TikTok hit with malicious malware that’s taking over accounts — don’t open those DMs

How to delete TikTok
(Image credit: Shutterstock)

TikTok’s no good last few months continues with news that hackers have used malicious code to take over celebrity and brand accounts on TikTok. The official accounts of Sony, Paris Hilton and CNN have reportedly been impacted by the hack, according to a Forbes report

The hackers responsible are sending malware via DMs on the app. Apparently, this malware doesn’t require victims to click any links or download software. Instead, all you have to do is open a DM with the malware present and your device will be infected.

The hack appears to be a “zero-day” attack, meaning that the bad actors learned of the vulnerability in TikTok’s code before developers did, thus they had zero days to prevent it. 

@tomsguide

♬ original sound - Tom’s Guide

The Semafor newsletter reported that CNN had to take the company’s account down. A spokesperson told Semafor that the company had been lax in cybersecurity. However, it sounds like the issue was off-site, probably because one of the dozens of CNN employees with access opened a DM, a regular part of managing a social media brand.

For now, it appears that hackers are going for brand and celebrity accounts like Paris Hilton. Average users probably won’t be affected, but to be safe, it would be best to avoid opening DMs until TikTok announces a repair or patch for the ongoing issue. 

TikTok does have a support page with suggestions on dealing with a hacked account. The usual suggestions presented include resetting the password, removing unknown devices and engaging two-factor authentication by adding your phone number. 

TikTok is no stranger to big hacks. Last year, over 700,000 accounts were hacked in Turkey because of poor two-factor authentication methods in the app. 

In 2022, Microsoft reported a vulnerability in the Android version of the TikTok app that would allow hackers to take over an account with one click of a specific link. 

Beyond hacking, TikTok is an ongoing fight with the United States government to avoid getting banned in America. President Joe Biden signed a measure that requires TikTok parent company ByteDance to sell the company’s U.S. operations. 

The ban is in place presumably to keep American’s private data out of the hands of the Chinese government.

Last month, ByteDance challenged the law in the U.S. Court of Appeals for the D.C. Circuit. That lawsuit is ongoing. 

More from Tom's Guide

Scott Younker
West Coast Reporter

Scott Younker is the West Coast Reporter at Tom’s Guide. He covers all the lastest tech news. He’s been involved in tech since 2011 at various outlets and is on an ongoing hunt to build the easiest to use home media system. When not writing about the latest devices, you are more than welcome to discuss board games or disc golf with him. 

Read more
How to delete TikTok
TikTok has rolled out a vital new security feature — here's how to use it
Facebook, Instagram, YouTube, Pinterest, X, LinkedIn, Reddit, TikTok, Threads apps on an iPhone
TikTok is under fire for harvesting data – but is it worse than any other social media platform?
Green skull on smartphone screen.
Hackers are spreading info-stealing malware and taking over accounts using fake wedding invitations — how to stay safe
Green skull on smartphone screen.
This Android banking trojan steals passwords to take over your accounts — and all it takes is a single text message
A hacker typing quickly on a keyboard
Thousands of WordPress sites hijacked to spread Windows and Mac malware - how to stay safe
TikTok logo in front of a govt building
TikTok ban live updates — TikTok is back ahead of expected executive order
Latest in Mobile Apps
Google wallet app on screen
Google Wallet now lets kids to make supervised contactless payments and use digital passes — what you need to know
How to tour the Super Bowl stadium virtually with Google Maps
Google Maps glitch is purging Timeline data — what we know
Gboard app logo on mobile phone resting on a keyboard
Google Gboard redesign has already angered users — and I can see why
Waze app on iPhone in car
Forget Google Maps — Waze just got a huge upgrade that will help millions of drivers
A photo of the Apple Maps app tile displayed on an iPhone screen
Apple Maps may soon get ads, letting businesses pay to boost visibility
How to delete TikTok
TikTok confirms return to Apple and Google app stores — here’s what we know
Latest in News
A first look at Amazon's Fallout TV series coming to Prime Video
‘Fallout’ season 3 plans are reportedly being made — while season 2 is still filming
Surface Laptop 7 from the front
Amazon just gave Surface Laptop 7 a 'frequently returned' label — here's what's going on
New emojis with iOS 18.4 beta release.
iOS 18.4 beta brings 8 new emoji to your iPhone — here's all the new options
23andME box
23andMe has declared bankruptcy — here's how to delete your data now
half-life alyx
Latest Half-Life 3 rumors point to a 2025 release — and maybe pigs will fly
NFL Sunday Ticket logo for YouTube
NFL Sunday Ticket 2025 pricing revealed — and it's bad news