Grooveshark Mobile player is horribly insecure
It is incredibly easy to rip streams onto mp3 files with the new htm5.grooveshark.com player. Start playing a song, then open your browser developer console, hit the network tab, right click on the stream.php, copy as curl, paste into a terminal window and you've got yourself a 64bit mono mp3 of the song.
If you try these shenanigans with Rdio, you get a 403 Forbidden error. The Grooveshark is wide open. It's a music free for all. How can Grooveshark still get away with this stuff?