Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Report: Apple Caught China-Owned TikTok Spying on Millions of iPhone Users
Breitbart ^ | 27 Jun 2020 | TOM CICCOTTA

Posted on 06/27/2020 12:43:04 PM PDT by E. Pluribus Unum

A report published on Friday suggests that the megapopular China-owned social media application TikTok was spying on users through a vulnerability in the latest version of Apple’s iOS smartphone firmware.

According to a report by Forbes, the popular social media platform TikTok may have been spying on millions of users by spying on data copied to their iPhones’ clipboard through a vulnerability in the latest iOS smartphone firmware.

The vulnerability, which allows application developers to access a user’s clipboard, data was modified on June 23 by Apple. Now, users will be prompted with a notification when an application gains access to their clipboard data.

A representative from TikTok told Forbes that the issue occurred as a result of a feature that was implemented to prevent spam on the platform.

According to TikTok, the issue is now “triggered by a feature designed to identify repetitive, spammy behavior,” and has told me that it has “already submitted an updated version of the app to the App Store removing the anti-spam feature to eliminate any potential confusion.” In other words: We’ve been caught doing something we shouldn’t, we’ve rushed out a fix.

TikTok claims that the clipboard access issues were triggered by an older version of the Google advertising SDK.

“The clipboard access issues,” the TikTok representative added, “showed up due to third-party SDKs, in our case an older version Google Ads SDK, so we do not get access to the information through this (presumably they do but we cannot speak to that). We are in the processes of updating so that the third-party SDK will no longer have access.”

Breitbart News reported at the beginning of June that children spend almost as much time on TikTok as they do on YouTube. The report revealed that children approximately 80 minutes on each application...

(Excerpt) Read more at breitbart.com ...


TOPICS: News/Current Events
KEYWORDS: china; internet; spying; tiktok
Navigation: use the links below to view more comments.
first previous 1-2021-36 last
To: E. Pluribus Unum

Please stop using TikTok and ask your kids to stop.


21 posted on 06/27/2020 1:51:09 PM PDT by Savage Rider
[ Post Reply | Private Reply | To 1 | View Replies]

To: E. Pluribus Unum

The same group that tried to sabotage Trump’s rally in Tulsa


22 posted on 06/27/2020 2:13:08 PM PDT by Zathras
[ Post Reply | Private Reply | To 1 | View Replies]

To: Swordmaker; dayglored

What’s your take on this? Overhyped or genuine risk?


23 posted on 06/27/2020 2:38:49 PM PDT by Zhang Fei (My dad had a Delta 88. That was a car. It was like driving your living room.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Zhang Fei

TikTok should be banned. It is a collection tool for the CCP and it targets kids.


24 posted on 06/27/2020 2:41:18 PM PDT by CJ Wolf ( #wwg1wga #Godwins)
[ Post Reply | Private Reply | To 23 | View Replies]

To: Zhang Fei; Swordmaker
My take is that TikTok is spyware. I’m rather surprised that Apple permitted it in the App Store in the first place.

Vulnerabilities happen in all software so companies have to be particularly careful about allowing apps tied to known malefactors, regardless of their popularity.

I continue to use Apple products (Macs, iPhones, iPads) because overall they appear to me to be the best mix of function, privacy, and data security. But nothing is perfect. I’d like to see Apple drop support for TikTok.

25 posted on 06/27/2020 3:41:02 PM PDT by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government."`)
[ Post Reply | Private Reply | To 23 | View Replies]

To: dayglored

[My take is that TikTok is spyware. I’m rather surprised that Apple permitted it in the App Store in the first place.

Vulnerabilities happen in all software so companies have to be particularly careful about allowing apps tied to known malefactors, regardless of their popularity.

I continue to use Apple products (Macs, iPhones, iPads) because overall they appear to me to be the best mix of function, privacy, and data security. But nothing is perfect. I’d like to see Apple drop support for TikTok. ]


Thanks for the tip. I don’t use Tiktok (or Twitter or Facebook) and probably never will. But I’m just curious as to how vulnerable smartphone API’s are to a determined state actor like TikTok (because of the likely official embedding of Chinese government hackers or at least political officers among the programming staff).


26 posted on 06/27/2020 4:21:15 PM PDT by Zhang Fei (My dad had a Delta 88. That was a car. It was like driving your living room.)
[ Post Reply | Private Reply | To 25 | View Replies]

To: E. Pluribus Unum

btt


27 posted on 06/27/2020 5:15:40 PM PDT by KSCITYBOY (The media is corrupt)
[ Post Reply | Private Reply | To 1 | View Replies]

To: E. Pluribus Unum

The outrage! TicTok spying on I-phone users.

That’s Apple’s job, the cell provider’s job, and the NSA’s job.


