ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

TikTok investigates claims of major data breach by hacker group R00TK1T

A hacker collective known as R00TK1T has claimed responsibility for breaching TikTok’s user database, alleging the theft of login credentials for more than 900,000 users and the deletion of individual accounts. The group made the announcement on underground forums, sharing screenshots purportedly showing deleted account confirmations, database snippets, and download links to the allegedly stolen data.


In a statement posted to a popular dark web forum, a R00TK1T spokesperson wrote, "We have penetrated TikTok. 900k+ users compromised. Accounts are being deleted at will." The group, which has previously drawn attention within the hacking community for bold but often unverified claims, has yet to provide conclusive evidence to support its latest allegations.


TikTok responded by stating that it is taking the situation seriously and has launched an active investigation into the matter. "At this time, we have not found evidence of a breach affecting user accounts on the scale described," a TikTok spokesperson said. The company emphasized the importance of cybersecurity best practices, urging users to adopt strong, unique passwords, enable two-factor authentication, and avoid downloading leaked files or inputting credentials on untrusted websites.


Cybersecurity analysts have advised caution regarding R00TK1T’s assertions. Elena Zhou, a cyber threat researcher, noted that the group has a history of inflating the scale and impact of its activities to garner attention. "R00TK1T regularly exaggerates impact for attention. We’ll need independent verification and technical analyses before confirming any widespread breach," Zhou said.


Preliminary reviews of the leaked data suggest that portions of the information may have been recycled from older breaches or fabricated altogether. Security experts are continuing to analyze the dataset to determine its authenticity and the true extent of any potential breach.


Meanwhile, users are being encouraged to act proactively by changing their account passwords, enabling two-factor authentication, and exercising caution when encountering suspicious links or unsolicited data downloads. Although the claims from R00TK1T have yet to be substantiated, the situation serves as a reminder of the importance of maintaining strong personal cybersecurity practices.


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543