TikTok’s in-app browser on iOS includes code that can monitor your keystrokes and taps
TikTokmay be monitoring all keyboard inputs and taps via its in-app browser, researcher claims.
- TikTok’s in-app browser poses vulnerabilities to sensitive information such as passwords, and credit card information.
- The research was conducted by an independent cyber-security researcher.
AdvertisementChinese short-form video app TikTok may be monitoring all keyboard inputs and taps via its in-app browser on iOS, an independent cyber-security researcher has warned.
Felix Krause, Founder of Fastlane which was acquired by Google, said that when the user opens any link on the TikTok iOS app, it's opened inside their in-app browser.
"While you are interacting with the website, TikTok subscribes to all keyboard inputs (including passwords, credit card information, etc.) and every tap on the screen, like which buttons and links you click," Krause claimed in a blog post on Thursday.
TikTok iOS subscribes to every keystroke (text inputs) happening on third-party websites rendered inside the
"This can include passwords, credit card information and other sensitive user data," Krause added.
From a technical perspective, this is the equivalent of installing a keylogger on third-party websites.
The company confirmed those features exist in the code but said it is not using them on its in-app browser on iOS app.
According to the researcher, it proves that "TikTok injects code into third party websites through their in-app browsers that behaves like a keylogger. However, claims it's not being used".
"This was an active choice the company made. This is a non-trivial engineering task. This does not happen by mistake or randomly," he mentioned.
BeReal is a photo-sharing app that wants you to be who you are as it only allows posting unfiltered photos
Mahindra Scorpio Classic vs Mahindra Scorpio-N: Price, variants, and features compared
Popular on BI
- Which countries are most affected by severe seismic activity? New earthquake metric provides fresh perspective
- Exicom Tele-Systems to raise ₹429 cr via IPO; sets price band at ₹135-142/share
- Kawasaki Ninja 500 sports bike launched in India at ₹5.24 lakh
- Vodafone Idea board to meet on Feb 27 to consider fundraising proposal
- Stocks rebound: Sensex jumps over 500 points, Nifty hits fresh high