53 Trendy Apps That Secretly Reading Your Clipboard

A new privacy feature in iOS 14 has flags TikTok and other 53 other apps spying on iPhone clipboards and raised concerns about clipboard privacy.

GL. Nga Theng
4 min readJul 7, 2020
Photo by Dan Nelson on Unsplash

According to SOPHOS:

In March, researchers Talal Haj Bakry and Tommy Mysk revealed that Android and iOS apps — including the mind-bogglingly popular, China-owned, video-sharing/often in privacy hot water TikTok — could silently, automatically read anything you copy into your mobile device’s clipboard.

Sexy selfies? Passwords copied from your password manager? Bank account information? Bitcoin addresses? Yes, yes, scary yes, yes. Anything you’ve copied recently, they’ll paste it into themselves. Such data is typically used for advertising and tracking purposes.

The covert content copying is possible not only for a device’s local data, but also on nearby devices, as long as the devices share the same Apple ID and are within about 10 feet of each other. That’s enabled by Apple’s universal clipboard: a clipboard that enables content to be copied on one device and then pasted into an app running on a separate device.

It’s “very, very dangerous,” Mysk told Ars Technica on Friday, after the discovery had bubbled to the surface yet again. The findings hit the headlines anew as Apple released the developer beta of iOS 14 — a release that flags this behavior.

Photo by Bermix Studio on Unsplash

Mysk said that the ability for apps to read content of off nearby devices means that an app on an iPhone could possibly read sensitive data on the clipboards of other connected iOS devices, be they cryptocurrency addresses, passwords, or email messages, even if the iOS apps are running on a separate device.

The iOS 14 developer beta release — which you can download and install now to get an eyeful of this behavior — comes with a feature that’s custom-tailored to spotlight this kind of thing: namely, a banner warning that pops up every time an app reads clipboard contents.

These apps are reading clipboards, and there’s no reason to do this. An app that doesn’t have a text field to enter text has no reason to read clipboard text.

Personal Data Privacy Protection is everyone right and concern all the time. Here are the apps which spying your keyboard and to delete or uninstall:

News
– ABC News
– Al Jazeera English
– CBC News
– CBS News
– CNBC
– Fox News
– News Break
– New York Times
– NPR
– ntv Nachricten
– Reuters
– Russia Today
– Stern Nachrichten
– The Economist
– The Huffington Post
– The Wall Street Journal
– Vice News

Games
– 8 Ball Pool
– AMAZE!!!
– Bejeweled
– Block Puzzle
– Classic Bejeweled
– Classic Bejeweled HD
– FlipTheGun
– Fruit Ninja
– Golfmasters
– Letter Soup
– Love Nikki
– My Emma
– Plants vs Zombies Heroes
– Pooking — Billiards City
– PUBG Mobile
– Tomb of the Mask
– Tomb of the Mask: Color
– Total Party Killer
– Watermarbling

Social
– TikTok
– ToTalk
– Truecaller
– Viber
– Weibo
– Zoosk

Other
– 10% Happier: Meditation
– 5–0 Radio Police Scanner
– Accuweather
– AliExpress Shopping App
– Bed Bath & Beyond
– Dazn
– Hotels.com
– Hotel Tonight
– Overstock
– Pigment — Adult Coloring Book to Color
– Sky Ticket
– The Weather Network

TikTok caught red-handed

Photo by Kon Karampelas on Unsplash

TikTok, the video-sharing social media phenomenon that young people love and their parents love to haul into court over child privacy law violations, has shelled out a changing story about this to media outlets, including Forbes.

First, TikTok owner Bytedance said the problem wasn’t its fault. Rather, it blamed an outdated Google Ads software development kit (SDK) that was due to be replaced.

But as the clipboard warning in iOS 14 has made clear, ByteDance didn’t stop the invasive practice back in April, as it had promised. Now, the iOS 14 warning has caught the company “red-handed,” Zak Doffman writes, “still doing something they shouldn’t.”

Here’s TikTok’s most recent story: the issue is now “triggered by a feature designed to identify repetitive, spammy behavior,” and it’s “already submitted an updated version of the app to the App Store removing the anti-spam feature to eliminate any potential confusion.”

A few things to keep in mind

All these apps copying clipboard content have been doing so surreptitiously. They’ve been tough to spot. The issue underscores what an important update the new warning in iOS 14 is, and Apple plans to credit the researchers for being the impetus for the new notification.

Having said that, we’re not out of the woods yet. Now that Apple’s flagging the behavior, Apple users will benefit from the TikTok update as soon as it ships, but until then, please do keep in mind that the app is reading your clipboard data. To stay on the safe side, you can flush your clipboard by copying an innocuous piece of data.

Important Note from Editor — If an app can read your clipboard it can potentially grab things like your private keys and push them to an attacker. Best practice is never to copy or paste your private keys though. The only fix for now is to delete TikTok and the other spyware apps that look on your clipboard, until the further resolution developed.

Original Article is Published here.

--

--

GL. Nga Theng

Tech Strategist. Certified Reiki Energy Healer. Natural Herbalist. Building memorable land of education and healthcare in Metaverse for our next generations.