9 ms·
They were evil before. Previously they’d take your LinkedIn password and try using that to log in to your email account to grab your contacts.
by noja 2y ago
They were evil before.
Previously they’d take your LinkedIn password and try using that to log in to your email account to grab your contacts.
- 55555 2y agoThis sounds absolutely insane.
- dkga 2y agoThis is a big thing, is there any evidence? Not implausible unfortunately…
- saagarjha 2y agohttps://en.wikipedia.org/wiki/LinkedIn#Use_of_e-mail_accounts_of_members_for_spam_sending https://en.wikipedia.org/wiki/LinkedIn#Use_of_e-mail_account...
- Cthulhu_ 2y agoWasn't this also how some services would connect e.g. your bank accounts? They'd ask for your credentials and log into your bank to scrape its contents. And I kinda get it, some services external to your bank can help you manage your finances etc. But it's why banks should offer APIs where the user can set limited and timed access to these services. In Europe this is PSD2 (Revised Payment Services Directive).
- amanda99 2y agoI think the key point is that they would take your Linkedin password and try to use that on your email without asking you, in case you reused passwords.
- wkat4242 2y agoOk I didn't know that. Very good point. Wow.
- slickytail 2y agoThe linked wikipedia article below says that they asked you for your email password specifically -- is there any evidence that they would try to use your linkedin password itself?