<p>Join us LIVE on Mondays, 4:30pm EST.<br>A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.<br><a href="https://www.youtube.com/@BlackHillsInformationSecurity">https://www.youtube.com/@BlackHillsInformationSecurity</a></p><p>Chat with us on Discord! - <br><a href="https://discord.gg/bhis">https://discord.gg/bhis</a><br>🔴live-chat</p><p><br>In this episode, the hosts break down TikTok’s latest privacy policy and why it’s raising serious red flags. They discuss how the app expands data collection and tracking, what that means for user privacy, and the broader security implications—especially concerns around data access and China. Along the way, the conversation connects these changes to ongoing TikTok ban discussions, real-world risk for individuals and organizations, and what users should consider if they continue using the platform. The episode mixes technical insight with practical takeaways, making the privacy risks easy to understand without losing nuance.</p><p><strong>Chapters:<br></strong></p><ul><li>(00:00) - PreShow Banter™ — Electroshock Therapy</li>
<li>(02:28) - 2026-01-26</li>
<li>(07:33) - Story # 1: Fortinet confirms critical FortiCloud auth bypass not fully patched</li>
<li>(14:27) - Story # 2: Hackers exploit critical telnetd auth bypass flaw to get root</li>
<li>(17:37) - Story # 3: Clara Hawking’s Post on TikTok's Pivacy Policy</li>
<li>(24:05) - Story # 4: Supreme Court to hear Facebook pixel tracking case</li>
<li>(31:02) - Story # 5: Google accused of grooming kids after child receives this email</li>
<li>(34:38) - Story # 6: House of Lords backs legislation to ban social media for children under 16</li>
<li>(35:47) - Story # 6b: Australia has banned social media for kids under 16. How does it work?</li>
<li>(42:20) - Story # 7: Why Software Blocks Won’t Stop Illegally 3D Printed Guns (And What Actually Might)</li>
<li>(48:29) - Story # 8: 1Password adds pop-up warnings for suspected phishing sites</li>
<li>(52:09) - ClawdBot / Moltbot</li>
</ul><strong><br></strong><br><strong>Links:</strong><br>Story # 1: <a href="https://www.bleepingcomputer.com/news/security/fortinet-confirms-critical-forticloud-auth-bypass-not-fully-patched/">Fortinet confirms critical FortiCloud auth bypass not fully patched</a><br>Story # 2: <a href="https://www.bleepingcomputer.com/news/security/hackers-exploit-critical-telnetd-auth-bypass-flaw-to-get-root/">Hackers exploit critical telnetd auth bypass flaw to get root</a><br>Story # 3: <a href="https://www.linkedin.com/posts/clara-hawking-ba9123149_the-tiktok-privacy-debate-did-not-end-with-share-7421037691959427072-KNtl?rcm=ACoAADYriF8Bwg7DAPA0wyb_WoiJvbPF05ZqF8s">Clara Hawking’s Post on TikTok’s Pivacy Policy</a><br>Story # 4: <a href="https://therecord.media/supreme-court-case-facebook-tracking">Supreme Court to hear Facebook pixel tracking case</a><br>Story # 5: <a href="https://cybernews.com/tech/google-parental-controls-email/">Google accused of grooming kids after child receives this email</a><br>Story # 6: <a href="https://therecord.media/house-lords-bans-social-media">House of Lords backs legislation to ban social media for children under 16</a><br>Story # 6b: <a href="https://www.bbc.com/news/articles/cwyp9d3ddqyo">Australia has banned social media for kids under 16. How does it work?</a><br>Story # 7: <a href="https://all3dp.com/4/lawmakers-vs-logic-why-software-blocks-wont-stop-illegally-3d-printed-guns-and-what-actually-might/">Why Software Blocks Won’t Stop Illegally 3D Printed Guns (And What Actually Might)</a><br>Story # 8: <a href="https://www.bleepingcomputer.com/news/security/1password-adds-pop-up-warnings-for-suspected-phishing-sites/">1Password adds pop-up warnings for suspected phishing sites</a><br><a href="https://clawd.bot">ClawdBot / Moltbot</a><br><a href="https://www.antisyphontraining.com/product/workshop-foundations-of-network-forensics-and-analysis-with-troy-wojewoda/">Troy’s Workshop</a><br>ANTI-CAST: <a href="https://www.antisyphontraining.com/event/anti-cast-effective-ai-for-practical-secops-workflows-with-hayden-covington/">Effective AI for Practical SecOps Workflows w/ Hayden Covington</a><p><strong>🔗 Register for FREE Infosec Webcasts, Anti-casts &amp; Summits </strong></p><p><a href="https://poweredbybhis.com">https://poweredbybhis.com</a></p><p><br>Brought to you by:</p><p><strong>Black Hills Information Security </strong></p><p><a href="https://www.blackhillsinfosec.com">https://www.blackhillsinfosec.com</a></p><p><br></p><p><strong>Antisyphon Training</strong></p><p><a href="https://www.antisyphontraining.com/">https://www.antisyphontraining.com/</a></p><p><br></p><p><strong>Active Countermeasures</strong></p><p><a href="https://www.activecountermeasures.com">https://www.activecountermeasures.com</a></p><p><br></p><p><strong>Wild West Hackin Fest</strong></p><p><a href="https://wildwesthackinfest.com">https://wildwesthackinfest.com</a></p>

