TikTok inserts code that keeps track of your passwords and much more


doujin app

The TikTok app, like many others, has your own internal browser which makes it possible to access web pages with links in the publications of said social network, without having to leave the app itself.

It is recommended not to use the internal browsers of apps such as social networks to access places with a password or make online purchases by entering the credit card number

The goal is to improve the user experience, so what you are not forced to leave the application environmentbut now it has been discovered that this circumstance in the TikTok app can pose a significant risk to its users.

And this because it was discovered that in the code of the internal browser of the TikTok app there are instructions to collect information about everything users type when the internal browser is mentioned is in operation. So any string of text and numbers entered on web pages visited from that browser would be tracked by TikTok. And this can include logging about passwords or credit card numbers.

In fact, through Javascript tweaks, the code inserted into TikTok’s internal browser makes it possible to determine the part of the web page that the user presses so that it can be registered if the typed text matches the “Password” field. ” when accessing a platform online or “Verification code” from the credit card when making an online purchase.

This type of action, known as key loggeris common in some malicious web and platforms, and its use has also been detected on online video game platforms. It is based on collecting everything the user types, which, together with the analysis of the areas of the screen or the web where the pointer is touched or activated, makes it possible to distinguish which text strings correspond to usernames, among others, passwords and credit card numbers.

TikTok has acknowledged the presence of said code, but at the same time confirms that this information is not used for malicious purposes, and emphasizes that its sole purpose is to improve the user experience.

In any case, the easiest method to avoid this potential risk is: don’t use that internal browser of the TikTok application, especially if you go to a web page where you have to enter a password, what to say about online purchases in which you have to type the credit card numbers and especially the three-digit verification code .



Source link

Post a Comment

0 Comments