The Times Australia
The Times World News

.

Concerns over TikTok feeding user data to Beijing are back – and there's good evidence to support them

  • Written by David Tuffley, Senior Lecturer in Applied Ethics & CyberSecurity, Griffith University
Concerns over TikTok feeding user data to Beijing are back – and there's good evidence to support them

When English statesman Sir Francis Bacon[1] famously said[2] “knowledge is power”, he could hardly have foreseen the rise of ubiquitous social media some 500 years later.

Yet social media platforms are some of the world’s most powerful businesses – not least because they can collect massive amounts of user data, and use algorithms to turn the data into actionable knowledge.

Today, TikTok has some of the best algorithms[3] in the business, and a suite of data-collection[4] mechanisms.

This is how it manages to be so addictive, with some 1.2 billion users[5] as of December 2021. This number is expected to rise to 1.8 billion by the end of the year.

It’s against the background of these huge numbers that the US Federal Communications Commission (FCC) wrote a strongly worded letter[6] to the chief executives of Apple and Google last Tuesday, urging them to remove TikTok[7] from their app stores on the grounds that the company – or more precisely its Chinese parent ByteDance – can’t be trusted with US users’ data.

What are the concerns?

In his letter, FCC commissioner Brendan Carr says:

TikTok is owned by Beijing-based ByteDance — an organisation that is beholden to the Communist Party of China and required by the Chinese law to comply with the PCR’s [(People’s Republic of China)] surveillance demands.

TikTok’s privacy policy[8] says it won’t sell personal information to third parties, but reserves the right to use information internally for business development purposes. That internal use may include use by its parent company, ByteDance.

TikTok US has repeatedly denied[9] breaching US data privacy regulations. It says user data are stored on US servers and not shared with ByteDance. But Carr says these measures fall short of guaranteeing the privacy of US users:

TikTok’s statement that ‘100% of US user traffic is being routed to Oracle’ (in the US) says nothing about where that data can be accessed from.

Following robust questioning by US senators, TikTok has admitted[10] its US-stored data are in fact accessible from China, subject to unspecified security protocols at the US end.

Australian users also have their data stored on US servers, with backups in Singapore. But it’s not known whether these data – which could include users’ browsing habits, images, biographical information and location – are subject to the same safeguards as the US data.

Leaked audio

The unusually blunt language from Carr may have been occasioned by leaked audio obtained by Buzzfeed[11] from more than 80 internal TikTok meetings.

According to a Buzzfeed report from mid-June, China-based employees of ByteDance have repeatedly accessed non-public data about US TikTok users. The tapes overwhelmingly contradict TikTok’s earlier data privacy assurances[12].

For example, in a September 2021 meeting a senior US-based TikTok manager referred to a Beijing-based engineer as a “master admin” who “has access to everything”. That same month a US-based staffer in the Trust and Safety Department was heard saying “everything is seen in China”.

In short, the recordings corroborate[13] the claim that China-based employees have often accessed US data, and more recently than earlier statements asserted.

Might it all be harmless?

On the one hand TikTok is in the business of entertaining users, with a goal to keep them on the platform and expose them to targeted advertising. On the other hand, TikTok can be used to spread misinformation[14] and influence users to their detriment.

It has been shown to host COVID[15] conspiracy theories and other medical misinformation[16], and was reportedly[17] used with a goal to influence Kenya’s general elections coming up in August.

Seen in this weaponized context, the US government’s strenuous objections to TikTok come into clearer focus.

Moreover, past events have also raised good reason to suspect Chinese actors of mass data harvesting online.

In 2020, Australian media outlets reported[18] on a data leak from Zhenhua Data, a Chinese company with clients including the Chinese government and the People’s Liberation Army.

Read more: Keep calm, but don't just carry on: how to deal with China's mass surveillance of thousands of Australians[19]

The leak was said to contain data on more than 35,000 Australians – including dates of birth, addresses, marital status, photographs, political associations, relatives and social media accounts. This information was gathered from a range of sources, including TikTok.

Would banning TikTok be effective?

Removing TikTok from Google’s and Apple’s app stores can only be done on a country-by-country basis. India banned[20] the platform in June 2020.

If the Australian government were to make the TikTok domain inaccessible from Australia, it could still be accessed through a virtual private network[21] (VPN). A VPN service allows users to create a secure private network within a public one, thus disguising their country of origin. It’s the same tool that allows file-sharing on Pirate Bay and access to other countries’ Netflix programs.

But even if TikTok was banned in Australia and had access removed, or if users mass-terminated their accounts, existing data on the company’s US and Singapore-based servers would remain there. And we now know these data are accessible to TikTok’s parent company, ByteDance, in Beijing.

What should TikTok users do?

Like any technology, TikTok itself is neither good nor bad. But the way in which it’s used creates potential for both.

The best defence with any potentially dangerous technology is to approach it with healthy scepticism and share as little as possible. In the case of TikTok (and other social media) this may involve[22]:

  • not disclosing your full name
  • not disclosing your age and birthday
  • not disclosing your physical location (including through pictures or video)
  • turning off the “suggest your account to others” setting.

