Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

No. The problem is the subdomain. Allowing people to phish on a subdomain is lending the phisher the credibility of legitimate websites hosted on the domain. It’s like lending a thief your uniform so that he can disguise himself as an employee. You’re an accomplice when he uses it to steal.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: