Why is it a clickjacking issue on m.twitter.com but not www.twitter.com?

On Tue, May 26, 2009 at 08:21, Matt Sanford <[email protected]> wrote:

>
> Hi Matthias,
>
>    This is on purpose. In order to prevent click-jacking [1] we had to
> remove the status parameter support on the mobile version of the site. There
> is no work-around and there are no plans to bring it back.
>
> Thanks;
>  – Matt Sanford / @mzsanford
>     Twitter Dev
>
> [1] - http://en.wikipedia.org/wiki/Clickjacking
>
>
> On May 25, 2009, at 1:18 AM, Matthias Lübken wrote:
>
>
>> I am setting the status of Twitter.com with the following URL:
>> http://twitter.com/home?status=Hello
>>
>> This work great on my desktop but not on my mobile device. You can see
>> the error by following this URL: http://m.twitter.com/home?status=Hello
>>
>> Is setting the status on the mobile version of Twitter turned off on
>> purpose?
>>
>> Matthias
>>
>
>


-- 
Abraham Williams | http://the.hackerconundrum.com
Hacker | http://abrah.am | http://twitter.com/abraham
Project | http://fireeagle.labs.poseurtech.com
This email is: [ ] blogable [x] ask first [ ] private.
Sent from San Francisco, California, United States

Reply via email to