1Abc Directory LinkPedia Web Directory Nipao Directory education

Israeli cybersecurity research firm found serious Vulnerabilities in TikTok

SHARE:

Israeli cybersecurity research firm found serious Vulnerabilities in TikTok. Found this vulnerability last November 20 and it was fixed by TikTok developers on December 15. hackers manipulate user data, expose personal information and send users malicious links.

Serious Vulnerabilities in TikTok
TikTok, one of the fastest-growing social network app in the world, fixes a bug last December that lets hackers manipulate user data, expose personal information and send users malicious links.

Serious Vulnerabilities in TikTok

An Israeli cybersecurity firm "Check Point" found serious vulnerabilities in most popular video app TikTok.
TikTok was notified about the Vulnerabilities on November 20 last year and fixed all of the vulnerabilities discovered by Check Point cybersecurity researchers on December 15.
As reported by the Checkpoint by a blog post today,
The vulnerabilities noted by the Checkpoint security researchers that allow attackers to do the following:


  • Get hold of TikTok accounts and manipulate their content.
  • Delete videos.
  • Upload unauthorized videos.
  • Make private “hidden” videos public.
  • Reveal personal information saved on the account such as private email addresses.


TikTok Vulnerabilities found by Check Point:

In its research, Check Point found some serious vulnerabilities they are:


SMS Link Spoofing:



  • It was possible to access the mobile numbers of TikTok users that is a mandatory requirement while signing up. These numbers could then be used to send spoof texts and make them appear to come from TikTok. Sending fake links via these messages could then let hackers get access to parts of the user’s account that’d let them upload, delete or delist videos. Legitimate SMS message.


  • Using TikTok’s website, hackers could send users a message to download the app, but with a malicious link. Through manipulated javascript code attackers could control a user’s profile when they click on the link sent through SMS. It is also reported that TikTok was vulnerable to attacks that inject malicious code into trusted websites and that Check Point researchers were able to retrieve users' personal information, including names and dates of birth.


  • TikTok's Spokesperson & the head of security Luke Deshotels said in a statement that:

    "TikTok is committed to protecting user data... Like many organizations, we encourage responsible security researchers to privately disclose zero-day vulnerabilities to us... Before public disclosure, Check Point agreed that all reported issues were patched in the latest version of our app. We hope that this successful resolution will encourage future collaboration with security researchers."
    Anyhow the cybersecurity firm found this vulnerability last November 20  and it was fixed by TikTok developers on December 15. While TikTok users are not under any threat, you should make sure you’re running the latest version of the app download from the android play store.

    COMMENTS

    Name

    android,19,apple,2,application,10,deals,1,entertainment,13,gadgets,3,gaming,12,how-to,71,IoT,24,iphone,15,news,163,reviews,16,science,5,security,29,tech,149,top-list,29,tricks,2,Weird,2,windows,17,
    ltr
    item
    TECHAPIS- All Tech News Blog: Israeli cybersecurity research firm found serious Vulnerabilities in TikTok
    Israeli cybersecurity research firm found serious Vulnerabilities in TikTok
    Israeli cybersecurity research firm found serious Vulnerabilities in TikTok. Found this vulnerability last November 20 and it was fixed by TikTok developers on December 15. hackers manipulate user data, expose personal information and send users malicious links.
    https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiMm5flD-JO20wcUMrr4nNlx51cndugF1aIl74dAJSU-VrUaZtLAi5WD6d-bir3BZ5gwJcfFdnEPOgZY81KsE_7MbrAiNZYUy2PuZD4KW3puroiQJMgLukCRaAX7e6iK_eTRmk5Ae2A-_C9/s1600/vulnerabilities+in+TikTok.jpg
    https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiMm5flD-JO20wcUMrr4nNlx51cndugF1aIl74dAJSU-VrUaZtLAi5WD6d-bir3BZ5gwJcfFdnEPOgZY81KsE_7MbrAiNZYUy2PuZD4KW3puroiQJMgLukCRaAX7e6iK_eTRmk5Ae2A-_C9/s72-c/vulnerabilities+in+TikTok.jpg
    TECHAPIS- All Tech News Blog
    https://techapis.blogspot.com/2020/01/israeli-cybersecurity-research-firm--found-serious-vulnerabilities-tiktok.html
    https://techapis.blogspot.com/
    https://techapis.blogspot.com/
    https://techapis.blogspot.com/2020/01/israeli-cybersecurity-research-firm--found-serious-vulnerabilities-tiktok.html
    true
    593753531860090012
    UTF-8
    Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS PREMIUM CONTENT IS LOCKED STEP 1: Share to a social network STEP 2: Click the link on your social network Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy Table of Content