frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Tell HN: Poshmark instantly leaked my email to scammers

5•hardenedmetapod•1h ago
Browsing for an obscure piece of electronics, I ran across a Poshmark listing that had it for considerably cheaper than anywhere else.

I didn't have an account yet, so I signed up with Google SSO and was able to place the order.

About an hour later I got an email as if I was the seller telling me to click this link to verify my account for my funds to be deposited.

Obviously phishing. Upon closer inspection, I had two earlier that were properly filtered to spam that were about 30 minutes after the order.

So the question here is what part of their system is so fundamentally broken that scammers instantly get my email? Does the seller get that upon me making that purchase?

And if that's not the case, then that means somebody has completely compromised their system.

Comments

myself248•1h ago
Yikes. I wonder if there's a way to differentiate between the bad-seller and the poshmark-is-compromised case.
chrisjj•1h ago
Sure. Be a seller.
hardenedmetapod•1h ago
There's a third case that I never considered.

Google SSO is the promoted way of signing in and it auto assigns your email to the username without any special characters so scammers could just be scraping new accounts and making a best guess at the email.

Lame.

chrisjj•1h ago
> So the question here is what part of their system is so fundamentally broken that scammers instantly get my email?

Perhaps none. Did the T&Cs permit this disclosure?

hardenedmetapod•1h ago
Not that I can see offhand. It mentions using your email for correspondence and copyright disputes.

Authorization API 1.0

https://openid.net/specs/authorization-api-1_0.html
1•mooreds•7m ago•0 comments

Megadroughts, Pt. 3: The Future (2021) (audio)

https://radiowest.kuer.org/agriculture-and-the-environment/2021-09-02/megadroughts-pt-3-the-future
2•mooreds•8m ago•0 comments

The Four Phases of Institutional Collapse in the Age of AI

https://kyla.substack.com/p/the-four-phases-of-institutional
2•mooreds•9m ago•0 comments

At This Office Park, Scamming the World Was the Business

https://www.nytimes.com/2026/01/13/world/asia/myanmar-scam-center.html
2•NN88•11m ago•0 comments

Show HN: HTTP:COLON – A quick HTTP header/directive inspector and reference

https://httpcolon.dev/
1•ultimoo•15m ago•0 comments

Flux 2 Klein pure C inference

https://github.com/antirez/flux2.c
2•antirez•16m ago•0 comments

Rcarmo/textual-webterm: Yet another web terminal, but with style

https://github.com/rcarmo/textual-webterm
1•rcarmo•18m ago•0 comments

Show HN: Creibo – Let AI create according to your style

https://www.creaibo.net
1•Yinp•23m ago•0 comments

We caught a $1,200/month cloud cost regression in a pull request

1•cdeshwal•23m ago•1 comments

Quantum Computing for Lawyers

https://bfswa.substack.com/p/quantum-computing-for-lawyers
1•zdw•24m ago•0 comments

Show HN: Figma-like Canvas for running Claude Code agents

https://github.com/AgentOrchestrator/AgentBase
3•mprokopp•24m ago•0 comments

Show HN: Lume 0.2 – Build and Run macOS VMs with unattended setup

https://cua.ai/docs/lume/guide/getting-started/introduction
2•frabonacci•24m ago•0 comments

Trump housing plan to allow 401(k) money for down payments, adviser says

https://www.reuters.com/sustainability/boards-policy-regulation/trump-housing-plan-allow-401k-mon...
2•tartoran•25m ago•0 comments

Musk seeks up to $134B from OpenAI and Microsoft

https://www.reuters.com/business/musk-seeks-up-134-billion-openai-microsoft-wrongful-gains-2026-0...
1•tartoran•27m ago•0 comments

German industry lashes out at Trump's 'ludicrous' demands

https://www.reuters.com/world/china/german-industry-lashes-out-trumps-ludicrous-demands-2026-01-18/
6•tartoran•29m ago•0 comments

It is 2026; where were we?

https://zverok.space/blog/2026-01-18-upd.html
2•Tomte•30m ago•0 comments

Ask HN: Are cross-platform UI frameworks suitable for camera apps?

2•Austin_Conlon•30m ago•0 comments

Algorithmic hover states with contrast-color()

https://daverupert.com/2026/01/algorithmic-hover-states-with-contrast-color/
1•eustoria•30m ago•0 comments

Repairing Monitor Cataracts on a Burroughs B21 / Convergent AWS Computer CRT [video]

https://www.youtube.com/watch?v=lad0qRRWV0g
2•zdw•31m ago•0 comments

The Bag of Tricks for View Transitions

https://vtbag.dev/
3•eustoria•32m ago•0 comments

Firma – Email Signature Manager

https://www.tryfirma.com/
2•quincho•32m ago•1 comments

Why can't we have flying cars?

https://www.writervivek.com/2026/01/why-cant-we-have-flying-cars.html
3•VivekSiva•33m ago•0 comments

Show HN: Visualize Repetitive Lyrics

https://mquan.github.io/drylyrics/index.html
2•quan•33m ago•0 comments

Coding Agents Are for Everyone

https://writing.kunle.app/p/coding-agents-are-for-everyone
2•kunle•34m ago•0 comments

Right-wing pundits suddenly hate an AI bill. Are they getting paid to kill it?

https://www.modelrepublic.org/articles/right-wing-pundits-suddenly-hate-an-ai-bill.-are-they-gett...
4•DustinEchoes•36m ago•0 comments

USDA Scientists Ordered to Investigate Foreign Researchers

https://www.propublica.org/article/trump-usda-foreign-scientists
3•mikhael•36m ago•1 comments

Gaussian Splatting – A$AP Rocky Helicopter Music Video

https://radiancefields.com/a-ap-rocky-releases-helicopter-music-video-featuring-gaussian-splatting
28•ChrisArchitect•37m ago•2 comments

Paper Airplane Designs

https://www.foldnfly.com/#/1-1-1-1-1-1-1-1-2-1
5•evo_9•39m ago•1 comments

How the Lobsters front page works

https://atharvaraykar.com/lobsters/
20•g0xA52A2A•39m ago•1 comments

Statement by Denmark, Finland, France, Germany, Netherlands, Norway, Sweden, UK

https://www.bundesregierung.de/breg-de/aktuelles/statement-by-denmark-finland-france-germany-the-...
100•madspindel•44m ago•17 comments