Live data from Hacker News

LinkedIn Intro: Doing the Impossible on iOS

engineering.linkedin.com

91–100 of 309 posts

Re: LinkedIn Intro: Doing the Impossible on iOS

#91
post #84
post #40

This is essentially a mitm attack. I am amazed that a company the size of LinkedIn would think that this is in any way appropriate. These are the tricks of spammers and cyber criminals. This is what LinkedIn has become. Will customers be explicitly told that all of their emails will be going through and stored on LinkedIn servers? I doubt it. I do envision a dialog box along the lines of "Click Here to make your expe…

The "attack" part of "man in the middle attack" refers to the fact that it is done secretly and generally with ill intentions. LinkedIn is not being secretive (and we can speculate about their intentions). If everything that's in the middle of something is a man in the middle attack, then that would include your home router.

I do think LinkedIn has ill intentions. In my opinion, their intentions are to collect, analyze, and ultimately profit from their user's email data. All under the guise of offering some marginal benefit.

Re: LinkedIn Intro: Doing the Impossible on iOS

#93
I've been talking to a number of startups whose products hinge on access to a user's email inbox. Now here is LinkedIn doing this too. This trend is kind of disturbing to me, I can't really imagine a future where most of the services I use require access to all of my personal e-mail. It's quite scary.

Re: LinkedIn Intro: Doing the Impossible on iOS

#94
post #17

I don't care who the company is, or how trustworthy you think they are: avoid giving third parties credentials to your inbox.

Not that we should trust anybody, but let's not forget that LinkedIn already has a history of losing user credentials: http://www.pcworld.com/article/257045/6_5m_linkedin_password...

Re: LinkedIn Intro: Doing the Impossible on iOS

#95
post #5

Proxy to return a header in your email. CSS to render the content upon click. IFrame to update content so it doesn't get cached. Cute web hacks. I don't understand the problem with simply using their mobile app if you were really looking for work. It sounds like an unnecessary feature for people who are looking and an annoyance to people who are not. That seems to be the problem of Linked In. They harass those who ar…

I am a little disturbed that Apple Mail supports iframes. Seems like an obvious way to bypass spam filtering.

Re: LinkedIn Intro: Doing the Impossible on iOS

#96
I really wanted to like this. But getting started, I felt installing a thrid-party profile on my iPhone means I am giving them more control that I should. ( Can they do more than what they want to do ? Risks ?). Also, I am already worried that Google reading all my email for ads, why introduce another service that again reads my email for just showing LinkedIn contact cards / network info.

I wish LinkedIn improved their existing Messaging application.

Re: LinkedIn Intro: Doing the Impossible on iOS

#97
post #75

I don't think I've ever gagged quite like that while reading a technical article describing a "neat hack". At first I'm thinking, oh, I wonder how they convinced Apple to let them use some private APIs, and then... curiosity turns to revulsion as soon as I saw that proxy diagram. Good god... LinkedIn MITM IMAP. That is truly terrifying. How would you even go about installing that on the user's phone? Oh, that's in th…

What exactly were you expecting? I think it's a neat hack using some clever tricks.

Re: LinkedIn Intro: Doing the Impossible on iOS

#98
post #82

Earlier quoted context omitted.

And the third party that wrote the mail client you are using? Not to say that this isn't a bad idea though. It would have been an easier sell if you could do the IMAP proxying on the local device somehow.

And the third party that wrote your operating system's networking stack? And your ISP?

And Ken Thompson?

http://cm.bell-labs.com/who/ken/trust.html

Re: LinkedIn Intro: Doing the Impossible on iOS

#99
post #75

I don't think I've ever gagged quite like that while reading a technical article describing a "neat hack". At first I'm thinking, oh, I wonder how they convinced Apple to let them use some private APIs, and then... curiosity turns to revulsion as soon as I saw that proxy diagram. Good god... LinkedIn MITM IMAP. That is truly terrifying. How would you even go about installing that on the user's phone? Oh, that's in th…

How are they handling attachments? Are my attachments going through their proxy? Can they see them? What if their servers are down? What if their servers are hacked more easily than some other allowing for all mail passing to be slurped?

Re: LinkedIn Intro: Doing the Impossible on iOS

#100
post #93

I've been talking to a number of startups whose products hinge on access to a user's email inbox. Now here is LinkedIn doing this too. This trend is kind of disturbing to me, I can't really imagine a future where most of the services I use require access to all of my personal e-mail. It's quite scary.

LinkedIn is a public company whose product is actually very simple and whose maintenance and improvement does not really require the number of employees they have. Initiatives like this spawn from boredom in that kind of environment, because the product slack goes all the way up the chain.

The Iron Law[1] says that the programmers are going to be bored, the product managers and creatives with input will approve and shepherd the product out of boredom, and the management who launches it will do so out of boredom, all in their own interests.

1. http://en.wikipedia.org/wiki/Iron_law_of_oligarchy

Post reply on HN