Talkin' Bout [Infosec] News

Black Hills Information Security

TikTok's invasive Privacy Policy - 2026-01-26

JAN 28, 202663 MIN
Talkin' Bout [Infosec] News

TikTok's invasive Privacy Policy - 2026-01-26

JAN 28, 202663 MIN

Description

Join us LIVE on Mondays, 4:30pm EST.A weekly Podcast with BHIS and Friends. We discuss notable Infosec, and infosec-adjacent news stories gathered by our community news team.https://www.youtube.com/@BlackHillsInformationSecurityChat with us on Discord! - https://discord.gg/bhis🔴live-chatIn this episode, the hosts break down TikTok’s latest privacy policy and why it’s raising serious red flags. They discuss how the app expands data collection and tracking, what that means for user privacy, and the broader security implications—especially concerns around data access and China. Along the way, the conversation connects these changes to ongoing TikTok ban discussions, real-world risk for individuals and organizations, and what users should consider if they continue using the platform. The episode mixes technical insight with practical takeaways, making the privacy risks easy to understand without losing nuance.Chapters:(00:00) - PreShow Banter™ — Electroshock Therapy (02:28) - 2026-01-26 (07:33) - Story # 1: Fortinet confirms critical FortiCloud auth bypass not fully patched (14:27) - Story # 2: Hackers exploit critical telnetd auth bypass flaw to get root (17:37) - Story # 3: Clara Hawking’s Post on TikTok's Pivacy Policy (24:05) - Story # 4: Supreme Court to hear Facebook pixel tracking case (31:02) - Story # 5: Google accused of grooming kids after child receives this email (34:38) - Story # 6: House of Lords backs legislation to ban social media for children under 16 (35:47) - Story # 6b: Australia has banned social media for kids under 16. How does it work? (42:20) - Story # 7: Why Software Blocks Won’t Stop Illegally 3D Printed Guns (And What Actually Might) (48:29) - Story # 8: 1Password adds pop-up warnings for suspected phishing sites (52:09) - ClawdBot / Moltbot Links:Story # 1: Fortinet confirms critical FortiCloud auth bypass not fully patchedStory # 2: Hackers exploit critical telnetd auth bypass flaw to get rootStory # 3: Clara Hawking’s Post on TikTok’s Pivacy PolicyStory # 4: Supreme Court to hear Facebook pixel tracking caseStory # 5: Google accused of grooming kids after child receives this emailStory # 6: House of Lords backs legislation to ban social media for children under 16Story # 6b: Australia has banned social media for kids under 16. How does it work?Story # 7: Why Software Blocks Won’t Stop Illegally 3D Printed Guns (And What Actually Might)Story # 8: 1Password adds pop-up warnings for suspected phishing sitesClawdBot / MoltbotTroy’s WorkshopANTI-CAST: Effective AI for Practical SecOps Workflows w/ Hayden Covington🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits https://poweredbybhis.comBrought to you by:Black Hills Information Security https://www.blackhillsinfosec.comAntisyphon Traininghttps://www.antisyphontraining.com/Active Countermeasureshttps://www.activecountermeasures.comWild West Hackin Festhttps://wildwesthackinfest.com