LinkedIn is spying on you, and you agreed to nothing

Smashing Security41mApril 8, 2026

Get the full intelligence

Search transcripts, export clips, track mentions, and explore all topics from “LinkedIn is spying on you, and you agreed to nothing” inside PodZeus.

AI-Generated Summary

In this episode of Smashing Security, hosts Graham Cluley and Dave Bittner dive into a controversial revelation about LinkedIn's hidden data collection practices. A German privacy group, Fairlinked, published the 'BrowserGate Report,' exposing that LinkedIn injects a 2.7MB JavaScript snippet into Chrome-based browsers on every visit, silently fingerprinting users by harvesting CPU details, screen resolution, battery status, language settings, and over 6,000 browser extensions—including those related to religion, politics, ADHD, and dyslexia. This data is tied to users' real identities, raising serious privacy concerns under GDPR, despite LinkedIn denying malicious intent and claiming the scanning is only to detect data-scraping extensions. The hosts critique LinkedIn’s lack of transparency and explore workarounds like switching to Firefox, Brave, or Safari. The episode also covers a chilling real-world case of 'wrench attacks' in California, where crypto holders were physically assaulted by fake delivery drivers to extract cryptocurrency passwords, highlighting how physical threats can bypass even the strongest digital security. The hosts reflect on the irony of tech-driven protection being undermined by old-school coercion. The episode closes with a lighter 'Pick of the Week' segment: Graham celebrates the rediscovery of two lost 1965 Doctor Who episodes, while Dave shares his nostalgia for vintage robotic chess computers, particularly a modern robotic arm version reviewed on the Techmoan YouTube channel. Both segments underscore the enduring appeal of retro tech and cultural preservation. The hosts emphasize the importance of privacy, digital hygiene, and community support, urging listeners to subscribe, review, and join Smashing Security Plus for ad-free access and early episodes.

Key Takeaways
1

LinkedIn silently collects detailed device and browser fingerprint data from Chrome-based users on every click, even when not logged in.

2

This data includes sensitive info like language, time zone, screen resolution, battery status, and over 6,000 installed extensions—some tied to religion, neurodiversity, or politics.

3

The practice is not disclosed in LinkedIn’s privacy policy and raises serious GDPR compliance concerns.

4

Users on Chrome or Edge are vulnerable; switching to Firefox, Brave, or Safari offers protection.

5

LinkedIn claims the scanning detects data-scraping extensions, but critics argue the scale and scope go far beyond that.

…and 5 more takeaways available in PodZeus

Chapters
0:00
7 min

Welcome & Sponsor Intro: ESET

The hosts kick off the episode with banter about podcasting fatigue and introduce ESET as a sponsor, highlighting their 30-year legacy in cybersecurity research, AI-powered threat intelligence, and global telemetry.

6:40
10 min

LinkedIn’s Hidden Fingerprinting: The BrowserGate Report

It's not just about scraping data. It's about building a detailed, real-name-linked fingerprint of you every time you click on LinkedIn.

Highlight
16:40
10 min

LinkedIn’s Defense & Privacy Implications

If you're tracking prayer times and ADHD tools, you're not just protecting your platform—you're building a dossier on users' private lives.

Highlight
26:40
10 min

Wrench Attacks: When Physical Violence Beats Encryption

His laptop's encrypted. Drug him and hit him with his $5 wrench until he tells us the password. That’s what actually happens.

Highlight
36:40
18 min

Cultural Nostalgia & Pick of the Week

Graham celebrates the rediscovery of two lost Doctor Who episodes from 1965, while Dave shares his love for vintage robotic chess computers, particularly a modern robotic arm version that moves pieces with mechanical precision.

High-Impact Quotes
His laptop's encrypted. Drug him and hit him with his $5 wrench until he tells us the password. That’s what actually happens.
Dave Bittner21:40
Viral: 92.0
If you're tracking prayer times and ADHD tools, you're not just protecting your platform—you're building a dossier on users' private lives.
Dave Bittner18:40
Viral: 88.0
It's not just about scraping data. It's about building a detailed, real-name-linked fingerprint of you every time you click on LinkedIn.
Graham Cluley15:50
Viral: 85.0
Speakers

Hosts

Graham CluleyDave Bittner

Guest

Dave Bittner
Topics Discussed
browser fingerprinting95%linkedin privacy90%wrench attacks88%digital surveillance85%gdpr compliance80%crypto security75%cultural preservation70%retro technology65%
People & Brands

linkedin

organization

45xNegative

graham cluley

person

35xNeutral

dave bittner

person

32xNeutral

chrome

product

14xNeutral

fairlinked

organization

12xPositive

doctor who

media

10xPositive

eset

organization

8xPositive

vanta

organization

6xPositive

mita

organization

5xPositive

firefox

product

4xPositive

Get the full intelligence

Search transcripts, export clips, track mentions, and explore all topics from “LinkedIn is spying on you, and you agreed to nothing” inside PodZeus.

Start discovering podcast insights today

Start with a 7-day trial and explore a growing catalog of popular podcasts. No credit card required.

No credit card required • 7-day trial • Cancel anytime