Hacker News new | ask | show | jobs
by biot 3526 days ago
In previous stories[0] it turned out that LinkedIn was siphoning information via their mobile app. For example, if you're on Android and install LinkedIn you're granting the complete set of permissions the app requires plus automatically granting any new permissions the updated app specifies:

  This app has access to:

  Identity
  -find accounts on the device
  -add or remove accounts

  Calendar
  -read calendar events plus confidential information

  Contacts
  -find accounts on the device
  -read your contacts
  -modify your contacts

  Location
  -precise location (GPS and network-based)

  Photos/Media/Files
  -read the contents of your USB storage
  -modify or delete the contents of your USB storage

  Storage
  -read the contents of your USB storage
  -modify or delete the contents of your USB storage

  Other
  -read sync statistics
  -receive data from Internet
  -view network connections
  -create accounts and set passwords
  -full network access
  -read sync settings
  -control vibration
  -prevent device from sleeping
  -toggle sync on and off

  Updates to LinkedIn may automatically add 
  additional capabilities within each group. 
How people can willingly grant device pwnership to apps like this are beyond me.

[0] https://news.ycombinator.com/item?id=12651448

1 comments

Most people are dumb and apathetic.

Why does that still surprise you?