Raleigh, NC

32°F
Scattered Clouds Humidity: 79%
Wind: 2.06 M/S

Global TikTok Scam Uses Fake Shops and Spyware to Steal Users’ Data and Funds

Global TikTok Scam Uses Fake Shops and Spyware to Steal Users’ Data and Funds

A new scam called ClickTok is tricking TikTok Shop users with fake websites and mobile apps. Using AI-generated content and realistic branding, the scheme steals personal data, drains crypto wallets, and installs spyware on victims’ devices. 

The scam mimics TikTok Shop, TikTok Mall, and TikTok Wholesale with over 15,000 fake websites featuring convincing logos, product reviews, and influencer endorsements. These ads run on platforms like Facebook, TikTok, WhatsApp, and Telegram, luring users with unbelievable discounts. 

Once users click the ads, they’re led to lookalike sites or prompted to download a fake TikTok app. This app, reported by cybersecurity firm CTM360, contains Spyware called SparkKitty, which secretly sends data to attackers. When users try logging in, the app pretends their details are incorrect and suggests logging in with Google. This lets attackers hijack accounts using OAuth tokens. 

The scam doesn’t stop at stolen accounts, it also targets cryptocurrency. Victims are tricked into paying with Tether or other untraceable digital coins for fake products or commissions. Fake dashboards show inflated earnings and require “top-ups” to withdraw, leading users to lose more money. 

Although TikTok Shop officially runs in just 17 countries, ClickTok targets users globally, thanks to TikTok’s widespread popularity. The campaign constantly evolves with new lures and AI visuals to bypass detection. 

How to Avoid ClickTok 

  • Be wary of websites with cheap domains like .shop, .top, or .icu. 
  • If you see a TikTok Shop dashboard without owning a business or creator account, it’s likely fake. 
  • Avoid deals that seem too good to be true, especially from ads or DMs. 
  • Only download apps from official stores like Google Play or Apple’s App Store. 

 

Found this article interesting? Follow us on X(Twitter) ,Threads and FaceBook to read more exclusive content we post. 

Image

With Cybersecurity Insights, current news and event trends will be captured on cybersecurity, recent systems / cyber-attacks, artificial intelligence (AI), technology innovation happening around the world; to keep our viewers fast abreast with the current happening with technology, system security, and how its effect our lives and ecosystem. 

Please fill the required field.