Hack Any TikTok Account by SMS

Researchers Demonstrate How to Hack Any TikTok Account by Sending SMS

TikTok is the most downloaded app of the year 2019. TikTok is famous for creating short videos films. TikTok has Millions of user download it is a Chinese viral video-sharing app.

Researchers have found that the app contained potentially dangerous vulnerabilities that could have allowed remote attackers to hijack any user account just by knowing the mobile number of targeted victims.

Cyber-security researchers at Check Point revealed that chaining multiple vulnerabilities allowed them to remotely execute malicious code and perform unwanted actions on behalf of the victims without their consent.

The reported vulnerabilities include low severity issues like SMS link spoofing, open redirection, and cross-site scripting (XSS) that when combined could allow a remote attacker to perform high impact attacks, including:

  1. delete any videos from victims' TikTok profile,
  2. upload unauthorized videos to victims' TikTok profile,
  3. make private "hidden" videos public,
  4. reveal personal information saved on the account, such as private addresses and emails.
Watch a Demonstrated video here:

Comments

Popular posts from this blog

CAREER TECHNOLOGY CYBER SECURITY INDIA PVT LTD.

Cyber Security Audits

Some Dark web Links