TikTok caught secretly spying on millions of iPhone users – IT PRO

Apple recently fixed a bug in iOS 14, which it will release this fall, that allows apps to secretly access the clipboard on Apple devices. The new OS will warn users when an app reads the last item copied to the clipboard. However, several apps have already been caught invading peoples privacy, including TikTok, according to security researchers Talal Haj Bakry and Tommy Mysk.

Advertisement - Article continues below

Chinas Bytedance, owner of TikTok, stated the problem is tied to an outdated advertising SDK. However, according to the clipboard warning in iOS 14 beta, TikTok is continuing to abuse users privacy. A company spokesperson said it was triggered by a feature designed to identify repetitive, spammy behavior. TikTok submitted an updated version of the app without the anti-spam feature to the App Store.

The TikTok spokesperson added: The clipboard access issues showed up due to third-party SDKs, in our case an older version Google Ads SDK, so we do not get access to the information through this. We are in the processes of updating so that the third-party SDK will no longer have access.

Changes to Apples iOS 14 security and privacy settings helped to identify TikTok and other apps secretly accessing the clipboard. The vulnerability meant anything copied on a users Mac or iPad could be read by active apps on their iPhone, including passwords, work documents, personal emails and financial documents. Apples iOS fix will force TikTok and other companies to update their apps.

Advertisement - Article continues below

Apple initially ignored the clipboard vulnerability, eventually publishing a fix following media coverage of the security findings. According to Bakry and Mysk, Apple dismissed the risks that we highlighted and explained that iOS already had mechanisms to counter all of the risks. But the mechanisms that Apple provided were not effective to protect user privacy.

iPhone users should update their TikTok app when the newest version is released.

Navigating the new normal: A fast guide to remote working

A smooth transition will support operations for years to come

Putting a spotlight on cyber security

An examination of the current cyber security landscape

The economics of infrastructure scalability

Find the most cost-effective and least risky way to scale

IT operations overload hinders digital transformation

Clearing the path towards a modernised system of agreement

Read the original post:
TikTok caught secretly spying on millions of iPhone users - IT PRO

Related Posts

Comments are closed.