Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It appears Okta also banned them, they must have default succeeded instead of default fail, maybe an interaction between the two?:

https://twitter.com/okta/status/1348191370528256002?s=20



That would be extremely careless, and I find it very hard to believe that this happened.

An unlikely, but more plausible option to me would be that after removal of the Parler account, someone else was able to register the same account and gain access that way. But that doesn't fit the description all that well, and I'd also expect that this would not work at all if the authentication service is not very careless.


Maybe another explanation is that they quickly hacked around the lack of these services just to get things working again? I can imagine them quickly making a bunch of ill-advised code changes just to get their platform working.


Parler's infrastructure was extremely carelessly built in lots of ways, so it doesn't shock me.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: