Amazon says email banning TikTok from employee phones was ‘sent in error’
twitter.com
twitter.com
https://www.theverge.com/2020/7/10/21320196/amazon-employees...
https://www.nytimes.com/2020/07/10/technology/tiktok-amazon-...
1. Devices owned by Amazon, for work
2. Personal devices with the amazon email added directly
3. Personal devices with amazon email added on Work profile
Could not find this info in the articles or tweet.
My assumption was that any apps installed on the personal partition were off limit for the MDM.
A lot of them do not block apps (or remove them).
Of course most companies provide phones, but many users prefer to use their own, both for the benefit of having to carry only one, and because they have more choice.
Another big benefit of work profile is that you can switch all work stuff and notifications off with one click! I really like it overall, it gives great separation.
https://variety.com/2020/digital/news/amazon-bans-tiktok-emp...
Sounds more like 'pulled after huge feedback'.
Though personally I'd agree with this decision. TikTok seems to be a particularly bad apple: https://www.reddit.com/r/videos/comments/fxgi06/not_new_news...
If you’re using a password-manager (like we’re supposed to!) and use it to copy passwords (say, your Amazon employee internal credentials...) while you have TikTok open, the TikTok app would see it and could upload it somewhere.
...and we only know about this issue now because iOS 14 adds clipboard snooping notifications - and that was only a month ago! Think about the stuff that the app could be doing that we don’t yet know about.
There’s too many bloody-obvious security vulnerabilities that are decades old but don’t get fixed until they either become a meme (like SQL Injection) or the platform vendor does something about it (iOS 14 clipboard notifications) - and don’t forget that the SIGINT community is sitting on millions of dollars worth of zero-days that they won’t disclose to vendors unless they feel like it - so I fully expect there to be more surprises in TikTok - and other apps - in the years to come - probably indefinitely.
Your password should never be in your clipboard at least with iOS. If you’re using either the native password manager or a third party password manager, the password manager is directly integrated with the keyboard and would auto fill into your app.
https://techcrunch.com/2018/06/05/password-autofill-in-ios-1...
Not trying to derail this via whataboutism, I just feel like the core HN ethos is lost when we mindlessly repeat the obvious geopolitically-driven narrative here without any critical thinking.
What I definitely do understand is Amazon's concerns with just the base level of data collection that's seemingly the norm in our industry. Which prompts the quesiton, why are we comfortable as a society with this sort of collection, by anyone?
[1] https://www.businessinsider.com/apple-ios-14-catches-reddit-...
The other is the way they hide what they're doing so elaborately.
I wouldn't call it a national security concern, no. Someone who works with critical or military infrastructure should have a locked-down phone anyway for work stuff.
But really I wonder how this kind of stuff is OK in the eyes of Apple with their self-proclaimed privacy focus. I'm pretty sure if I were to submit an app that does all this, it'll be rejected right away. Popularity seems to overrule that.
I suspect you’re right and would be very interested in the results of this experiment if you (or anyone else) happen to undertake it.
We found out other apps too (like LinkedIn) constantly check the clipboard, and one HN commenter here said it was due to a text editing library, nothing intentional.
Literally the only fact is that it's a Chinese company.
And it's not like there's even much it seems like they could do, with how sandboxed phone apps are. I'm not saying iOS or Android are perfectly secure, but it't totally different from installing something on your desktop with root permissions.
Either it's just generic hate for China that's bizarrely gone viral, or else it's a story intentionally being pushed by the US government for god-only-knows what political reason, like leverage in trade negotiations or something.
But it's completely weird, and nobody should be taking it at face value.
https://penetrum.com/tiktok/Penetrum_TikTok_Security_Analysi...
https://penetrum.com/tiktok/tiktok_15.2.3_static_analysis.pd...
Things they found - Excessive data collection - Privacy policies that allow distribution of said data - Execution of OS commands - Insecure cryptography usage - Potential SQL injection code from user defined variables - Storing of API tokens - Webview enabled by default along with insecure webview enabled
https://penetrum.com/tiktok/Penetrum_TikTok_Security_Analysi...
https://penetrum.com/tiktok/tiktok_15.2.3_static_analysis.pd...
Things they found - Excessive data collection - Privacy policies that allow distribution of said data - Execution of OS commands - Insecure cryptography usage - Potential SQL injection code from user defined variables - Storing of API tokens - Webview enabled by default along with insecure webview enabled - App copies data to clipboard. Sensitive data should not be copied to clipboard as other applications can access it. - Files may contain hardcoded informations like usernames, passwords, keys etc.
I suspect Amazon realized late what a legal mess it is to ban an app on their employee's cell phone when they have no clear legal basis or governmental guidance. They banned employee using Huawei phones when I was working there, for some things -- don't remember exactly. But in that case, US government already banned it for its employees, so there is precedence Amazon can claim as legal basis.
Amazon probably decided most employees don't have anything too sensitive and it's not worth buying everyone a phone.
Unfortunately, middle managers gotta middle manage. And they don't get the adrenaline rush of having people under them unless they can tabulate those people.
Which is why a lowly web dev like myself is expected to carry around a company-issued phone even in my off hours. In four years I've never needed it.
Are there any pager networks left in the US? I've always been interested in them out of historical curiosity because I was too young to use them when they were actually a thing, but from what I understood, pagers are pretty much not a thing anymore.
I imagine pagers are probably used in highly secure communications (military, statecraft), because the thing being paged doesn’t have to give away it’s location, or even the fact that it received the message.
* the paging app * sms-based text * phone call
as well as what order and with what delay you want them to attempt to engage you. iirc you need at least two options such that in the event of an issue with one network/application they have an alternative means of potentially reaching you.
https://www.businessinsider.com/jeff-bezos-phone-hacked-saud...
Don’t blame them, they don’t want the kind of leaks that happened last cycle.
https://www.okta.com/blog/2020/04/what-the-jeff-bezos-whatsa...
I know that if you craft your buffer overflow just right it will overwrite other parts of memory with the new function.
But how do you know what parts will get overwritten?
Does that mean the new function can do almost anything?
The article has some detail about the remote code execution part of this exploit.
“What this means is that there was a software flaw in the WhatsApp code for handling MP4 media files. If an attacker triggered the flaw, the function in question would crash in a way that could allow a potential attacker to gain “RCE” or Remote Code Execution.
In layman's terms, this means the attacker could inject his own code into the application and, by triggering the flaw, make the application to run with all the privileges and access of the WhatsApp application itself.”
https://stackoverflow.com/questions/14760587/how-does-a-nop-...
https://stackoverflow.com/questions/49620893/return-into-lib...
And yes, arbitrary code execution is a common goal of these exploits, though it may not always be possible--sometimes you only get a DoS attack or such.
Parsing is hard, and parsers are buggy and lead to all kind of unsafe C code
https://github.com/ddz/whatsapp-media-decrypt
They never responded with an actual malware analysis on the file they claimed might be responsible.
The only evidence left after that was a claim of higher data usage which has to be weighed against the alternate explanation for how this got out:
https://www.forbes.com/sites/martingiles/2020/01/24/report-b...
if I were a billionaire I'd basically not stop until I got to the bottom of this one. everyone is vulnerable.
> Be kind. Don't be snarky...Comments should get more thoughtful and substantive, not less, as a topic gets more divisive.
> Please respond to the strongest plausible interpretation of what someone says, not a weaker one that's easier to criticize. Assume good faith.
It's not an accident that one of the stupidest, most theocratic countries in the middle east receives the most weapons and support from the USA.
We don't want a strong middle east. This is why countries like Iran, Lebanon, Syria are labelled as "terrorist".
Your link says
>Bezos' phone appeared to be infiltrated after he opened a video file sent from the crown prince's number on WhatsApp.
I know there's plenty of political implications and a lot of discussion here is on that (which is interesting in its own right), but I wonder if there's opportunity here for a potential competitor.
But if the Chinese government wants to prop up TikTok and pick them as the winner, they can.
Although it seems the online records are disappearing fast. I could not find a good source of the TikTok history and key figures any more...
The best thing those old men could do is legislate system level privacy protections onto IOS and Android so an app can never get the level of info they're worried about.
I'm not going to get into whether or not this actually makes sense, but he is a massive celebrity among young millennials/gen-z.
If your entire worldview is ageist, works strictly on stereotypes, and encompasses only the United States, that might be true. But there are companies, organizations, and governments around the world locking out TikTok.
Tiktok is not some extra special danger, except to those who have extra fear of a Chinese owned company. India has banned Tiktok, around the same time they've had border skirmishes with China and are running a big nationalist government.
In my opinion, are still "evil" in terms of hijacking our brain, but I am a bit fed up with those prevailing political prejudice nowadays for anything related to China.
https://www.reddit.com/r/videos/comments/fxgi06/not_new_news...
