Security News

Cybersecurity news aggregator

INFO News The Hacker News

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

  • What: TikTok settles a U.S. child privacy lawsuit
  • Impact: U.S. users, especially minors
Read Full Article →

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit  Ravie Lakshmanan  Aug 22, 2026 Privacy / Regulation The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024 lawsuit accusing the company of violating child privacy laws in the country. As part of the settlement, the social media platform will pay $300 million immediately, and an additional $100 million "upon entry of an order vacating a prior consent decree entered against TikTok’s predecessor, Musical.ly," the DoJ said in a press release. A complaint filed back in August 2024 alongside the Federal Trade Commission (FTC) accused the company of "massive-scale invasions of children's privacy" by knowingly allowing children under 13 to create TikTok accounts and unlawfully collecting data from those who used it in "Kids Mode." It further alleged TikTok and its parent company ByteDance failed to "comply with parents' requests to delete their children's accounts and information." At the time, the company disputed the arguments, stating many of them related to "past events and practices" that were either "factually inaccurate or have been addressed." The DoJ characterized the settlement as "one of the largest recoveries ever" obtained in connection with U.S. federal child privacy law, also referred to as the Children's Online Privacy Protection Act ( COPPA ). It also noted that the tech company has since implemented extensive measures to improve safeguards for younger users, strengthen age-related controls, and improve parental oversight. "This settlement is a major victory for American children and parents," said Associate Attorney General Stanley E. Woodward Jr. "The Department's priority is ensuring that children are protected online and that companies entrusted with their personal information meet their legal obligations. This resolution secures a substantial recovery while reinforcing the protections that families expect and deserve." This is not the first time TikTok has landed in regulatory crosshairs over child data privacy. In September 2023, TikTok was levied a €345 million fine for violating the European Union's General Data Protection Regulation (GDPR) in relation to its processing of children’s personal data. Earlier this year, a U.S. joint venture allowed the app to continue operating in the country without a ban in accordance with a divest-or-ban law upheld by the Supreme Court. Found this article interesting? Follow us on Google News , Twitter and LinkedIn to read more exclusive content we post. SHARE      Tweet  Share  Share  Share   Share on Facebook  Share on Twitter  Share on Linkedin  Share on Reddit  Share on Hacker News  Share on Email  Share on WhatsApp Share on Facebook Messenger  Share on Telegram SHARE  Child Safety , data privacy , data protection , Online Safety , Privacy , Regulatory Compliance , Social Media ⚡ Top Stories This Week Microsoft Patches Severe Entra ID Flaw (CVSS 10.0) Allowing Remote Code Execution ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps AI "Mind Viruses" Can Spread Between Agents Through Persistent Prompt Files SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE Attackers Exploit SharePoint Authentication Bypass After Public PoC Release Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access ⭐ Featured Resources See How Keeper Secrets Manager Removes Hard-Coded Credentials Download the CISO's Guide to Smarter AI Security Investment Phishing Is Costing Security Teams More Than Ever — Read the New Report Build AI Agents and Automations Without Losing Security Control

Share this article