5 insightful - 2 fun6 insightful - 3 fun -  (3 children)

No, it just changes your email address, which allows the hacker to change your password. I don't think it actually works, though, after analyzing the code, because the attacker assumed the form uses POST, which it doesn't.

Regardless, I would never run that code if I was you, and if you did: make sure your email ain't been changed.

[–][deleted] 3 insightful - 2 fun3 insightful - 1 fun4 insightful - 2 fun -  (2 children)

because the attacker assumed the form uses POST, which it doesn't

It might be POST compatible. Once upon a time young lady, there was no javascript.

[–][deleted] 3 insightful - 2 fun3 insightful - 1 fun4 insightful - 2 fun -  (0 children)

I tried it by substituting their email for one of my own, and it didn't work.

[–][deleted] 1 insightful - 2 fun1 insightful - 1 fun2 insightful - 2 fun -  (0 children)

It's a dude bro. A dude who roleplays having a female penis.