TikTok is really exceptionally bad in this regard.
Are you referencing something specific?
>
Vine was 6 second long video clips. Comparing Vine to TikTok is somewhat like comparing TikTok to YouTube videos. They are different.
Lot of TikTok popularity has come from offering songs/lip syncing functionality (done better by their acquisition of musica.ly). That wouldn't have worked on 6 second Vines.
As an aside, it's insane to me that the differentiating feature of an entirely new video hosting platform can simply be the length of the content it supports.
The world of tech companies is truly bizarre. Why doesn't Google launch dozens of Youtube variants under their own branding with their own slightly different length restrictions to just dominate the market?
Which is different from ByteDance, which is the company that owns TikTok, for those confused like me.
https://techcrunch.com/2020/07/01/lasso-facebook-tiktok-shut...
It appears to me that TikTok is just a perpetuation of exclusivity in Social Networks (the same way kids exited FB when their parents signed up) ...
Sure its just another algorithmic-based feed. But in my experience (and from talking to a few ppl who enjoy TikTok), the For You page is a differentiator. It's like a combination of what's trending, what's recent (time wise), and what you've spent time interacting (watching, liking, commenting) with previously.
Again all platforms do some form of this, but just saying TikTok does it in a pretty addicting way.
Also combine that with the fact that TikTok videos are so incredibly short that by the time they're over, you haven't even decided whether or not you liked it (no doubt by design), which means you can endlessly consume content.
Also, I've heard that TikTok has better (read: better for comedy-style content) tools to edit videos in the app
surprised there hasn't been any controversy about that - tiktok is a predator's paradise.
The way the discovery tab works also created a meta game: Alt TikTok, Deep TikTok, Elite TikTok, ...
The exclusivity aspect is there too, very few users are over 30, but it's not the driver.
Practically I think it's more diverse content and easier access to other people/fame/glamour for kids than Instagram, Snapchat, or even YouTube/Twitch/etc, since those platforms have been cornered by an existing group of "influencers."
It's probably just a different kind of dopamine hit that kids can't get elsewhere.
While they are still in the App Store
I'm not at all in favor of the US government banning apps unless the US government publicly and transparently shows the proof of security risk first. Anything short of that just appears to be politics and is likely to just be a negotiation tactic.
I prefer more privacy controls and transparency (which gives consumers / Attorneys General the ability to sue the app company), but I don't want my government to see the Chinese government's policies as the thing we need to compete with.
Orkut: stagnated and killed
G+: design by committee as you said
YT: acquired but the social aspects are down the drain
We can complain about FB and Zuckerberg as much as we want but they knew how to evolve the network and keep the users
Edit: Oh, I forgot the one staring me in the face—Youtube! It's no less of a social network than TikTok.
As the follow-up tweet says: "Completely independent of the specifics in this instance: get a second device before installing an employer's config profile on your personal device"
If you, as an employee, don't want to remove TikTok I believe you will have that right, it's just that you won't be able to access company emails from that device.
Now, whether or not that leads to a company phone or you having to look for another job, depends on the individual and how important that individual is to the company.
It falls under the category of providing your own resources to do your job, and that territory enters socioeconomic discrimination territory real quick.
Of course I do have other apps directly related to work... I guess those aren't an issue if I had TikTok?
I'm with you though... If an employer wants to manage my device, they can provide the device.
The first of these could sometimes have implications for ownership of personal projects created using the device, which was one of many reasons I picked the second option, but it was absolutely permitted at least for any case where the company cared about you having mobile account access.
Seriously, they could be logging your exact location, remotely activating the camera or doing any number of disgusting things.
Requiring the use of a spy should not be a factor in an employment setting, of course we're seeing this is the case and it is very offputting.
Thankfully not something I need to worry about though.
> Microsoft does the latter, so it wouldn't surprise me if Amazon does likewise.
Not true (source: current MSFT employee). More detailed explanation below, as neither former nor latter describes MSFT accurately.
So, for most teams and positions (there are many exceptions), you don't get a dedicated work phone. So yeah, if you want to access work stuff on a mobile device, you need to install MSFT MDM on your personal phone, and they will, allegedly, be able to control stuff on it (depending on the device itself and how MDM is configured).
However, there are no requirements to do it. You can simply not install any work-related stuff on your phone, so you won't need an MDM. I simply don't access any work resources on my personal phone. If I need to do work, i open my work laptop. If they want me to use work apps on mobile and be accessible, they should provide a company phone for this.
