TikTok mitigates malware attacks targeting high-profile accounts
Illustration: Aïda Amer/Axios TikTok says it has fixed a vulnerability that led to a rare type of cyberattack this week. Why it matters: Hackers sent a private, malware-laced message to users that took over their accounts as soon as the message was opened.
  • TikTok confirmed to Axios that the unidentified hackers were able to take over CNN's account.
  • Reports suggest that they also attempted to hijack Paris Hilton's TikTok account.
Threat level: It remains unclear who is behind the attack and what vulnerability the hackers exploited — but this type of attack is extremely rare and likely won't impact the average user. Driving the news: Semafor first reported the CNN account takeover, and Forbes reported Tuesday on the use of zero-click malware.
  • A TikTok spokesperson added that the company is actively working with affected account owners to restore their access.
Between the lines: The TikTok accounts look a lot like zero-click spyware attacks that target high-profile government officials, political activists and journalists.
  • However, the end result is different: In spyware attacks, the goal is to track users' phone calls, text messages and other activities.
  • In the TikTok case, the goal was to completely take over the account.
Zoom in: It's possible the vulnerability affected how content is loaded in direct messages, Malwarebytes security researcher Pieter Arntz noted.
  • Microsoft identified a vulnerability in TikTok's Android app in 2022 that could lead to one-click account hijacking — and TikTok released a fix to that flaw before it was disclosed.
文章来源:Axios

TKFFF公众号

扫码关注领【TK运营地图】

TKFFF合作,请扫码联系!

文章来源: 文章该内容为作者观点,TKFFF仅提供信息存储空间服务,不代表TKFFF的观点或立场。版权归原作者所有,未经允许不得转载。对于因本网站图片、内容所引起的纠纷、损失等,TKFFF均不承担侵权行为的连带责任。如发现本站文章存在版权问题,请联系:1280199022@qq.com
文章标签:
跨境资讯外网TK资讯外网资讯
分享给好友:
TKFFF
已认证
0
粉丝数
0
文章数
TKFFF(TK发发发)是为全球TT卖家提供TIKTOK运营所需各种资源的综合性门户网站。网站涵盖TK工具、头条、论坛、社群、活动、人脉、货盘、教学等必备资源。
加微信
导航
资讯
活动