TikTok cyberattack which took down high profile accounts under control
TikTok has issued an update after high-profile accounts worldwide, including that of hotel heiress Paris Hilton, were hacked. See what to do if it happens to you.
Security
Don't miss out on the headlines from Security. Followed categories will be added to My News.
TikTok has booted out the hackers who caused chaos this week after infiltrating the accounts of some of its top users.
Paris Hilton and media outlet CNN were among the accounts impacted by the “zero day” hackers.
A zero day attack is when cybercriminals discover a weakness unbeknownest to its software developers who therefore have “zero days” to prevent the breach.
TikTok said it had officially slammed the door on the hackers on Tuesday.
It is understood Hilton’s account was targeted but not actually hacked.
CNN however, was more severely compromised with hackers able to put malicious code on their main web page.
The number of accounts compromised was “very small” and TikTok has beefed up defences to thwart the method used by the hackers, according to a spokesperson.
“We have taken measures to stop this attack and prevent it from happening in the future,” the spokesperson said in response to an AFP inquiry.
“We’re working directly with affected account owners to restore access, if needed.”
TikTok did not detail the exploit used by attackers, but media reports indicated it involved a direct messaging feature.
The attack on big brand and celebrity accounts by “malicious actors” was brought to TikTok’s attention by CNN, according to the spokesperson.
“We have been collaborating closely with CNN to restore account access and implement enhanced security measures to safeguard their account moving forward,” the spokesperson said.
News site Semafor was the first to report that CNN’s account was compromised last week, forcing the network to suspend its TikTok presence for several days.
According to the TikTok Help Centre, if you suspect your account has been compromised you should both reset your password and remove suspicious devices.
Signs your account has been hacked include a change in your password, phone number or username.
Other clues include videos being posted without your permission and strange messages being sent from your account.