The researcher Jack Cable (18) has discovered a flaw in LinkedIn, the AutoFill functionality, that allowed user data harvesting. The AutoFill function allows users to quickly fill out forms with data from their LinkedIn profile, including name, title, company, email address, phone number, city, zip code, state, and country. It is possible to exploit the function to harvest user data by placing the. AutoFill button on a malicious website, rather than leaving the LinkedIn button visible on the page the attacker could have changed its properties and locate it everywhere in the page making it invisible.”]
Source: https://securityaffairs.co/wordpress/71563/hacking/linkedin-user-data-harvesting.html