28 posted on 06/27/2020 6:24:08 PM PDT by LegendHasIt
[ Post Reply | Private Reply | To 1 | View Replies]

To: Zhang Fei; Swordmaker
You are right to be concerned about determined state actors. China has a tremendous number of bright, talented, and highly motivated technical people, many trained in the US and aware of Western conventions and habits. As a result, China can throw an enormous amount of firepower at our APIs and firewalls, our encryption implementations, our security mechanisms, etc.

Apple’s technical team is similarly bright and talented, but their motivation is necessarily somewhat different. They are mainly trying to develop products, increase capabilities and features, improve security, etc. I’m sure Apple has a great test/QA team trying to find weaknesses and mistakes both in design and implementation. But the sheer numbers are in favor of the Bad Guys.

Just as with the argument for Open Source — that having lots of eyeballs makes it easier to find errors — lots of eyeballs also makes it easier to hack into defenses.

TikTok is like a Trojan horse in every sense. Users install it at their peril. Of course, there are many such nefarious apps around, but the huge popularity of TikTok gives it much greater coverage and momentum.

29 posted on 06/27/2020 7:10:13 PM PDT by dayglored ("Listen. Strange women lying in ponds distributing swords is no basis for a system of government."`)
[ Post Reply | Private Reply | To 26 | View Replies]

To: dayglored; ~Kim4VRWC's~; 1234; 5thGenTexan; AbolishCSEU; Abundy; Action-America; acoulterfan; ...
Dayglored said: “My take is that TikTok is spyware. I’m rather surprised that Apple permitted it in the App Store in the first place.” My response is that all apps that access the web have the potential to be spyware. In this instance, any app that has access to the clipboard and copy and paste can obviously paste what is currently in the paste buffer. That’s what this is all about! If that capability is there, it’s child’s play to send what’s in that buffer to the app’s server! Any browser or messenger app could do it. In fact, any connected app could. The question is, “do you trust the app publisher NOT to do it?” Why is TikTok any different from any other publisher except that it’s owned and controlled by the Chinese Communist Government. What do we put in our cut and paste clipboard might make all the difference. . . If it’s sensitive data, don’t leave it there in the buffer. Copy something else totally innocuous, such as a single word, “word” would be a good copy choice to leave in the buffer. Just don’t leave your secret plans to invade China, or the top secret, burn before reading, plans for the new Z bomb, in the buffer after you’ve finished sending them to your henchmen! —PING!


APPLE TikTok vulnerability? No, not really. . .
It’s FUD, Fear, Uncertainty, and Doubt, Again!
PING!

If you want on or off the Apple/Mac/iOS Ping List, Freepmail me.

30 posted on 06/27/2020 11:03:52 PM PDT by Swordmaker (My pistol self-identifies as an iPad, so you must accept it in gun-free zones, you hoplophobe bigotu)
[ Post Reply | Private Reply | To 25 | View Replies]

Think about it, what are the average TikTok users going to have in their clipboard buffers?

The answer is obvious: The last photo or meme they copied to post on TikTok! These users one time use buffers are NOT going to have a damn thing of momentous import in them that’s most likely not already uploaded on their TikTok account.


31 posted on 06/27/2020 11:09:25 PM PDT by Swordmaker (My pistol self-identifies as an iPad, so you must accept it in gun-free zones, you hoplophobe bigotu)
[ Post Reply | Private Reply | To 30 | View Replies]

Incidentally, I read through the deeper linked articles on the TIKTOK malware and found that it’s mostly Android spying that sends back user info. I found zero references to Apple iOS for user info that could not be gleaned from the Cellular data carrier!


32 posted on 06/27/2020 11:15:44 PM PDT by Swordmaker (My pistol self-identifies as an iPad, so you must accept it in gun-free zones, you hoplophobe bigotu)
[ Post Reply | Private Reply | To 30 | View Replies]

To: Swordmaker

Thanks for the research on this. Never heard of TT until recently.


33 posted on 06/27/2020 11:30:55 PM PDT by The Westerner (Protect the most vulnerable: get the government out of medicine, education and forests!)
[ Post Reply | Private Reply | To 32 | View Replies]

To: Zhang Fei
What’s your take on this? Overhyped or genuine risk?

FUD. See my response above in replies 30, 31, and 32.

34 posted on 06/28/2020 12:12:07 AM PDT by Swordmaker (My pistol self-identifies as an iPad, so you must accept it in gun-free zones, you hoplophobe bigotu)
[ Post Reply | Private Reply | To 23 | View Replies]

To: Swordmaker

Are you sure about that?


35 posted on 06/28/2020 3:07:09 AM PDT by Biggirl ("One Lord, one faith, one baptism" - Ephesians 4:5)
[ Post Reply | Private Reply | To 30 | View Replies]

To: WellyP

Is Tick-tok trying to replace YouTube?


36 posted on 06/28/2020 3:16:26 AM PDT by Biggirl ("One Lord, one faith, one baptism" - Ephesians 4:5)
[ Post Reply | Private Reply | To 7 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-36 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson