Live data from Hacker News

LinkedIn is scanning browser extensions

404privacy.com

61–70 of 226 posts

Re: LinkedIn is scanning browser extensions

#61
post #49
post #24

Earlier quoted context omitted.

And certainly fingerprint you right?

I guess that's what they're hoping for. With my admittedly biased opinion of the average linkedin user, about 99% will have the default set of extensions installed and so will not be very useful. Those users might have other identifiers of course, so who knows.

I’m pretty sure it’s not 99% you would wonder how many differences there are along with user-agent resolution and ip range...

I think 99% are identifiable

Re: LinkedIn is scanning browser extensions

#62
post #50

Earlier quoted context omitted.

Be the change you want to see mate.

It's odd, yeah? We have the ability to vibe these things over a weekend, yet getting to the critical mass/tipping point of adoption is something else. Whatever happened to: if you build it, they will come?

If you want it to happen, we should talk requirements - what would you want from a LinkedIn NextGen?

- A professional profile page

- Contacts

- Introductions/referrals

- Ask my (sub-)network?

Anything else?

Re: LinkedIn is scanning browser extensions

#65

Earlier quoted context omitted.

I choose not to work at places like linked in, meta, or any place that accepts Saudi or Israeli funding. It makes it a little harder to find a job, but i sleep better at night.

I wouldn’t lump in Israel in, but good for you.

I got you covered, boo. I will! For sport.

Anyway, for those in this situation, some anecdotes. I've outright refused to do questionable things and kept my job. I've also played incompetent so the sharks look elsewhere. Point being... options exist, don't negotiate [only] with yourself.

Would be remiss if I missed the opportunity to quote Louis Rossman: "don't accept the premise of assholes"

Re: LinkedIn is scanning browser extensions

#66
post #29

Can someone here please create a LinkedIn replacement for developers that 1. Doesn't have the spam 2. That doesn't look like it's from 2008 3. That only developers / engineers / tech folks can join 4. Doesn't try to log into your email to steal your contact list 5. That doesn't track you or your extensions / browser fingerprint 6. That doesn't have a bunch of fake "linkedinmaxxing" garbage content 7. that doesn't hav…

LinkedIn is a cesspool, but it’s almost worthless to me without the recruiters.

They’re basically the only reason I’m there.

Re: LinkedIn is scanning browser extensions

#67

Is this a hallucination? I can't find this quote anywhere else. > According to browsergate, Milinda Lakkam confirmed this under oath, saying, "LinkedIn took action against users who had specific extensions installed."

Huh, kind of. That's not the actual quote. Note I haven't followed the chain further back than this:

https://browsergate.eu/the-evidence-pack/

    LinkedIn’s systems “may have taken action against LinkedIn users that happen to have [XXXXXX] installed.”

Edit: nice! I just notice indent-formatted text is now wrapping on mobile browsers. (Or at least ffm.) I wonder how long that's been fixed...

Re: LinkedIn is scanning browser extensions

#68
post #2

[flagged]

Can you confirm that the title is correct and that it encrypts rather than hashes?

Both are concerns, but sending interpretable data is a more serious concern.

I scanned through the article and did not see an example of the header it added.

Re: LinkedIn is scanning browser extensions

#69
post #40
post #20

Why is my Chrome telling random websites which extensions I have installed?

It isn’t exactly. They created a list of known extensions by their id and a file which is known to exist in that extension. The site iterates over each pair and tries to load that file, if it doesn’t error it knows the extension is installed. It’s a clever and difficult manual process, but it does bypass the security trying to prevent this kind of thing. I read that their reasoning is it exists to block users that us…

So the follow up question, is why is a random website, allowed to try and load arbitrary files?
Post reply on HN