LinkedIn Accused Of Misusing Private Messages To Train AI Models

LinkedIn, owned by Microsoft,  is facing a lawsuit in the US which accuses the platform of sharing users’ messages to train Artificial Intelligence (AI) models. Now, LinkedIn Premium users have filed the lawsuit accusing the social media platform of illegally misusing their private messages by sharing them with other companies to train their AI models.

The lawsuit also accuses LinkedIn, the Microsoft-owned firm, of hiding its actions by changing its privacy policy to say user information could be disclosed for AI training purposes. 

The lawsuit says that LinkedIn changed its 'frequently asked questions' section to say that users could choose not to share data for AI purposes, but that doing so would not affect training that had already taken place."LinkedIn's actions... indicate a pattern of attempting to cover its tracks," the lawsuit said. "This behaviour suggests that LinkedIn was fully aware that it had violated its contractual promises and privacy standards and aimed to minimise public scrutiny".

"Given its role as a professional social media network, these communications include incredibly sensitive and potentially life-altering information about employment, intellectual property, compensation, and other personal matters," the filing reads.

The lawsuit was filed in a California federal court on behalf of a LinkedIn Premium user and "all others" in a similar situation. It seeks $1,000 (£812) per user for alleged violations of the US federal Stored Communications Act as well as an unspecified amount for breach of contract and California's unfair competition law.

According to an email LinkedIn sent to its users in 2024, it has not enabled user data sharing for AI purposes in the UK, the European Economic Area and Switzerland. 

The complaint raises broader concerns about user data exposure across Microsoft products like Microsoft 365, Teams, and Word. It warns that such integration increases risks of privacy breaches, unintended profiling, and potential misuse in contexts like employment and business negotiations. The plaintiffs allege LinkedIn “attempted to cover its tracks” by retroactively amending its privacy policies, contradicting its public commitments to ethical AI use and transparency.

LinkedIn users' complaints are bear comparison to Elon Musk's AI model Grok, which used posts on X as a training tool without properly obtaining users for permission, breaking GDPR rules.

LinkedIn has more than one billion users around the world, with almost 25% of them in the US. In 2023, the company attracted $1.7bn in revenue from premium subscriptions. It has described the allegations as "false claims with no merit"

BBC  |   ITPro   |   The National   |   TechMonitor   |   Independent   |    ELC 

Image:  Tobias Dziuba

You Might Also Read: 

Musk Sues Microsoft Over OpenAI:


If you like this website and use the comprehensive 7,000-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Cyber Attack Disrupts Eindhoven University 
Data Privacy Week »

CyberSecurity Jobsite
Check Point

Directory of Suppliers

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

Resecurity

Resecurity

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

The PC Support Group

The PC Support Group

A partnership with The PC Support Group delivers improved productivity, reduced costs and protects your business through exceptional IT, telecoms and cybersecurity services.

Information Risk Management (IRM)

Information Risk Management (IRM)

IRM is an international consultancy dedicated to helping organisations solve key business issues. We provide strategic cyber security advice across a wide range of sectors.

CyberDefenses

CyberDefenses

CyberDefenses services combine best-in-class cybersecurity oversight, managed services and training to help our clients truly address their cybersecurity challenges.

NQA Certification

NQA Certification

NQA provides certification to a range of ISO standards including ISO 27001 for information security management.

NUS-Singtel Cyber Security R&D Lab

NUS-Singtel Cyber Security R&D Lab

NUS-Singtel Cyber Security R&D Lab conducts research into predictive security analytics.

The Open Group

The Open Group

The Open Group: Leading the development of open, vendor-neutral IT standards and certifications.

CyberPrism

CyberPrism

CyberPrism provides SaaS solutions using proprietary technology, underpinned by industry-leading technical practitioners to protect OT within Government, Maritime and Industrial markets.

Greenwave Systems

Greenwave Systems

Greenwave's AXON Platform enables IoT and M2M network service providers to address security, interoperability, flexibility and scalability from a single IoT platform.

Westminster Insight - Cyber Security Conference

Westminster Insight - Cyber Security Conference

Join colleagues this December for Westminster Insight’s Cyber Security Conference, as you’ll assess how new technologies such as AI can secure your organisation against future threats.

World Informatix Cyber Security (WICS)

World Informatix Cyber Security (WICS)

World Informatix Cyber Security provides a range of cyber security services to protect valuable information assets to global business and governments.

SEMNet

SEMNet

SEMNet is an IT solutions provider and an infrastructure and security consulting firm.

Sevco Security

Sevco Security

Sevco Delivers Real-time Asset Intelligence to Identify and Close Unknown Security Gaps.

gener8tor

gener8tor

The gener8tor Cybersecurity Accelerator offers a cutting-edge program in San Antonio, home to the second-largest concentration of cybersecurity experts in the United States.

Sardine

Sardine

Sardine is a leader in financial crime prevention. Using unparalleled device intelligence and behavior biometrics, Sardine applies machine learning to detect and stop fraud before it happens.

Backslash Security

Backslash Security

With Backslash, AppSec teams gain visibility into critical risks in their apps based on reachability and exploitability.

Compugen Systems Inc (CSI)

Compugen Systems Inc (CSI)

Compugen Systems is an IT service delivery company that focuses on enabling your business outcomes.

Norwegian Data Protection Authority (Datatilsynet)

Norwegian Data Protection Authority (Datatilsynet)

The Norwegian Data Protection Authority (Datatilsynet) is the national data protection authority for Norway.