> Kathryn Spiers, who worked as a security engineer, updated an internal Chrome browser extension so that each time Google employees visited the website of IRI Consultants — the Troy, Michigan, firm that Google hired this year amid a groundswell of labor activism at the company — they would see a pop-up message that read: “Googlers have the right to participate in protected concerted activities.” So basically, the Go…
Come now. It's a browser extension, it's written in JavaScript, and knowingly installed by employees. No "injecting" went on here, let's not try to make this sound more nefarious than it was (not very). Fireable? Perhaps. But not because of a security concern.
(edit: reading more, it's clear that the only thing that makes this "fireable" in google's view is that it promotes union organizing that they oppose. Any other such message would probably not cause firing unless it caused a PR problem, and perhaps not even then.)