There have been zero conflicts around it on my end, even after multiple years of working there on multiple different teams. Not once have I even got an implied request from anyone (managers, colleagues, etc.) to be accessible on mobile (except for when I am on-call, but for that, they just need my phone number, not any specific apps installed on my phone, and everyone knows it) or any questions about it. Everyone is totally cool with people not being glued to their work apps on their phones on their own free time.
But you are correct, those who choose to use work apps have to give MDM permissions to their personal devices or buy a dedicated device for that (exceptions apply, because there are some teams that provide dedicated work phones). However, unless it is required for the job to be able to use work apps on your mobile device, I think it is fair if they don't provide a work phone. Makes it easier for me to not check on any work stuff during the weekend.
It turns out that I can use our 2FA app without MDM, on my personal. And nowadays, I rarely use slack or email from mobile, and I don't get calls.
I am pretty strong in the "don't put company stuff on personal devices" camp. Even if they don't control your phone by policy, they do technically. They put root certs on the device, and though they can't see individual app data (depending on config) they can see a list of installed apps, and enforce certain baselines.
I am too. Many years ago at my employer, someone fat-fingered a command and wiped every single iPhone/iPad that an employee had configured to connect the company email system. Even after restoring a backup, the devices would just wipe themselves again unless the owner managed to remove the MDM profile before it reconnected to the internet. A good fraction of my coworkers were affected.
I'm not giving anyone access to do that to my personal data.
After that I've never allowed an employer to control my personal devices. Not that I actually did before, didn't know activating that stuff had so bug implications. I just wanted the calendar on my phone.
For me, it's a minor inconvenience at best, not a death sentence.
This was all much easier in the blackberry days for them to control
And indeed, that was Blackberry's big sales pitch.
BYOD creates many, many wonderful consequences, however it also has tradeoffs, and those tradeoffs are not for the faint-of-security.
He never got one, because as he said, if they have your number they'll call you, if they don't then they'll solve their own problem. Looking back on it now, it was prescient advice.
So what... Sometimes I go to the shop or bank during the day. Or even a walk to the beach if it's not so busy. They're paying me to do a (global) job, not to sit at my desk between 9:00 and 17:00.
Personally I love this flexibility. And I don't feel like I work more than 40 hours, I don't even count them but I doubt I do, especially if I omit the time I spend during "working hours" reading hacker news or other stuff. My work is my hobby anyway.
I do think people who like having fixed work times should have the opportunity to have them. But I also think people like me should be able to work like this without it being considered a bad thing.
If Amazon doesn't provide me a work phone, they can eff right off in attempting to dictate what I put on my phone.
In fact, TikTok explicitly left Hong Kong because if they didn't they would have to share private data with CCP to comply with new laws... they're intentionally leaving MAU on the table to keep their users' data safe. [1]
If you look around, US social companies are making the same mistake with your clipboard data that TikTok did. LinkedIn just got caught reading your clipboard data [2], but we aren't talking about banning them... I would assume in all of these cases, it's just an engineer who accidentally shipped a bug. There are legitimate use cases to read the clipboard (eg. more seamless 2fa).
It feels like the negative reaction to TikTok is so politicized and just comes from a "China bad" attitude.
[1]: https://www.cnn.com/2020/07/07/tech/tiktok-leaving-hong-kong...
This, 100%.
The Chinese government's word is LAW. Just look at how many American tech companies have either a) been kicked out of China for refusing to hand over data to the CCP or given them backdoors or b) started censoring their services to stay in compliance and be allowed to stay in business there.
If the Chinese government wants something from a Chinese business, one of two things happens: 1) they get it (whether you find out about it or not) or 2) the business ceases to exist.
https://rufposten.de/blog/2019/12/05/privacy-analysis-of-tik...
https://docs.google.com/document/d/1QEyWqAiTE_5xzCs_X3tjDCQx...
https://www.reddit.com/r/videos/comments/fxgi06/not_new_news...
https://www.washingtonpost.com/world/tiktoks-owner-is-helpin...
https://www.thetimes.co.uk/article/video-app-linked-to-china...
https://www.wired.com/story/tiktok-is-the-latest-window-into...
https://thehill.com/blogs/congress-blog/politics/478015-exer...
https://www.forbes.com/sites/zakdoffman/2020/06/26/warning-a...
"... the device information, usage time and list of watched videos are being sent to Appsflyer and Facebook."
