Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The secret is used to create a valid cookie with the required values in the session e.g. User = karma_fountain. After setting the cookie, I can use the browser to transfer karma to my account, since the browser will be logged on as karma_fountain.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: