• Log In
  • Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar

Ethical Hacking

Wade Mackey

Ethical Hacking

MIS 5211.702 ■ Fall 2020 ■ Wade Mackey
  • Home
  • About
  • Syllabus
  • Gradebook

Week 5 – In the News: You can bypass TikTok’s MFA by logging in via a browser

September 26, 2020 by Anthony Messina Leave a Comment

One month after TikTok implemented MFA for its users, it was discovered that the feature was only enabled for the mobile app and not the website.  This lapse in TikTok’s new security feature would allow attackers to bypass MFA by logging into an account with compromised credentials via its website.  Luckily there is not much an attacker can do to a compromised account when logging into TikTok via the website.  The website dashboard does not allow passwords to be reset.  However, an attacker could still deface an account by uploading and posting videos in an attempt to deface the account.  Another flaw found in TikTok’s platform was that the mobile app does not show sessions taking place in real-time from the web dashboard.  This means that TikTok does not warn users when someone used their credentials to access their TikTok account via a web browser.

 

https://www.zdnet.com/article/you-can-bypass-tiktoks-mfa-by-logging-in-via-a-browser/

Filed Under: Week 05: Metasploit Tagged With:

Reader Interactions

Leave a Reply Cancel reply

You must be logged in to post a comment.

Primary Sidebar

Weekly Discussions

  • Uncategorized (46)
  • Week 01: Overview (3)
  • Week 02: TCP/IP and Network Architecture (6)
  • Week 03: Reconnaisance (5)
  • Week 04: Network Mapping and Vulnerability Scanning (11)
  • Week 05: Metasploit (10)
  • Week 06: More Metasploit (4)
  • Week 07: Social Engineering (7)
  • Week 08: Malware (6)
  • Week 09: Web Application Hacking (7)
  • Week 10: SecuritySheperd (6)
  • Week 11: Intro to Dark Web and Intro to Cloud (4)
  • Week 12: Introduction to Wireless Security with WEP and WPA2 PSK (7)
  • Week 13: WPA2 Enterprise and Beyond WiFi (3)
  • Week 14: Jack the Ripper, Cain and Able, and Ettercap (4)

Copyright © 2025 · Course News Pro on Genesis Framework · WordPress · Log in