Guess what? Twitter's Blue vs. Verified checkmarks are done in a lame way that can be manipulated on the user side using JS. So if you have Blue, you can easily make yourself Verified!
Surely NO ONE is going to take advantage of this.
Thread:
https://twitter.com/shadowbIood/status/1590454913834045440
Script
https://gist.github.com/busybox11/53c76f57a577a47a19fab649a76f18e3
#cososec
nosanitize
@voltronic to be clear, this only applies client-side and won't suddenly give you a verified check for other users.
It's simply modifying the react components to add the check mark in the browser application. Which is far more convincing than Photoshop, and will likely be used to make fake screenshots. Outside of that, you can modify it to show if a user is actually verified or just has Blue
@suullus
Good points.
@voltronic
Terrible shame if that info spread. Just terrible. 💅