LinkedIn's iOS app has taken the ongoing issue of snooping at users' clipboards to whole, new level. The company has already said it's a mistake that will be fixed.
The issue of iOS apps monitoring copy-paste data has been a subject of concern since March, when a pair of software developers published their research. Tommy Mysk and Talal Haj Bakry discovered that a large number of existing apps (at the time) checked out users' clipboard data every time those apps were opened.
This is alarming when you really sit down and think back on all the times you've copy-pasted sensitive data, such as a sign-in credentials from your password locker or a credit card number that you don't feel like typing in again. If you haven't done that, great. But plenty of people have. And you probably don't want strangers peeping at your clipboard data regardless.
The snooping issue reared up again in recent weeks with the beta release of iOS 14. Apple's next major operating system update for iPhone includes a new feature that lets people look at how their data is being accessed, something that's been described as the privacy equivalent of "nutrition labels."
As people started playing with the beta, some discovered that a number of major apps, like TikTok, are still doing some form of clipboard snooping. On Thursday, one Twitter user, Don Morton, demonstrated how LinkedIn's snooping is among the most invasive examples, with the app copying what's in the clipboard with every keystroke.
This Tweet is currently unavailable. It might be loading or has been removed.
Morton also discovered that Reddit's app is doing the same thing. (A fix is in the making for that as well.)
This Tweet is currently unavailable. It might be loading or has been removed.
Morton went and wrote at greater length about the real issue with this snooping in a Substack post. While these companies ought to fix their apps, he wrote, the bigger issue is that such data is accessible to developers in the first place.
"I could easily see 'phishing apps' starting to pop up (if they are not already) with the sole intention to scrape as much clipboard data as possible. To me, this is just as bad or even more worrying than the companies that have already been called out for it. For the most part, the companies that have been getting called out have motive to be 'good'. I’m just starting to think about companies or apps that have no intention of being good," Morton wrote.
The Substack post also includes a list of major apps that are still doing the snooping (and any company response, when there is one). He also recommends checking to see if your password manager has a feature that wipes clipboard data after a short amount of time.
LinkedIn exec Erran Berger responded to Morton's tweet with a technical explanation of what's happening here, adding that "we don't store or transmit the clipboard contents." A company spokesperson later confirmed to ZDNet that the issue is a bug, and work is already underway on a fix.
UPDATE: July 4, 2020, 4:04 p.m. EDT Added a note about Reddit confirming a fix is coming.
Copyright © 2023 Powered by
LinkedIn says its extra intense clipboard snooping in iOS is a bug-夜以继日网
sitemap
文章
81
浏览
9157
获赞
56257
Instagram's 'Pinned Comments' feature is now available to everyone
If you're trying to inject some positivity into your Instagram posts, the new Pinned Comments featurUse Facebook's Feeds to clean up your Facebook
Facebook has finally done it: Last week, the company introduced Feeds on mobile, giving users the opMadonna calls out Instagram's double standards on censorship
Instagram took down a photo of Madonna because part of her nipple was showing — and Madonna hi20 things you've seen on TikTok that are available on Amazon (and make great gifts)
A sunset lamp projector to mimic the sunshine long after the sun sets...at 4 PM...in case you neededIt's way too easy to accidentally reply to Instagram Stories
I used to love Instagram Stories.After long days at work, mindlessly tapping through Stories on theInstagram is developing a way to protect users from cyberflashing
Cyberflashing, the practice of sending unsolicited and unwanted nude photos to people via social medUber's had a data breach, and we don't know how bad it is yet
Uber has suffered a significant data breach, with the New York Timesreporting the rideshare companyCNN has abandoned its NFT project, and investors are not happy
Need more proof that the NFT craze has died down? CNN has given up on Vault, the company's NFT marke'Bring Your Kids to Work Day' didn't go so well for Sarah Huckabee Sanders
White House Press Secretary Sarah Huckabee Sanders probably thought holding a mock press briefing onXbox Series X restock: Buy now at Walmart
TL;DR: The elusive Xbox Series X just got a restock at Walmart. Grab one for $499 as of Oct. 13, whi'Gossip Girl' is the only Thanksgiving content these Twitter users need
For many, Thanksgiving celebrations entail the expected: home-cooked turkey, cranberry sauce, and beThe 3 best TV streaming devices to get right now
There’s never been a better time for great TV shows, but that doesn’t matter if you can&Tiger Woods won the Masters, and everybody loves a comeback
Dramatic comebacks are usually the stuff of sports movies, complete with sweeping music and tearfulXiaomi's CyberOne is a humanoid robot with a weird walk
Xiaomi has launched a humanoid robot called CyberOne. It can detect human emotion and create 3D visuEV charging stations are coming to highways across all 50 states
It's about to get a whole lot easier to charge your electric vehicle. The Department of Transportati