Live data from Hacker News

LinkedIn violated data protection by using 18M email addresses of non-members

techcrunch.com

31–40 of 151 posts

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#31

I am 99% sure LinkedIN used my IP address to match with my second floor neighbor, despite their claims that they would never use IP address as a connection data point. I was sharing my wifi for a brief period with my neighbors on the second floor. My neighbor had a new room mate. The guy was from another country. He didn't work in the same industry I do. I didn't have any of his contact information anywhere on any of…

Are you connected on LinkedIn with your neighbor? Because if your neighbor was connected with him, that could be how it happened. I think it will show if any of your connections know him (up to 3 hops away), but you might need to visit his profile to see that info (I don’t use LinkedIn often but noticed that feature before).

no. I should have mentioned that.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#32

Now I know why I was getting messages from these pricks. I tried to login and had no account. Scum.

I confirm Linkedin is a vector for spam, the way they handle and publish your email address: I use a dedicated, unique email address for my account, and systematically start receiving unsollicited emails and spam a few days after.

I now have the habit to register a new email address every few months on Linkedin, to track the issue. It's clear and easy to prove that the new email address is used by spammers after a short time. One of the main reasons is probably because once you are connected to someone, he/she can access your profile contact details including email and phone number. My guess is there are bots scraping the contacts to populate their spam databases.

I'm sure most, if not all users of Linkedin don't realize this issue, as they generally register using a non-dedicated email address, preventing them to check the origin of the spam leak.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#33

LinkedIn's growth, much like Facebook's, can mostly be attributed to the use of its "contact importer," which seems to have been where the 18M email addresses came from. Generally speaking, you should read the fine print when using such "features". I do see an issue with part of this complaint: storing hashed emails and uploading those to use for targeted advertisements. The general consensus seems to be that even un…

An email hash can be used to identify an individual and so would very much be in the scope of GDPR, the same as any other number used to identify an individual. Curious why you think that would not be the case. It seems to fall squarely into Article 4’s definition of personal data.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#34

I am 99% sure LinkedIN used my IP address to match with my second floor neighbor, despite their claims that they would never use IP address as a connection data point. I was sharing my wifi for a brief period with my neighbors on the second floor. My neighbor had a new room mate. The guy was from another country. He didn't work in the same industry I do. I didn't have any of his contact information anywhere on any of…

Maybe LinkedIn matched you by geolocation? That would be closely related to sharing the same IP address or Wi-Fi network.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#35
post #7
post #3

we also identified one further area where we could improve data privacy for non-members And what about members? It's utterly horrifying that a professional has to sell themselves on glorified social media and all its nefarious practices just to give themselves a change on the job market.

> And what about members? Presumably, they agreed to this. > It's utterly horrifying that a professional has to sell themselves on glorified social media and all its nefarious practices just to give themselves a change on the job market. I would say that's a gravely mistaken belief.

Arguably, you have no choice in a lot of such matters, so any agreement is by submission. If "the" popular platform is X, and you're not using it, you're missing out. And it isn't far fetched to consider instances where choice of any kind isn't applicable.

> I would say that's a gravely mistaken belief.

Plenty of companies appear to use third-party recruitment services, which entails you giving your personal, identifiable information to a third-party instead of going directly to said company. LinkedIn being one of such third-parties, indirectly or otherwise. The observation that trends like LinkedIn are a imposed reality is in no way a mistake.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#36
post #6

LinkedIn is one of the worse dark-pattern based business out there. Their whole business model is based on making connections between people, however unwanted they are. They use any means necessary to get your contact list and abuse it to spam your contacts with dubious marketing ploys and unverifiable claims (someone looked you up! you're missing on new jobs opportunities!). Liars. I've resisted creating an account…

I've successfully managed to not have one to this day. Keep fighting the good fight!

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#37

I am 99% sure LinkedIN used my IP address to match with my second floor neighbor, despite their claims that they would never use IP address as a connection data point. I was sharing my wifi for a brief period with my neighbors on the second floor. My neighbor had a new room mate. The guy was from another country. He didn't work in the same industry I do. I didn't have any of his contact information anywhere on any of…

linkedIn was suggesting people that were using the same wifi network as I was. I thought this was spooky — I could see more info about my hotel guests than they probably realized.

They most certainly do. In fact, they're worse than Facebook in many areas - particularly in their blatant disregard for privacy.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#38
Unrelated but I'd like take this opportunity to write that the "switch to our app" popup on the LinkedIn mobile site is super annoying. It shows up every time I open the site on mobile browser. On several occasions in attempts of closing the popup I've accidentally clicked on advertisements (Promoted posts) or 'liked' someone's post. And then you see more such promoted posts as they think you like them. If anyone from LinkedIn team is reading this - I do not want to install your app. Please store that flag in the cookie.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#39

Unrelated but I'd like take this opportunity to write that the "switch to our app" popup on the LinkedIn mobile site is super annoying. It shows up every time I open the site on mobile browser. On several occasions in attempts of closing the popup I've accidentally clicked on advertisements (Promoted posts) or 'liked' someone's post. And then you see more such promoted posts as they think you like them. If anyone fro…

Li is aware. “Install our app” nag is by design, and is now part of the pantheon of user hostile web de-facto standards.

Re: LinkedIn violated data protection by using 18M email addresses of non-members

#40
post #24

Earlier quoted context omitted.

Reminds me of that mobile popup I always get that tells me to download their mobile app when I'm viewing Linkedin on a mobile phone and I can't move on unless I press something.

Reddit is almost unusable on mobile browsers because of this.

Same with discord, excluding the almost.
Post reply on HN