惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
The GitHub Blog
The GitHub Blog
F
Fortinet All Blogs
Cloudbric
Cloudbric
P
Palo Alto Networks Blog
T
Threatpost
T
Tor Project blog
T
Tenable Blog
AWS News Blog
AWS News Blog
Project Zero
Project Zero
L
LangChain Blog
Cyberwarzone
Cyberwarzone
Engineering at Meta
Engineering at Meta
雷峰网
雷峰网
C
CERT Recently Published Vulnerability Notes
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Security Latest
Security Latest
云风的 BLOG
云风的 BLOG
I
Intezer
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
P
Proofpoint News Feed
A
Arctic Wolf
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Google DeepMind News
Google DeepMind News
V
Vulnerabilities – Threatpost
C
Cybersecurity and Infrastructure Security Agency CISA
MongoDB | Blog
MongoDB | Blog
aimingoo的专栏
aimingoo的专栏
K
Kaspersky official blog
Jina AI
Jina AI
N
News | PayPal Newsroom
T
The Blog of Author Tim Ferriss
D
DataBreaches.Net
A
About on SuperTechFans
博客园 - 三生石上(FineUI控件)
博客园 - 【当耐特】
Hugging Face - Blog
Hugging Face - Blog
Recorded Future
Recorded Future
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
S
Secure Thoughts
TaoSecurity Blog
TaoSecurity Blog
P
Privacy & Cybersecurity Law Blog
P
Proofpoint News Feed
MyScale Blog
MyScale Blog
IT之家
IT之家
Forbes - Security
Forbes - Security
The Hacker News
The Hacker News
Last Week in AI
Last Week in AI
T
Threat Research - Cisco Blogs
Y
Y Combinator Blog

Comments for Hackread – Cybersecurity News, Data Breaches, AI and More

Study Reveals TikTok, Alibaba, Temu Collect Extensive User Data in US Pandora Cyber Attack Exposes Customer Data Via Third-Party Vendor Pandora Cyber Attack Exposes Customer Data Via Third-Party Vendor BADBOX 2.0 Found Preinstalled on Android IoT Devices Worldwide Ex US Soldier Cameron Wagenius Guilty in Telecom Hacking and Extortion FBI Warns of Health Insurance Scam Stealing Personal and Medical Data FBI Seizes Major Sites Sharing Unreleased and Pirated Video Games FBI Warns of Health Insurance Scam Stealing Personal and Medical Data Firefox Tests AI-Powered Perplexity Search Engine Directly in Browser New Malware Spotted Corrupts Its Own Headers to Block Analysis New Malware Spotted Corrupts Its Own Headers to Block Analysis New Malware Spotted Corrupts Its Own Headers to Block Analysis Firefox Tests AI-Powered Perplexity Search Engine Directly in Browser Firefox Tests AI-Powered Perplexity Search Engine Directly in Browser
Study Reveals TikTok, Alibaba, Temu Collect Extensive User Data in US
Deeba Ahmed · 2025-08-26 · via Comments for Hackread – Cybersecurity News, Data Breaches, AI and More

A new study by the data privacy firm Incogni, shared with Hackread.com, has revealed that a majority of the most-downloaded foreign apps in the US are still aggressively collecting and sharing user data.

The research focused on the ten most popular applications from outside the country and found that over half of them are owned by Chinese companies.

The study, published on August 26, 2025, shows just how dominant these apps have become. According to the findings, the apps studied have been downloaded an estimated 1 billion times in the US, and 755 million of those downloads are from Chinese-owned apps alone.

Incogni’s researchers found that Chinese apps are particularly “data-hungry.” On average, they collect 18 different types of data from each American user and share around six of those data types with other companies.

TikTok, Alibaba, Temu and More…

The report highlights TikTok as the biggest concern, as it was found to collect 24 types of data, including sensitive information like users’ names, home addresses, and phone numbers.

Other popular apps also showed concerning practices. The e-commerce giant Alibaba can access user photos, videos, and documents, while Temu collects location data and a list of installed apps.

Shein was noted for a different, yet equally alarming, pattern, sharing an astonishing 12 of the 17 types of data it collects. Other apps, including AliExpress and the Cyprus-based app ABPV, also share users’ approximate locations.

The study also included DramaBox, Telegram, and Talkie, with most apps in the top 10 collecting an average of 15 data types and sharing 5 of those types. The graph below provides a visual breakdown of the data types collected and shared by the most popular foreign apps.

As evident, Alibaba, AliExpress, and ABPV (America’s best pics, vids) collect or share a user’s approximate and precise location. Similarly, AliExpress and DramaBox, collect purchase history, and both Alibaba and Shein collect and share users’ email addresses and names for advertising.

Incogni Study: TikTok, Temu & Shein Aggressively Collect Americans’ Data
Source: Incogni

Targeted Advertising

The report also explains that this data is often used for targeted advertising. Companies use this information to create detailed profiles of users to influence their buying habits, and in some cases, even personalize prices, which is a major departure from the standard pricing models most people are used to. These apps can even share user emails with third parties, contributing to a rise in unwanted spam.

“Many of these apps are quietly collecting and sharing personal information like names, addresses, and approximate locations, leaving users extremely vulnerable to third-party breaches,” Incogni’s Head, Darius Belejevas. “People deserve to know how and where their information is being used, along with ways to manage or prevent that use,” Belejevas argued.

The study warns that this widespread data collection is not just a privacy issue but also a national security risk, as some foreign governments have been linked to similar data thefts in the past.