Radio&Music
  • News
  • News Releases
  • Music
  • Singer
  • Press Releases
  • Radio
  • Biz
No Result
View All Result
  • Entertainment
  • Bollywood
  • Gadgets
  • Biz Radio
Radio&Music
  • News
  • News Releases
  • Music
  • Singer
  • Press Releases
  • Radio
  • Biz
No Result
View All Result
Radio&Music

A flaw found on TikTok could leave hackers upload videos on your account

RnMTeam by RnMTeam
April 16, 2020
in Biz, biz_music, Google Play, music, Music Services, News, TikTok
0 0
A A
A flaw  found on TikTok could leave hackers upload videos on your account
Share on FacebookShare on Twitter

MUMBAI: TikTok, most popular short video app has been called out by two developers who claim that the company uses an insecure network to deliver bulk of the data, thereby, risking the privacy of the users on its platform. According to the two iOS developers, TikTok allegedly uses “insecure HTTP to download media content,” that “puts user privacy at risk” since unencrypted HTTP traffic can be easily tracked and even altered by malicious actors. This means users’ data including their watch history can be accessed by hackers. Meanwhile, TikTok is yet to respond to the ‘security threat’ exposed by the developers. The company’s app recently surpassed one billion installs on the Google Play Store.

The developers, Talal Haj Bakry and Tommy Mysk, in a blog post, highlighted that due to usage of insecure HTTP, hackers can also “switch videos published by TikTok users with different ones, including those from verified accounts.” The duo further claimed this vulnerability can also expose user’s watch history.

While explaining why the security threat exists, the developers in the blog post stated that TikTok like another social media outlet relies on external servers or Content Delivery Networks (CDNs) to deliver bulk of its data. The post added that TikTok’s CDN further chooses to transfer videos and other media data over unencrypted HTTP.

Related Post

Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

October 6, 2025
A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

October 6, 2025
Gajendra Verma drops soul-stirring ballad ‘Waade’: A promise of love, longing, and heartbreak

Gajendra Verma drops soul-stirring ballad ‘Waade’: A promise of love, longing, and heartbreak

October 6, 2025
Almost Monday returns with new single and video ‘Lost’ out October 3

Almost Monday returns with new single and video ‘Lost’ out October 3

October 3, 2025

“While this [HTTP] improves the performance of data transfer, it puts user privacy at risk. HTTP traffic can be easily tracked, and even altered by malicious actors,” the developers wrote.

“TikTok is committed to protecting user data. Like many organizations, we encourage responsible security researchers to privately disclose zero-day vulnerabilities to us,” Luke Deshotels of TikTok’s security team said in a statement. “Before public disclosure, CheckPoint agreed that all reported issues were patched in the latest version of our app. We hope that this successful resolution will encourage future collaboration with security researchers.”

This essentially means that anyone who can see the network traffic passing through a Wi-Fi router could read information coming from TikTok’s servers and modify it by even planting a fake video in an account without user’s knowledge.

According to the blog post, files such as “videos, profile photos, and video still images” are transferred via HTTP, indicating they are at risk of being accessed by hackers. To further showcase the vulnerability of the TikTok app, Bakry and Mysk posted videos on their blog where they intercepted the data from CDN servers and replaced with “malicious content”. The video, therefore, showed fake COVID-19 related content on WHO’s TikTok account, which was planted by them.

“We successfully intercepted TikTok traffic and fooled the app to show our own videos as if they were published by popular and verified accounts. This makes a perfect tool for those who relentlessly try to pollute the Internet with misleading facts,” the developers said.

However, the duo cautioned that this “malicious content” was only seen by those who were connected to their servers. The developers indicated that exposed threat, when replicated on a large scale server, can post greater privacy or fake-news related risks. They further added the vulnerability is present on TikTok’s iOS version 15.5.6 and Android version 15.7.4.

Meanwhile, TikTok is yet to address the concerns raised by the two developers. TikTok recently surpassed a billion downloads on Google Play. This was amid lockdowns in several countries to curb the spread of novel coronavirus.

Tags: Bizbiz_musicGoogle PlaymusicMusic ServicesNewsTikTok
RnMTeam

RnMTeam

Related Posts

Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music
music

Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

by RnMTeam
October 6, 2025
A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma
music

A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

by RnMTeam
October 6, 2025
Gajendra Verma drops soul-stirring ballad ‘Waade’: A promise of love, longing, and heartbreak
Gajendra Verma

Gajendra Verma drops soul-stirring ballad ‘Waade’: A promise of love, longing, and heartbreak

by RnMTeam
October 6, 2025
Next Post
‘Stay positive and motivated’; says Tuhin Mehta to the audience

'Stay positive and motivated'; says Tuhin Mehta to the audience

How to Choose the Right Name for Your Business

How to Choose the Right Name for Your Business

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest
Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

October 6, 2025
AR Rahman mourns old friend, guitarist John Anthony’s death

AR Rahman mourns old friend, guitarist John Anthony’s death

January 21, 2019
Indian Idol Season returns with a new season with the theme – Yaadon Ki Playlist

Indian Idol Season returns with a new season with the theme – Yaadon Ki Playlist

September 29, 2025
A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

October 6, 2025

Just Talk

0

Special Report

0

Editorial Page

0

News

0
Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music

October 6, 2025
A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma

October 6, 2025
Gajendra Verma drops soul-stirring ballad ‘Waade’: A promise of love, longing, and heartbreak

Gajendra Verma drops soul-stirring ballad ‘Waade’: A promise of love, longing, and heartbreak

October 6, 2025
Almost Monday returns with new single and video ‘Lost’ out October 3

Almost Monday returns with new single and video ‘Lost’ out October 3

October 3, 2025

About

Radioandmusic.com (RnM) is India's first website dedicated to the world of Radio and Music.

  • News
  • News Releases
  • Music
  • Singer
  • Press Releases
  • Radio
  • Biz

Menu

  • Entertainment
  • Bollywood
  • Gadgets
  • Biz Radio

Recent Post

  • Grand Star-Studded launch of Rameez Sohail’s BacXtage Season 1 ‘Duniya Bekaar Hai’ on Desi Tadka Music
  • A grand three-day Indian Classical Music Festival celebrating the birth centenary of Padma Shri Manik Varma
  • Entertainment
  • Bollywood
  • Gadgets
  • Biz Radio

© 2025 RadioandMusic.com. All rights reserved. RNM and all related titles and logos are trademarks of Indiantelevision.com Group.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • News
  • News Releases
  • Music
  • Singer
  • Press Releases
  • Radio
  • Biz

© 2025 RadioandMusic.com. All rights reserved. RNM and all related titles and logos are trademarks of Indiantelevision.com Group.

Go to mobile version