Thursday, February 27, 2025
HomeInformation GatheringLinkedIn iOS App Caught Reading Clipboard With Every Keystroke, Says it is...

LinkedIn iOS App Caught Reading Clipboard With Every Keystroke, Says it is a Bug

Published on

SIEM as a Service

Follow Us on Google News

LinkedIn caught snooping on the clipboard data of every keystroke, the issue was discovered with the beta version of iOS 14.

The LinkedIn iOS app is responsible for the privacy-intrusive behavior that spotted by a developer who goes with the twitter handle @DonCubed.

LinkedIn iOS App

DonCubed noticed that while using LinkedIn on his iPad Pro, a service copying the keystrokes from the clipboard on his MacBook Pro.

The data snooping was discovered using the new mechanism introduced in iOS 14 that alerts users when some app is reading contents from the clipboard.

The new feature with iOS 14 is a good upgrade to privacy, iOS 14 also alerts users when an app accesses their camera or microphone.

With the new mechanism, @DonCubed found that “LinkedIn is copying the contents of my clipboard every keystroke. IOS 14 allows users to see each paste notification.”

LinkedIn’s consumer products’ VP Engineering Erran Berger said that copying behavior is not an intended one, he further added that “the contents of the clipboard are not stored or transmitted. A fix for the issue is in the works, and should be available soon.”

Earlier TikTok caught accessing the clipboard every few seconds and the company said they are to remove the feature.

Not only TikTok many other apps like Twitter, Starbucks, Overstock, AccuWeather, and more caught reading users clipboard data.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Also Read

Critical LinkedIn AutoFill Vulnerability Allow Hackers to Steal LinkedIn Users Sensitive Information

Hackers Abusing LinkedIn’s Direct Messaging Service to Deliver More_eggs Malware via Fake Job Offers

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Cisco Nexus Vulnerability Allows Attackers to Inject Malicious Commands

Cisco Systems has issued a critical security advisory for a newly disclosed command injection...

New Wi-Fi Jamming Attack Can Disable Specific Devices

A newly discovered Wi-Fi jamming technique enables attackers to selectively disconnect individual devices from...

GitLab Vulnerabilities Allow Attackers to Bypass Security and Run Arbitrary Scripts

GitLab has urgently released security updates to address multiple high-severity vulnerabilities in its platform...

LibreOffice Flaws Allow Attackers to Run Malicious Files on Windows

A high-severity security vulnerability (CVE-2025-0514) in LibreOffice, the widely used open-source office suite, has...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

New PLAYFULGHOST Malware Hacking Devices To Remotely Capture Audio Recordings

PLAYFULGHOST, a Gh0st RAT variant, leverages distinct traffic patterns and encryption, which spread via...

Singapore’s Government Directed ISPs To Block Access To Ten Inauthentic Websites

Singapore’s government has instructed internet service providers to block access to websites deemed “inauthentic,”...

Mastering Crypto Wallet Management: Secure Your Digital Assets With Confidence 

Navigating the world of cryptocurrencies can feel like unlocking a new frontier. I remember...