It must be the season for API security incidents. Hot on the heels of a developer leaking an API key for private Tesla and SpaceX LLMs, researchers have now discovered a set of tools for validating account information via API abuse, leveraging undocumented TikTok and Instagram APIs. The tools, and assumed exploitation, involve malicious Python […]
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2025/05/attackers-abuse-tiktok-and-instagram-apis/
![]()

