LinkedIn Accused Of Misusing Private Messages To Train AI Models

LinkedIn, owned by Microsoft,  is facing a lawsuit in the US which accuses the platform of sharing users’ messages to train Artificial Intelligence (AI) models. Now, LinkedIn Premium users have filed the lawsuit accusing the social media platform of illegally misusing their private messages by sharing them with other companies to train their AI models.

The lawsuit also accuses LinkedIn, the Microsoft-owned firm, of hiding its actions by changing its privacy policy to say user information could be disclosed for AI training purposes. 

The lawsuit says that LinkedIn changed its 'frequently asked questions' section to say that users could choose not to share data for AI purposes, but that doing so would not affect training that had already taken place."LinkedIn's actions... indicate a pattern of attempting to cover its tracks," the lawsuit said. "This behaviour suggests that LinkedIn was fully aware that it had violated its contractual promises and privacy standards and aimed to minimise public scrutiny".

"Given its role as a professional social media network, these communications include incredibly sensitive and potentially life-altering information about employment, intellectual property, compensation, and other personal matters," the filing reads.

The lawsuit was filed in a California federal court on behalf of a LinkedIn Premium user and "all others" in a similar situation. It seeks $1,000 (£812) per user for alleged violations of the US federal Stored Communications Act as well as an unspecified amount for breach of contract and California's unfair competition law.

According to an email LinkedIn sent to its users in 2024, it has not enabled user data sharing for AI purposes in the UK, the European Economic Area and Switzerland. 

The complaint raises broader concerns about user data exposure across Microsoft products like Microsoft 365, Teams, and Word. It warns that such integration increases risks of privacy breaches, unintended profiling, and potential misuse in contexts like employment and business negotiations. The plaintiffs allege LinkedIn “attempted to cover its tracks” by retroactively amending its privacy policies, contradicting its public commitments to ethical AI use and transparency.

LinkedIn users' complaints are bear comparison to Elon Musk's AI model Grok, which used posts on X as a training tool without properly obtaining users for permission, breaking GDPR rules.

LinkedIn has more than one billion users around the world, with almost 25% of them in the US. In 2023, the company attracted $1.7bn in revenue from premium subscriptions. It has described the allegations as "false claims with no merit"

BBC  |   ITPro   |   The National   |   TechMonitor   |   Independent   |    ELC 

Image:  Tobias Dziuba

You Might Also Read: 

Musk Sues Microsoft Over OpenAI:


If you like this website and use the comprehensive 7,000-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Cyber Attack Disrupts Eindhoven University 
Data Privacy Week »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

Vanguard Integrity Professionals

Vanguard Integrity Professionals

Vanguard Integrity Professionals is an independent provider of enterprise security software solutions that address complex security and regulatory compliance challenges.

BMC Software

BMC Software

BMC provide solutions for IT service management, Cloud management, IT workload automation, IT operations, and mainframe system management.

Hitachi ID Systems

Hitachi ID Systems

Hitachi ID Systems offers comprehensive identity management and access governance, privileged access management and password management solutions.

APWG

APWG

APWG is the international coalition unifying the global response to cybercrime across industry, government, law-enforcement and NGO communities.

K&D Insurance Brokers

K&D Insurance Brokers

K&D provide insurance for all sectors of industry and commerce including cyber risk cover.

Authenware

Authenware

AuthenWare delivers the highest level of identity security based on behavioral biometrics.

Quadrant Information Security

Quadrant Information Security

Quadrant Information Security is a consulting firm committed to supporting organizations in all vertical markets and protecting their sensitive data.

Repulsa

Repulsa

Repulsa provides state-of-the-art, patented, fast filtering with over 700 million malicious IP addresses and over 30 million categorized site listings updated daily.

OneTrust

OneTrust

OneTrust is the largest and most widely used technology platform to operationalize privacy, security and third-party risk management.

Swedish Board for Accreditation and Conformity Assessment (SWEDAC)

Swedish Board for Accreditation and Conformity Assessment (SWEDAC)

SWEDAC is the national accreditation body for Sweden. The directory of members provides details of organisations offering certification services for ISO 27001.

RISE

RISE

RISE is an independent, State-owned research institute, which offers unique expertise and over 100 testbeds and demonstration environments for future-proof technologies, products and services.

Clone Systems

Clone Systems

Clone Systems is an award winning global cloud based managed security as a service provider.

Cympire

Cympire

Cympire significantly increases an organisation’s Cyber Resilience through continuous Training and Assessment. Cyber Security Training Platform. Cloud-based and fully customizable Cyber Range.

Albania Lab

Albania Lab

Albania Lab is a consulting company focused on the development and delivery of digital solutions and IT services including cybersecurity.

Fletch

Fletch

Fletch’s AI tracks the evolving cybersecurity threat landscape by reading and interpreting every threat article every day and matching those threats to a company’s exposure.

Chestnut Hill Technologies (CHT)

Chestnut Hill Technologies (CHT)

CHT provide Best Practices IT Cybersecurity and Technology Solutions and Consulting Support to the Mid Cap through Fortune 1000 Nationwide.