FacebookInstagramTwitterContact

 

Sydney Sweeney Is Unrecognizable With Black Fringe Hair Transformation           >>           Gabrielle Union And Dwyane Wade's 2024 Met Gala Date Night Was A Total Slam Dunk           >>           How to watch NASA's first Boeing Starliner crewed flight launch today           >>           How To Watch Apple's Ipad Launch Event On Tuesday           >>           What To Expect At Google I/O 2024: Gemini, Android 15 And More           >>           Proton's New Password Monitor Update Will Scour The Dark Web On Your Behalf           >>           Manchester United's Fernandes Misses First Club Match In Career Due To Injury           >>           Struggling Udinese Grab Last-Gasp Home Draw Against Napoli           >>           The Incredible New Chapter In Melbourne Derby History           >>           Roque Unhappy With Game Time, Could Leave Barcelona – Agent           >>          

 

SHARE THIS ARTICLE




REACH US


GENERAL INQUIRY

[email protected]

 

ADVERTISING

[email protected]

 

PRESS RELEASE

[email protected]

 

HOTLINE

+673 222-0178 [Office Hour]

+673 223-6740 [Fax]

 



Upcoming Events





Prayer Times


The prayer times for Brunei-Muara and Temburong districts. For Tutong add 1 minute and for Belait add 3 minutes.


Imsak

: 05:01 AM

Subuh

: 05:11 AM

Syuruk

: 06:29 AM

Doha

: 06:51 AM

Zohor

: 12:32 PM

Asar

: 03:44 PM

Maghrib

: 06:32 PM

Isyak

: 07:42 PM

 



The Business Directory


 

 



Security & Privacy


  Home > Security & Privacy


Microsoft Found A Severe One-Click Exploit In Tiktok’s Android App


NurPhoto via Getty Images

 


 September 1st, 2022  |  13:40 PM  |   635 views

ENGADGET.COM

 

Thankfully, TikTok patched the vulnerability.

 

A serious vulnerability found by Microsoft in the TikTok Android app could have allowed hackers to hijack millions of accounts. On Wednesday, the company’s 365 Defender Research Team detailed a one-click exploit it informed TikTok of in February. The good news is that the social media company promptly patched the vulnerability before today’s disclosure and Microsoft says it has no evidence of someone using it out in the wild.

 

“We gave them information about the vulnerability and collaborated to help fix this issue,” Microsoft’s Tanmay Ganacharya told The Verge. “TikTok responded quickly, and we commend the efficient and professional resolution from the security team.”

 

According to Microsoft, the vulnerability involved an oversight with TikTok’s deep linking functionality. On Android, developers can program their apps to handle certain URLs in specific ways. For instance, when you tap on a Twitter embed in Chrome and the Twitter app automatically opens on your phone as a result, that’s an example of the deep linking feature working as intended.

However, Microsoft found a way to bypass the verification process TikTok had in place to restrict deep links from executing certain actions. They then discovered they could use that vulnerability to access all the primary functions of an account, including the ability to post content and message other TikTok users. The flaw was present in both global versions of TikTok’s Android app. The two releases have more than 1.5 billion downloads between them, meaning the potential impact of someone discovering the vulnerability before it was patched could have been massive.

 

Microsoft recommends all TikTok users on Android download the latest version of the app as soon as they can. More broadly, you can protect yourself in the future from similar exploits by not clicking on sketchy links. It’s also good practice to avoid sideloading apps as you don’t know how someone could have altered the APK.

 


 

Source:
courtesy of ENGADGET

by Igor Bonifacic

 

If you have any stories or news that you would like to share with the global online community, please feel free to share it with us by contacting us directly at [email protected]

 

Related News


Lahad Datu Murder: Remand Of 13 Students Extende

 2024-03-30 07:57:54

Lok Sabha Elections 2024: Millions Brave Searing Heat To Vote In India

 2024-05-07 09:03:38

How Quantum Physics Could 'Revolutionise Everything'

 2024-05-07 09:46:30