Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's "inside" the application and the code is injected at build time, by the sounds of it.


Thanks for clearing that up. I wonder if developers actually know they are signing up for this when blindly dropping in the SDK, just to support FB login.

I’m surprised most popular apps haven’t learnt their lesson since this happened last month as well.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: