惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
G
Google Developers Blog
S
SegmentFault 最新的问题
Microsoft Security Blog
Microsoft Security Blog
J
Java Code Geeks
罗磊的独立博客
H
Hackread – Cybersecurity News, Data Breaches, AI and More
量子位
P
Proofpoint News Feed
博客园 - 【当耐特】
MongoDB | Blog
MongoDB | Blog
L
LangChain Blog
F
Fortinet All Blogs
C
Check Point Blog
博客园_首页
I
InfoQ
Jina AI
Jina AI
Blog — PlanetScale
Blog — PlanetScale
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
酷 壳 – CoolShell
酷 壳 – CoolShell
Engineering at Meta
Engineering at Meta
美团技术团队
Vercel News
Vercel News
Apple Machine Learning Research
Apple Machine Learning Research

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
TikTok Breach - Under the Spotlight | iubenda
2022-09-07 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

As it protects the personal data of over a billion users, TikTok, the short-video phenomenon that ranks among the most downloaded applications worldwide, is coming under growing scrutiny over its data security.

TikTok Breach

On Monday, a number of cybersecurity experts tweeted about the alleged discovery of a server breach that gave access to TikTok’s storage which they believe held personal user information. Only a few days prior, Microsoft Corp. reported discovering a “high-severity vulnerability” in the Android version of TikTok that “would have allowed attackers to compromise users’ accounts with a single click.”

TikTok now ranks as many young people’s favorite app after surpassing a billion monthly users a year ago. That makes it a tempting target for hackers who might try to take over well-known accounts or sell private information. The Trump administration classified it as a privacy issue in 2020. It was almost outlawed due to worries about possible connections between its Beijing-based parent firm and the Chinese government.

TikTok denied the allegations of a breach that was found over the weekend. A representative stated, “Our security team investigated into this statement and determined that the in question code is completely unrelated to TikTok’s backend source code.”

An Australian online security expert named Troy Hunt looked over a few of the data samples contained in the stolen documents and discovered matches between user profiles and videos uploaded under those IDs. However, part of the information uploaded was ‘“publicly accessible data that could have been constructed without breach.”

The vulnerability discovered by Microsoft is a more specific problem that might have affected Android-powered mobile devices. According to Dimitrios Valsamaras of the Microsoft 365 Defender Research Team, it might have enabled attackers to access and change “TikTok profiles and sensitive information, such as by publishing private videos, sending messages, and posting videos on behalf of users.”

According to a TikTok spokeswoman, the business addressed the security flaw after swiftly responding to Microsoft’s findings.

Even if the problems are minor or inconclusive, TikTok and its parent company will be the subject of great attention at a time when the US may intensify its measures against companies with ties to China.