The Times Australia
The Times World News

.

Why was TikTok banned on government devices? An expert on why the security concerns make sense

  • Written by David Tuffley, Senior Lecturer in Applied Ethics & CyberSecurity, Griffith University
Why was TikTok banned on government devices? An expert on why the security concerns make sense

Australia has joined a raft of other countries in banning[1] the popular video sharing app TikTok from government devices, as several[2] outlets[3] have today reported.

The move comes after a seven month-long review[4] instigated by Home Affairs Minister Clare O’Neil[5] into security risks posed by social media platforms.

Last week, TikTok CEO Shou Zi Chew was grilled by US politicians in a more than five hour-long Congress hearing. Questions mainly focused on[6] TikTok’s handling of user data and whether it could be accessed by the Chinese Communist Party, as well as how harmful content (such as content on self-harm and eating disorders) spreads on the app.

TikTok has maintained user data are stored securely and held privately, with CEO Shou Zi Chew telling Congress:

Let me state this unequivocally: ByteDance is not an agent of China or any other country.

But the evidence seems to suggest a ban was a long time coming.

Read more: 'Anorexia coach': sexual predators online are targeting teens wanting to lose weight. Platforms are looking the other way[7]

Some background

Since it was acquired by Chinese company ByteDance[8] in 2017, TikTok (formerly Musical.ly) has faced persistent rumours regarding its handling of user data and privacy.

Despite its assurances, TikTok’s privacy policy[9] allows for user data, including browsing history, location and biometric identifiers to be collected and shared with

business partners, other companies in the same group as TikTok, content moderation services, measurement providers, advertisers, and analytics providers.

More worrying is this provision:

Where and when required by law, we will share your information with law enforcement agencies or regulators, and with third parties pursuant to a legally binding court order.

“Where and when required by law” would include the provisions of China’s National Intelligence Law[10], which came into effect in 2017. It obliges organisations to cooperate with state intelligence agencies, and would oblige Bytedance to share TikTok data from Australia[11] that may be deemed relevant to national security.

ByteDance has tried to distance itself from the perception that it is a Chinese company. According to TikTok’s vice president of policy in Europe, Theo Bertram[12], 60% of ByteDance is owned by global investors, 20% by employees and 20% by the founders.

Read more: TikTok tries to distance itself from Beijing, but will it be enough to avoid the global blacklist?[13]

But it hasn’t been enough to dispel fears. In 2020, India was among the first countries to impose a lasting nationwide ban on TikTok (and dozens of other Chinese apps), citing privacy and security concerns.

In December 2022, Taiwan imposed a public sector ban after the US Federal Bureau of Investigation warned the app[14] posed a national security risk. That same month, the US House of Representatives issued a ban on devices used by members and staffers.

More recently, lawmakers of the European Union were banned from[15] having TikTok on their devices.

A host of other countries[16] have also enacted bans, including Canada[17], Latvia[18], Denmark[19], Belgium, the UK, New Zealand[20], France, Netherlands and Norway[21].

What are Australia’s concerns?

Australia and its allies are engaged in a so-called grey zone conflict[22] with China; this is where TikTok becomes a major concern.

Grey zone conflict can be understood as competition between states and non-state actors that resides in a blurred reality between peace and war. It involves the strategic use of disinformation, propaganda, economic coercion, cyberattacks, and other forms of non-kinetic (subtle and non-coercive) action.

The danger[23] TikTok poses to Australia is that the means would exist for foreign intelligence agencies to track the location of government officials, build dossiers of personal information, and conduct espionage.

An in-depth analysis of[24] TikTok’s software code by Australian cybersecurity firm Internet 2.0 makes for interesting, if not alarming, reading.

The firm determined TikTok requests almost complete access to a user’s smart device while the app is active. These data include their calendar, contact lists and photos. If the user denies access, the app keeps asking every few hours until access is granted.

Co-founder Robert Potter told the ABC[25]:

When we did that [pulled apart the code], we saw the permission layer that the phone was requesting was significantly more than what they said they were doing publicly. When the app is in use, it has the ability to scan the entire hard drive, access the contact lists, as well as see all other apps that have been installed on the device.

Potter points out these permissions are “significantly more” than what a social media site actually needs to access.

This isn’t an isolated incident. Last year, Buzzfeed released leaked audio from more than 80 internal US TikTok meetings that raised the alarm. According to the Buzzfeed report[26], China-based employees of ByteDance had repeatedly accessed non-public data about US TikTok users.

In one September 2021 meeting, a senior US-based TikTok manager referred to a Beijing-based engineer as a “master admin” who “has access to everything”. A US-based staffer in the Trust and Safety Department was also heard saying “everything is seen in China”.

The tapes overwhelmingly contradict TikTok’s repeated insistence about the privacy of user data.

Read more: Concerns over TikTok feeding user data to Beijing are back – and there's good evidence to support them[27]

The larger context

Australia’s ban on TikTok on government phones is hardly surprising. A partial ban has existed for some time.

The decision speaks to the larger issue of balancing national security interests against the trade relationship with our largest[28] trading partner. The TikTok ban is just the latest manifestation of this struggle.

In 2018, Australia’s decision to exclude[29] Huawei from installing its 5G network was based on advice from the Australian Signals Directorate that this would give the Chinese government the means, in time of war, to paralyse the nation’s 5G-enabled critical infrastructure. A number of other countries[30] came to a similar conclusion.

