TikTok's invasive Privacy Policy - 2026-01-26

January 28
1h 3m

Episode Description

🧦 SOC Summit 2026
https://www.antisyphontraining.com/event/soc-summit/


Join us LIVE on Mondays, 4:30pm EST.
A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.
https://www.youtube.com/@BlackHillsInformationSecurity

Chat with us on Discord! -
https://discord.gg/bhis
🔴live-chat


In this episode, the hosts break down TikTok’s latest privacy policy and why it’s raising serious red flags. They discuss how the app expands data collection and tracking, what that means for user privacy, and the broader security implications—especially concerns around data access and China. Along the way, the conversation connects these changes to ongoing TikTok ban discussions, real-world risk for individuals and organizations, and what users should consider if they continue using the platform. The episode mixes technical insight with practical takeaways, making the privacy risks easy to understand without losing nuance.

Chapters:

  • (00:00) - PreShow Banter™ — Electroshock Therapy
  • (02:46) - 2026-01-26
  • (07:51) - Story # 1: Fortinet confirms critical FortiCloud auth bypass not fully patched
  • (14:45) - Story # 2: Hackers exploit critical telnetd auth bypass flaw to get root
  • (17:55) - Story # 3: Clara Hawking’s Post on TikTok's Pivacy Policy
  • (24:23) - Story # 4: Supreme Court to hear Facebook pixel tracking case
  • (31:20) - Story # 5: Google accused of grooming kids after child receives this email
  • (34:56) - Story # 6: House of Lords backs legislation to ban social media for children under 16
  • (36:05) - Story # 6b: Australia has banned social media for kids under 16. How does it work?
  • (42:38) - Story # 7: Why Software Blocks Won’t Stop Illegally 3D Printed Guns (And What Actually Might)
  • (48:47) - Story # 8: 1Password adds pop-up warnings for suspected phishing sites
  • (52:27) - ClawdBot / Moltbot


Links:
Story # 1: Fortinet confirms critical FortiCloud auth bypass not fully patched
Story # 2: Hackers exploit critical telnetd auth bypass flaw to get root
Story # 3: Clara Hawking’s Post on TikTok’s Pivacy Policy
Story # 4: Supreme Court to hear Facebook pixel tracking case
Story # 5: Google accused of grooming kids after child receives this email
Story # 6: House of Lords backs legislation to ban social media for children under 16
Story # 6b: Australia has banned social media for kids under 16. How does it work?
Story # 7: Why Software Blocks Won’t Stop Illegally 3D Printed Guns (And What Actually Might)
Story # 8: 1Password adds pop-up warnings for suspected phishing sites
ClawdBot / Moltbot
Troy’s Workshop
ANTI-CAST: Effective AI for Practical SecOps Workflows w/ Hayden Covington

🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits 

https://poweredbybhis.com


Brought to you by:

Black Hills Information Security 

https://www.blackhillsinfosec.com


Antisyphon Training

https://www.antisyphontraining.com/


Active Countermeasures

https://www.activecountermeasures.com


Wild West Hackin Fest

https://wildwesthackinfest.com

See all episodes

Never lose your place, on any device

Create a free account to sync, back up, and get personal recommendations.