Hardly a smoking gun. Not only is this standard industry practice but the analytics servers in question here are American. The author says this violates European law (it doesn't). Then they go on to describe device fingerprinting which is also standard practice and has legitimate uses.
The second article's main point is that there are Chinese IP addresses in the APK and the privacy policies of different Chinese companies allow for data sharing.
The author doesn't witness any communication with these IP addresses. There are plenty of non-malicious reasons why a URL or IP address of a different company (Chinese or otherwise) would be in an APK. Maybe there is a library being used or the code in question might not even pertain to non-Chinese region versions. It would be like accusing a website of stealing data because they could use a Google font (interaction with Google IP address) and Google has such and such a privacy policy or history.
The famous Reddit comment which everyone seems to love is clearly fake. The author provided zero evidence when asked, saying that the hard drive on their MacBook failed and it is too difficult to "reverse engineer" the apps again. The accusations and methods are irredeemably vague. If the United States is going to become like China and start banning apps then it shouldn't be over a Reddit comment written by someone whose dog ate their homework.
Is this any less data than is collected by Facebook or Google in their apps/websites?
This seems like mostly an issue with the fact that Android lets apps get at this much data - something that should be fixed at the OS-level. There's very little mention of similar practices/vulnerabilities on iOS.
Suggesting that TikTok is leaving MAU on the table to keep users' data safe is laughable when ByteDance's other Party-controlled app, DouYin, is remaining in Hong Kong with a captive audience (as helpfully confirmed by Global Times [2], a well-known mouthpiece of the Party). To even suggest that it's a sign of good intentions would ignore extremely important current events and ByteDance's self-proclaimed devotion to the Party. As we speak, the Party is aggressively assimilating Hong Kong into the mainland by banning public expressions of dissent, controlling educational curriculum, and yes, good old censorship. Forcing HK residents to use only Party-controlled tools that the rest of the mainland uses, like DouYin made by ByteDance, only serves to further the "work of Party construction".
TikTok is political because it is wholly owned by a self-proclaimed political entity: ByteDance. It's disingenuous to suggest there is no reason to assume malintent when ByteDance has a history of censorship and propaganda in its flagship app: DouYin. Your glib dismissal of "China bad" has no substance behind it, while China's ample human rights and totalitarian abuses speak for themselves. Putting the actions of independent private corporations in a free-speech democracy on the same level as the actions of a publicly-proclaimed ally of an authoritarian human rights abuser is plain nonsense. Context matters.
[1] https://chinamediaproject.org/2018/04/11/tech-shame-in-the-n...
[2] https://twitter.com/globaltimesnews/status/12803650546557911...
There's evidence that Bytedance is not independent of CCP interferences though - such as the CEO's public statement in 2018 where he stated that Bytedance products should support "socialist core values" etc.
https://chinamediaproject.org/2018/04/11/tech-shame-in-the-n...
Kind of goes against current shoe-horned American societal values of "everyone should be respected, regardless of who, what, how, when, where they are"
You're not wrong about TikTok, but 244 years and 6 days seems like a long time to consider a particular set of values "shoe-horned".
Google behaves the same way, even though they have no income from China right now, but I think they are secretly hopefully of dragonfly.
I think enough money can buy silence from a lot of people, plus it's clear google already has the tech, as they show a banner on every thing relating to covid (search results, YouTube) and do a quite impressive job at that. So I guess they can just tweak it for dragonfly, or even get their Chinese employees to do the tweak, since they already hire in China.
Once the growth slows, companies look for alternative revenue sources, like Apple is doing with services. The problem is that google has shown itself to be wildly incompetent at non engineering parts of their businesses other than search. e.g, Google cloud might be the only cloud to raise prices for anything so far(Google Kubernetes Engine price update)
It will be interesting to see what they choose. I don't think dragonfly can make them much money anyways, since Baidu too isn't making a lot of money in China.(When compared to how much Google makes in the US). I guess mostly due to closed mini app ecosystem on wechat, and probably a smaller internet eco system outside wechat.
They have no reason to add wood to that fire. Apple's best bet right now with this particular issue is to play neutrality.
At least for now. It's important to note that the Chinese government has a very strong campaign against American phones (and it's working), as backlash against the US for banning Huawei.
This is also why Apple is even less likely to do anything to further upset the CCP, not to mention they manufacture the bulk of their products there. But if Apple loses enough market share and/or moves enough production out of China, then they might change their tune as well.
That's true. However Apple's hands are tied here due to this and they always bend to the side of China. Due to this, they are still being accused of hypocrisy.
