LinkedIn Accused Of Misusing Private Messages To Train AI Models

LinkedIn, owned by Microsoft,  is facing a lawsuit in the US which accuses the platform of sharing users’ messages to train Artificial Intelligence (AI) models. Now, LinkedIn Premium users have filed the lawsuit accusing the social media platform of illegally misusing their private messages by sharing them with other companies to train their AI models.

The lawsuit also accuses LinkedIn, the Microsoft-owned firm, of hiding its actions by changing its privacy policy to say user information could be disclosed for AI training purposes. 

The lawsuit says that LinkedIn changed its 'frequently asked questions' section to say that users could choose not to share data for AI purposes, but that doing so would not affect training that had already taken place."LinkedIn's actions... indicate a pattern of attempting to cover its tracks," the lawsuit said. "This behaviour suggests that LinkedIn was fully aware that it had violated its contractual promises and privacy standards and aimed to minimise public scrutiny".

"Given its role as a professional social media network, these communications include incredibly sensitive and potentially life-altering information about employment, intellectual property, compensation, and other personal matters," the filing reads.

The lawsuit was filed in a California federal court on behalf of a LinkedIn Premium user and "all others" in a similar situation. It seeks $1,000 (£812) per user for alleged violations of the US federal Stored Communications Act as well as an unspecified amount for breach of contract and California's unfair competition law.

According to an email LinkedIn sent to its users in 2024, it has not enabled user data sharing for AI purposes in the UK, the European Economic Area and Switzerland. 

The complaint raises broader concerns about user data exposure across Microsoft products like Microsoft 365, Teams, and Word. It warns that such integration increases risks of privacy breaches, unintended profiling, and potential misuse in contexts like employment and business negotiations. The plaintiffs allege LinkedIn “attempted to cover its tracks” by retroactively amending its privacy policies, contradicting its public commitments to ethical AI use and transparency.

LinkedIn users' complaints are bear comparison to Elon Musk's AI model Grok, which used posts on X as a training tool without properly obtaining users for permission, breaking GDPR rules.

LinkedIn has more than one billion users around the world, with almost 25% of them in the US. In 2023, the company attracted $1.7bn in revenue from premium subscriptions. It has described the allegations as "false claims with no merit"

BBC  |   ITPro   |   The National   |   TechMonitor   |   Independent   |    ELC 

Image:  Tobias Dziuba

You Might Also Read: 

Musk Sues Microsoft Over OpenAI:


If you like this website and use the comprehensive 7,000-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Cyber Attack Disrupts Eindhoven University 
Data Privacy Week »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

TÜV SÜD Academy UK

TÜV SÜD Academy UK

TÜV SÜD offers expert-led cybersecurity training to help organisations safeguard their operations and data.

Opengear

Opengear

Opengear ensures network resilience to enterprises by enabling business continuity with the Network Resilience Platform.

Boxcryptor

Boxcryptor

Boxcryptor encrypts your sensitive files before uploading them to cloud storage services.

KE-CIRT/CC

KE-CIRT/CC

KE-CIRT/CC is the national Computer Incident Response Team for Kenya.

Cologix

Cologix

Cologix provides reliable, secure, scalable data center and interconnection solutions from 24 prime interconnection locations across 9 strategic North American edge markets.

Wireless Logic

Wireless Logic

Wireless Logic delivers a range of secure and resilient value-added M2M/IoT managed services that empower remote devices to communicate cost-effectively, two ways.

TOAE Security

TOAE Security

TOAE Security is a trusted cyber security consulting partner helping today's leading organizations protect their most important assets from evolving cyber threats.

Qrator Labs

Qrator Labs

Qrator Labs is a leader in DDoS attack mitigation, helping organizations protect their websites from the most harmful, sophisticated DDoS attacks.

Singular Security

Singular Security

Singular Security help public and private organizations minimize cybersecurity risk and pass their IT compliance audit.

Carson McDowell

Carson McDowell

Carson McDowell are one of Northern Ireland's leading law firms. We are the law firm of choice for many of Northern Ireland's Top 100 companies as well as international companies doing business here.

Cyturus Technologies

Cyturus Technologies

Cyturus Technologies delivers cybersecurity business risk quantification services using our proprietary Adaptive Risk Model (ARM).

SecurIT360

SecurIT360

SecurIT360 is a full-service specialized Cyber Security and Compliance consulting firm.

META-Cyber

META-Cyber

META-cyber was founded by engineers with experience in process and control-protection to provide cyber security for industrial infrastructure.

Mage Data

Mage Data

Mage (formerly Mentis Software) is a leading solutions provider for data security and data privacy software for global enterprises.

Framework Security

Framework Security

With Framework Security, you get more than a consultancy; you get a partner dedicated to simplifying cybersecurity and protecting your business in the most efficient way possible.

Wired Assurance

Wired Assurance

Wired Assurance is a testing and assurance company, specialized in software applications and blockchain smart contracts.

UberEther

UberEther

UberEther are a dedicated group of software developers and consultants developing and deploying the next generation of identity management and cloud solutions.