Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I'd imagine you wouldn't blow a discovered flaw in Google's two-factor authentication setup on a small site. You'd sit on it until a big enough target came along, which CloudFlare certainly has become.


I don't think you'd be blowing it if you have a reasonable idea that the site owner just isn't big enough to get Google to return their calls.


Any usage of an exploit risks its discovery.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: