Live data from Hacker News

Glassdoor not so anonymous

webworm.co

121–130 of 507 posts

Re: Glassdoor not so anonymous

#122
post #2

Glassdoor has posted a notice on ZURU's page regarding this: https://www.glassdoor.com.au/Reviews/ZURU-Reviews-E2286297.h... It appears a few other companies are doing this too, including Kraken ( https://www.kraken.com/ ) as you can see here: https://www.glassdoor.com.au/Overview/Working-at-Kraken-Digi... EDIT: If anyone from Glassdoor is reading this, please advise on a way to either unlink my profile from my ident…

That’s really gonna help the Zuru recruitment effort

Re: Glassdoor not so anonymous

#123

dang, can Nick Mowbray and Anna Mowbray, the founders of ZURU, compel News.YC to hand over my information if I wrote a poor review of their company in a scathing Tell HN?

I would hope so if your review was written in bad faith

Re: Glassdoor not so anonymous

#124

Turns out they're actually a HK company now https://app.companiesoffice.govt.nz/companies/app/ui/pages/c... . So I guess this means HK-owned, New Zealand-headquartered, US-sales-team-based companies can now court order user information from other companies. Interesting.

Isn't it HQ'd in HK, but still owned mostly by the founder family members?

Re: Glassdoor not so anonymous

#126

Earlier quoted context omitted.

DNS records of your VPN or corporate work station would be pretty easy. You can line then up with when the review was posted. Then investigate their workstation more "thoroughly".

If it’s a managed corporate laptop that uses Chrome, then they could remotely check the browser history, likely directly to the review itself.

Are you sure this is possible? I thought managed google accounts didn't allow admins to access browsing or any other history.

Re: Glassdoor not so anonymous

#127
post #35

Once had a contract where my client wanted me to do "security work", which was initially meant to be for pentesting their clients, but it turned into me building their wifi auth system. At some point in the gig, one of their clients went to them asking them if it was possible to de-anonymize someone glassdoor review since someone still-employed worked with them. They then went to me to see if I could do it for them.…

Also sounds like they had no idea what they were doing, since instead of missing with the Wi-Fi, SOP would have been to MITM SSL/TLS on the office firewall (trusting company root CA on all company equipment) and log everything.

This is why corporate IT tells you they're moving to zScaler because it's "more secure"...

Re: Glassdoor not so anonymous

#128

Earlier quoted context omitted.

Their proof (or lack thereof) would generally be evaluated at the trial stage. This is a pre-trial procedure, so it's mostly take at face value. If another party so moves, they could ask the court to stop the plaintiff, and the judge will make a decision. But that's not automatic--somebody has to specifically ask for it.

You're right, but this is still a very funny sentence that only a lawyer could take seriously. "Zuru didn't just allege it, they DECLARED it!"

Sounds very SovCit

Re: Glassdoor not so anonymous

#130

Maybe this is a foolish statement coming from my never having used Glassdoor, but why the fuck would an anonymous review website even keep PII in the first place?

I think the workplace/company review aspect is how they market themselves, but really that’s just a small part of it. Companies are their customers, people interested in jobs are their product, so naturally they need to get as many people as possible to give them their personal information.

Edit: One of the “services” they provide is the ability to add your resume. Presumably that would provide some kind of job matching benefit, but I’m not familiar with it. But, that would be one source of users’ info.

Post reply on HN