Live data from Hacker News

LinkedIn is scanning browser extensions

404privacy.com

71–80 of 226 posts

Re: LinkedIn is scanning browser extensions

#71
post #40
post #20

Why is my Chrome telling random websites which extensions I have installed?

It isn’t exactly. They created a list of known extensions by their id and a file which is known to exist in that extension. The site iterates over each pair and tries to load that file, if it doesn’t error it knows the extension is installed. It’s a clever and difficult manual process, but it does bypass the security trying to prevent this kind of thing. I read that their reasoning is it exists to block users that us…

Does the same scan is happening on firefox? Random websites invoking extensions do seem to be a security hole to me.

Re: LinkedIn is scanning browser extensions

#73
post #62

Earlier quoted context omitted.

It's odd, yeah? We have the ability to vibe these things over a weekend, yet getting to the critical mass/tipping point of adoption is something else. Whatever happened to: if you build it, they will come?

If you want it to happen, we should talk requirements - what would you want from a LinkedIn NextGen? - A professional profile page - Contacts - Introductions/referrals - Ask my (sub-)network? Anything else?

A way for you to make money that isn’t ads / harvesting my data.

Exportable format so I can leave if needed.

Re: LinkedIn is scanning browser extensions

#74
post #50

Earlier quoted context omitted.

Be the change you want to see mate.

It's odd, yeah? We have the ability to vibe these things over a weekend, yet getting to the critical mass/tipping point of adoption is something else. Whatever happened to: if you build it, they will come?

Works for baseball fields, not websites

Re: LinkedIn is scanning browser extensions

#75

Is this a hallucination? I can't find this quote anywhere else. > According to browsergate, Milinda Lakkam confirmed this under oath, saying, "LinkedIn took action against users who had specific extensions installed."

Huh, kind of. That's not the actual quote. Note I haven't followed the chain further back than this: https://browsergate.eu/the-evidence-pack/ LinkedIn’s systems “may have taken action against LinkedIn users that happen to have [XXXXXX] installed.” Edit: nice! I just notice indent-formatted text is now wrapping on mobile browsers. (Or at least ffm.) I wonder how long that's been fixed...

Saying 'I may have taken a shower' instead of 'I took a shower' makes my wife use her disapproving look.

Re: LinkedIn is scanning browser extensions

#76
post #60

Seems to do this in Microsoft Edge, too.* * I use Edge bcs of the vertical tabs — Safari's equivalent is a poor substitute. Firefox didn't seem to have vertical tabs last time I checked.

They do now - https://support.mozilla.org/en-US/kb/use-sidebar-access-tool...

Re: LinkedIn is scanning browser extensions

#78
post #47

Earlier quoted context omitted.

IRC has existed for decades.

And it's a ghost town.

I suppose that depends on where you go and what you expect. Older communities are better populated than younger ones. (Not age-wise but topic-wise).

Re: LinkedIn is scanning browser extensions

#79
post #49
post #24

Earlier quoted context omitted.

And certainly fingerprint you right?

I guess that's what they're hoping for. With my admittedly biased opinion of the average linkedin user, about 99% will have the default set of extensions installed and so will not be very useful. Those users might have other identifiers of course, so who knows.

Oh man time to see if there is a chrome Bonzai Buddy extension

Re: LinkedIn is scanning browser extensions

#80
post #68
post #2

[flagged]

Can you confirm that the title is correct and that it encrypts rather than hashes? Both are concerns, but sending interpretable data is a more serious concern. I scanned through the article and did not see an example of the header it added.

It says RSA public key encryption in the article, so I’m going to assume that it’s not a typo.
Post reply on HN