If people are so worried about what tiktok can be gathering outside of the app, that is a problem for apple & google.
For this, I think it's 100% overblown what people think tiktok is doing. It just doesn't make sense. If it was really some kind of massive spyware, I agree apple/google would be all over this.. but they aren't.
This comes down to a lack of trust in China obviously, and I don't think there's anything really more concrete than that.
https://www.reddit.com/r/videos/comments/fxgi06/not_new_news...
It can upload and download whatever to your phone.
No other app is even close to allowed that.
>No other app is even close to allowed that.
So an app that is on like a billions people phone is knowingly doing things against google & apples app store policy.. yet they choose to let one of the largest apps exploit them?
If you can read the above and not see why there is a pretty large obvious logic flaw then it's not even worth attempting to convince you otherwise...
The fact that they aren't doing anything that FB isn't already doing. The beef the USG has is that the CCP will have access to the data, not the fact that they are collecting the data at all.
The privacy hawks have been warning about this exact situation and people are now "surprised" when someone gets access to the data that they might not like.
I think a better question to ask is, under what authority is the US government talking about banning TikTok? If there are clear security issues, or TikTok or the people running it are in violation of some US law, the onus is on the government to prove it. I haven't seen any proof of this, just a lot of hearsay.
But then again, TikTok probably doesn't answer their subpoenas...
China is increasingly an adversary to the US. That context is going to get a lot worse this decade. TikTok is owned by a Chinese company and ultimately must (and will) answer to China. Facebook, Google, et al. are of course American companies.
For a nation, whether Facebook concerns you as much as TikTok depends largely on which side you're on (or if you have a side at all).
The world is going to be aggressively bifurcated, US-USSR style, going forward. There will be the liberal side and the China side. China's direction is fundamentally opposed to the major liberal nations, what they commonly believe in and how their systems operate. That conflict and incompatibility will get worse as China's behavior continues to get worse.
Of course, this is a fact that everyone here is perfectly willing to admit when it comes to topics that are easy to take the "right" side on, like privacy, encryption, and net neutrality. When the topic gets more contentious, like allowing the ability for another country to collect data on the citizens of the US, its not so clear.
But, the core reasoning behind the issues are the same: we don't have the legal precedent to say that they're breaking the law. This is how new laws are made: we get executive or judicial precedent, this leads to a new law, and now they're breaking it. The law is not set in stone, and allowing applications like TikTok to exist simply because they're not breaking any existing laws is not the kind of conversation any decision makers are having right now, for the better.
Because the US Government, Google, and Apple share neither leadership nor most strategic goals.
Note: I'm not defending TikTok in any way here. I personally believe that nobody should be using it.
2. People don't use the app store at the pleasure of the US government.
Of course these companies have selfish corporate interests, but I've seen both of these companies show at least _some_ level of care for their users. Even if it's part of keeping up appearances out of concern for their corporate interests.
What benefit would they get?
There are country-specific Apple app stores and apps that are only available in some countries
[1] - https://www.msn.com/EN-US/news/technology/microsoft-secretly...
[2] - https://torrentfreak.com/how-to-stop-domain-names-being-seiz...
If there was a real security/privacy issue - I'd be more upset with Apple than China (as an iPhone user). Apple needs to watch my back.
The real question is why does your phone even allow such things to happen in the first place?
It seems way more likely that a non-tech manager at Amazon read the news and wrote the email.
Actually moreso, in the case of the US government.
What would the ramifications be if a ban were enacted? Retaliation from China against domestic companies?
Will this be an inflection point in the escalation of the trade war?
Millions of angry teenagers. China retaliates against by barring a few American SAAS companies/ cloud providers on national security grounds.
It's a continuation of trends that were well underway since the Huawei entities list.
https://chinamediaproject.org/2018/04/11/tech-shame-in-the-n...
I don't know how Bytedance as a company can serve CCP interests AND claim to be independent of CCP interference at the same time.
TikTok is a good product, but it may not be a safe product.
More on the dystopian practices of Douyin (TikTok in China): https://twitter.com/Izzy_Niu/status/1280906443273768960 https://twitter.com/JoshuaDummer/status/1280877750245453828
Someone mentions the copy/paste sec vuln in TikTok and “Onur Olmez” writes:
> LinkedIn app apparently also has this issue [...] Uncalled for to ban apps for this one reason.
I mean, wtf? Everybody on Twitter has an opinion about everything, even things they know nothing about.