Keyboard Shortcuts

Keyboard shortcuts are available for common actions and site navigation.

Skip to content
  • Home Home Home, current page.
  • About
  • Have an account? Log in
SwiftOnSecurity's profile
SwiftOnSecurity
SwiftOnSecurity
SwiftOnSecurity
@SwiftOnSecurity

Tweets

SwiftOnSecurity

@SwiftOnSecurity

Systems security, industrial safety, author http://DecentSecurity.com  + http://GotPhish.com , write SciFi, sysadmin, & use Oxford commas. they/them/tay

Cyber, USA
decentsecurity.com
Joined April 2014

Tweets

  • © 2019 Twitter
  • About
  • Help Center
  • Terms
  • Privacy policy
  • Cookies
  • Ads info
  1. SwiftOnSecurity‏ @SwiftOnSecurity Dec 15

    SwiftOnSecurity Retweeted Till Kottmann

    This is basically the information exfiltration behavior of advanced malwarehttps://twitter.com/deletescape/status/1205101852053983232…

    SwiftOnSecurity added,

    Till Kottmann @deletescape
    lol, bytedance is so greedy for data. tiktok is actively working around dns based blocking and various other filtering techniques. 1. if a telemetry domain doesn't resolve, they use google dns (via doh…
    Show this thread
    2 replies 65 retweets 172 likes
    Show this thread
    SwiftOnSecurity‏ @SwiftOnSecurity

    When you attempt to tweet from TikTok, instead of using the built-in iOS tweet function like every app, they forward you to this page. In theory they can do and see anything you do, minus Direct Messages. You don’t need these permissions even to automatically tweet new videos.pic.twitter.com/9AfxPrTEZi

    11:13 PM - 15 Dec 2019
    • 72 Retweets
    • 148 Likes
    • Kevin Dice John D Pell wbtsec Johnny, la gente está muy loca! tumnasgt Fennell McCormack Sanjay Nayak 🛡🌻 8 maids are milky Honey
    11 replies 72 retweets 148 likes
      1. New conversation
      2. Sleeping Giants‏Verified account @slpng_giants Dec 15
        Replying to @SwiftOnSecurity

        What happened to the first tweet of this thread. Summed it up really well.

        2 replies 0 retweets 0 likes
      3. SwiftOnSecurity‏ @SwiftOnSecurity Dec 15
        Replying to

        I’m sorry, although it was a real risk since they technically have the permission, I felt it better to let people draw their own conclusions. I’m a coward.

        2 replies 0 retweets 9 likes
      4. 1 more reply
      1. New conversation
      2. Robby Delaware‏ @RobbyDelaware Dec 16
        Replying to @SwiftOnSecurity

        Robby Delaware Retweeted Robby Delaware

        It used to be actually worse: https://twitter.com/robbydelaware/status/1150685966279020544 … This was from over the Summer

        Robby Delaware added,

        Robby Delaware @RobbyDelaware
        Other than in order to surreptitiously collect sexting pics from users, is their any other reason why an app like TikTok should request full DM access from users? pic.twitter.com/Yj0TAkIvPQ
        Show this thread
        1 reply 31 retweets 46 likes
      3. 1 more reply
      1. Dean Rosolen‏ @PalZer0 Dec 15
        Replying to @SwiftOnSecurity

        Wonder how it works on Android.

        0 replies 0 retweets 0 likes
      1. Pedro Silva‏ @Saeraphin Dec 15
        Replying to @SwiftOnSecurity

        Why was the first tweet of the thread deleted? 🧐

        0 replies 0 retweets 0 likes
      1. Nathan McNulty‏ @NathanMcNulty Dec 15
        Replying to @SwiftOnSecurity

        So they can use you as a bot and censor what you see. Excellent! I hate OAuth...

        0 replies 0 retweets 0 likes
      1. Roger Keaton‏ @rogerkeatonseo Dec 16
        Replying to @SwiftOnSecurity

        Glad I didn’t link my socials to TikTok

        0 replies 0 retweets 0 likes
      1. Michael Ledford‏ @mledford Dec 16
        Replying to @SwiftOnSecurity

        There is no longer a “built-in iOS tweet function”. https://www.imore.com/twitter-and-facebook-are-no-longer-integrated-ios-11 … It’s not clear if they could limit their access however.

        0 replies 0 retweets 0 likes
      1. New conversation
      2. Thor’s Cousin.‏ @GeoffUtley Dec 16
        Replying to @SwiftOnSecurity

        Fuck TikTok. If I want someone spying on me I’ll stick with the NSA, Facebook, Instagram, Snapchat, Twitter, Google, Amazon, Apple, PornH, oops.

        1 reply 0 retweets 0 likes
      3. Mumma Bear‏ @MummaBear Dec 16
        Replying to

        Failing that The NSA ask GCHQ.

        0 replies 0 retweets 0 likes
      4. End of conversation
      • © 2019 Twitter
      • About
      • Help Center
      • Terms
      • Privacy policy
      • Cookies
      • Ads info