You can also request an account deletion[23]. But don’t expect TikTok to delete all the data associated with it. That’s TikTok’s data now, and you agreed to handing it over when you signed up.

Read more: China could be using TikTok to spy on Australians, but banning it isn’t a simple fix[24]

References

  1. ^ Sir Francis Bacon (plato.stanford.edu)
  2. ^ said (en.wikipedia.org)
  3. ^ algorithms (blog.hootsuite.com)
  4. ^ data-collection (www.reviews.org)
  5. ^ users (www.businessofapps.com)
  6. ^ letter (www.billboard.com)
  7. ^ TikTok (www.tiktok.com)
  8. ^ privacy policy (www.tiktok.com)
  9. ^ denied (newsroom.tiktok.com)
  10. ^ admitted (www.abc.net.au)
  11. ^ Buzzfeed (www.buzzfeednews.com)
  12. ^ assurances (newsroom.tiktok.com)
  13. ^ corroborate (www.buzzfeednews.com)
  14. ^ misinformation (www.france24.com)
  15. ^ COVID (publichealth.nyu.edu)
  16. ^ misinformation (www.sciencedirect.com)
  17. ^ reportedly (techcrunch.com)
  18. ^ reported (www.abc.net.au)
  19. ^ Keep calm, but don't just carry on: how to deal with China's mass surveillance of thousands of Australians (theconversation.com)
  20. ^ banned (www.indiatoday.in)
  21. ^ virtual private network (www.vpnmentor.com)
  22. ^ involve (www.businessinsider.com)
  23. ^ deletion (www.theverge.com)
  24. ^ China could be using TikTok to spy on Australians, but banning it isn’t a simple fix (theconversation.com)

Read more https://theconversation.com/concerns-over-tiktok-feeding-user-data-to-beijing-are-back-and-theres-good-evidence-to-support-them-186211

Times Magazine

Headless CMS in Digital Twins and 3D Product Experiences

Image by freepik As the metaverse becomes more advanced and accessible, it's clear that multiple sectors will use digital twins and 3D product experiences to visualize, connect, and streamline efforts better. A digital twin is a virtual replica of ...

The Decline of Hyper-Casual: How Mid-Core Mobile Games Took Over in 2025

In recent years, the mobile gaming landscape has undergone a significant transformation, with mid-core mobile games emerging as the dominant force in app stores by 2025. This shift is underpinned by changing user habits and evolving monetization tr...

Understanding ITIL 4 and PRINCE2 Project Management Synergy

Key Highlights ITIL 4 focuses on IT service management, emphasising continual improvement and value creation through modern digital transformation approaches. PRINCE2 project management supports systematic planning and execution of projects wit...

What AI Adoption Means for the Future of Workplace Risk Management

Image by freepik As industrial operations become more complex and fast-paced, the risks faced by workers and employers alike continue to grow. Traditional safety models—reliant on manual oversight, reactive investigations, and standardised checklist...

From Beach Bops to Alpine Anthems: Your Sonos Survival Guide for a Long Weekend Escape

Alright, fellow adventurers and relaxation enthusiasts! So, you've packed your bags, charged your devices, and mentally prepared for that glorious King's Birthday long weekend. But hold on, are you really ready? Because a true long weekend warrior kn...

Effective Commercial Pest Control Solutions for a Safer Workplace

Keeping a workplace clean, safe, and free from pests is essential for maintaining productivity, protecting employee health, and upholding a company's reputation. Pests pose health risks, can cause structural damage, and can lead to serious legal an...

The Times Features

Distressed by all the bad news? Here’s how to stay informed but still look after yourself

If you’re feeling like the news is particularly bad at the moment, you’re not alone. But many of us can’t look away – and don’t want to. Engaging with news can help us make ...

The Role of Your GP in Creating a Chronic Disease Management Plan That Works

Living with a long-term condition, whether that is diabetes, asthma, arthritis or heart disease, means making hundreds of small decisions every day. You plan your diet against m...

Troubleshooting Flickering Lights: A Comprehensive Guide for Homeowners

Image by rawpixel.com on Freepik Effectively addressing flickering lights in your home is more than just a matter of convenience; it's a pivotal aspect of both home safety and en...

My shins hurt after running. Could it be shin splints?

If you’ve started running for the first time, started again after a break, or your workout is more intense, you might have felt it. A dull, nagging ache down your shins after...

Metal Roof Replacement Cost Per Square Metre in 2025: A Comprehensive Guide for Australian Homeowners

In recent years, the trend of installing metal roofs has surged across Australia. With their reputation for being both robust and visually appealing, it's easy to understand thei...

Why You’re Always Adjusting Your Bra — and What to Do Instead

Image by freepik It starts with a gentle tug, then a subtle shift, and before you know it, you're adjusting your bra again — in the middle of work, at dinner, even on the couch. I...