captn3m0 / comments

Comments for my blog, powered by utteranc.es
Creative Commons Zero v1.0 Universal
0 stars 0 forks source link

blog/2021/05/14/amazon-website-order-drm/ #3

Open utterances-bot opened 3 years ago

utterances-bot commented 3 years ago

Amazon Order History Encryption Bypass · Abhay Rana

https://captnemo.in/blog/2021/05/14/amazon-website-order-drm/

sankalpsans commented 3 years ago

What could possibly be the reason for this implementation? I mean why encrypt it this way in the first place? Assuming it would be transmitted over HTTPS anyway. Remnants of legacy non HTTPS era?

captn3m0 commented 3 years ago

It uses SubtleCrypto, which is fairly new - so I don't think it is legacy at all.

No idea why though. It is like adding a captcha and having a "Bypass Captcha" option alongside.