from Hacker News

Use U+200B to evade Twitter's DM malware flagging

by jedschmidt on 11/6/13, 10:50 PM with 1 comments

  • by jedschmidt on 11/6/13, 10:55 PM

    tl;dr: URLs with all periods prepended by a zero-width space evade Twitter DM malware detection, but are still recognized (and clickable) by Chrome, Firefox, Safari, and Twitter's own client.

        javascript:prompt(0,location.href.replace(/\./g,"\u200b."))._