Duolingo PRO został zgłoszony 05-08-2026, bo Szkodliwy kod

Osoba zgłaszająca napisała:

Steals Duolingo JWT/session token and sends it to api.duolingopro.net, allowing full account takeover.

Ten skrypt został zaktualizowany po wysłaniu zgłoszenia.

This script has had 2 previous upheld or fixed reports.

anonymoushackerIV (zgłoszony użytkownik) zrobił:

interstellar (zgłoszony użytkownik) zrobił:

This report has been upheld by a moderator, but the moderator marked it as Brakujący, nieinformatywny lub wprowadzający w błąd opis..

Although there's no evidence of malware but the description should explicitly mention this or the code should be reworked to make requests directly from the webpage