Vulnerabilities in Sogou Keyboard encryption expose keypresses to network eavesdropping.

  • linearchaos@lemmy.world
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    1
    ·
    1 year ago

    Not op, I know for sure that China’s been trying to grab as much intelligence as possible going as far as installing sniffing type software in network controllers and servers, and grabbing keystrokes from a keyboard is absolutely despicable and something they would do to grab more intelligence.

    The thing I have trouble figuring out is why in the hell people would care about TikTok. What signal intelligence is coming from my wife swiping through 14,000 cat and home organization videos.

    Location is turned off The app is sandboxed It’s not allowed to access the camera or the speaker without giving some minor notification that they’re on and people would notice.

    I totally get the China will do bad if they can but I fail to see the ultimate danger of TikTok.

    • SnowdenHeroOfOurTime@unilem.org
      link
      fedilink
      English
      arrow-up
      2
      arrow-down
      3
      ·
      1 year ago

      I don’t know what you mean by sandboxed but I’m pretty sure it cannot be as private as it seems, even if you’re using a VPN. But regardless, 99.99% of tiktok users are not taking steps to protect their data. hundreds of billions of data points that help an authoritarian government know how people think is nothing to shrug at.

      • linearchaos@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        1
        ·
        1 year ago

        Mobile apps aren’t in the wild west anymore. They don’t get access to the other apps and can’t wander around unlimited on your device without clear permission. If you say no location, they don’t get location. It used to be different, but apple and google are on the same page now and they don’t let apps abuse you without clear permission anymore.

        Even pulling your IP and giving them a vague city level location, They’re correlating that with liking 30 second random content videos and music. This isn’t even the level of intelligence you 'd get from FB or Youtube people aren’t searching tictok to see how to use software or edit code or how public infrastructure works. You’re getting organziation, cat videos, kids coming home from the dentist saying crazy things. I just don’t really see it as a big deal.

        • SnowdenHeroOfOurTime@unilem.org
          link
          fedilink
          English
          arrow-up
          1
          arrow-down
          2
          ·
          1 year ago

          you say all this and trillions of dollars still ride on their ability, which we very much knows exists, to stitch together billions of datapoints to know things about their users.