BOOK THIS SPACE FOR AD
ARTICLE ADFree Article LInk
Read more → Here
Microsoft discovered a high-severity vulnerability in the TikTok Android app, which could have allowed attackers to hijack user accounts with a single click ⚠️. This flaw, if exploited, could let an attacker take full control of a victim’s account without their knowledge. Fortunately, TikTok quickly patched the issue, and no active exploitation was found.
1️⃣ The vulnerability bypassed deeplink verification in the TikTok app. 2️⃣ Attackers could force the app to load a malicious URL inside the app’s WebView. 3️⃣ Through JavaScript bridges, the attacker could gain access to TikTok’s internal functionalities. 4️⃣ A victim only needed to click a specially crafted link for…