China is a nation that takes the long view[31] when it comes to geopolitical strategy. Its planning horizon extends to many decades, and even centuries.

Against a backdrop of escalating grey zone conflict, TikTok is an example of a potentially weaponised tool in China’s cyber arsenal that could harvest massive amounts of data for nefarious means. And it’s likely not the last of such tools we’ll face.

The wisest course of action for Australia would be to also develop a long-term orientation, making plans that reach forward many decades – and not as far as the next election cycle.

References

  1. ^ banning (www.abc.net.au)
  2. ^ several (www.abc.net.au)
  3. ^ outlets (www.news.com.au)
  4. ^ review (www.smh.com.au)
  5. ^ Clare O’Neil (www.smh.com.au)
  6. ^ mainly focused on (www.theguardian.com)
  7. ^ 'Anorexia coach': sexual predators online are targeting teens wanting to lose weight. Platforms are looking the other way (theconversation.com)
  8. ^ ByteDance (www.bytedance.com)
  9. ^ privacy policy (www.tiktok.com)
  10. ^ National Intelligence Law (www.chinalawtranslate.com)
  11. ^ data from Australia (www.abc.net.au)
  12. ^ Theo Bertram (apnews.com)
  13. ^ TikTok tries to distance itself from Beijing, but will it be enough to avoid the global blacklist? (theconversation.com)
  14. ^ warned the app (edition.cnn.com)
  15. ^ banned from (www.theguardian.com)
  16. ^ countries (www.gizmodo.com.au)
  17. ^ Canada (www.theguardian.com)
  18. ^ Latvia (eng.lsm.lv)
  19. ^ Denmark (www.euronews.com)
  20. ^ New Zealand (economictimes.indiatimes.com)
  21. ^ France, Netherlands and Norway (www.euronews.com)
  22. ^ grey zone conflict (cove.army.gov.au)
  23. ^ danger (www.theguardian.com)
  24. ^ analysis of (internet2-0.com)
  25. ^ the ABC (www.abc.net.au)
  26. ^ report (www.buzzfeednews.com)
  27. ^ Concerns over TikTok feeding user data to Beijing are back – and there's good evidence to support them (theconversation.com)
  28. ^ largest (www.aph.gov.au)
  29. ^ decision to exclude (www.smh.com.au)
  30. ^ other countries (www.statista.com)
  31. ^ long view (www.brookings.edu)

Read more https://theconversation.com/why-was-tiktok-banned-on-government-devices-an-expert-on-why-the-security-concerns-make-sense-202339

Times Magazine

DIY Is In: How Aussie Parents Are Redefining Birthday Parties

When planning his daughter’s birthday, Rich opted for a DIY approach, inspired by her love for drawing maps and giving clues. Their weekend tradition of hiding treats at home sparked the idea, and with a pirate ship playground already chosen as t...

When Touchscreens Turn Temperamental: What to Do Before You Panic

When your touchscreen starts acting up, ignoring taps, registering phantom touches, or freezing entirely, it can feel like your entire setup is falling apart. Before you rush to replace the device, it’s worth taking a deep breath and exploring what c...

Why Social Media Marketing Matters for Businesses in Australia

Today social media is a big part of daily life. All over Australia people use Facebook, Instagram, TikTok , LinkedIn and Twitter to stay connected, share updates and find new ideas. For businesses this means a great chance to reach new customers and...

Building an AI-First Culture in Your Company

AI isn't just something to think about anymore - it's becoming part of how we live and work, whether we like it or not. At the office, it definitely helps us move faster. But here's the thing: just using tools like ChatGPT or plugging AI into your wo...

Data Management Isn't Just About Tech—Here’s Why It’s a Human Problem Too

Photo by Kevin Kuby Manuel O. Diaz Jr.We live in a world drowning in data. Every click, swipe, medical scan, and financial transaction generates information, so much that managing it all has become one of the biggest challenges of our digital age. Bu...

Headless CMS in Digital Twins and 3D Product Experiences

Image by freepik As the metaverse becomes more advanced and accessible, it's clear that multiple sectors will use digital twins and 3D product experiences to visualize, connect, and streamline efforts better. A digital twin is a virtual replica of ...

The Times Features

How to Choose a Cosmetic Clinic That Aligns With Your Aesthetic Goals

Clinics that align with your goals prioritise subtlety, safety, and client input Strong results come from experience, not trends or treatment bundles A proper consultation fe...

7 Non-Invasive Options That Can Subtly Enhance Your Features

Non-invasive treatments can refresh your appearance with minimal downtime Options range from anti-wrinkle treatments to advanced skin therapies Many results appear gradually ...

What is creatine? What does the science say about its claims to build muscle and boost brain health?

If you’ve walked down the wellness aisle at your local supermarket recently, or scrolled the latest wellness trends on social media, you’ve likely heard about creatine. Creati...

Whole House Water Filters: Essential or Optional for Australian Homes?

Access to clean, safe water is something most Australians take for granted—but the reality can be more complex. Our country’s unique climate, frequent droughts, and occasional ...

How Businesses Turn Data into Actionable Insights

In today's digital landscape, businesses are drowning in data yet thirsting for meaningful direction. The challenge isn't collecting information—it's knowing how to turn data i...

Why Mobile Allied Therapy Services Are Essential in Post-Hospital Recovery

Mobile allied health services matter more than ever under recent NDIA travel funding cuts. A quiet but critical shift is unfolding in Australia’s healthcare landscape. Mobile all...