Hacker News new | past | comments | ask | show | jobs | submit login

It's actually worse in some ways. The example I'm thinking of is Google Docs, which seems to be a very effective vector for phishing.

With this change, all you'd see is "google.com" which totally seems legit for providing your username and password, without the additional form URL.

Guidelines | FAQ | Support | API | Security | Lists | Bookmarklet | Legal | Apply to YC | Contact