Android Century
  • Home
  • Android Zone
    • Android Apps
    • Android Games
    • Apps APk Files
    • Games Apk Files
    • Apps Hack Tricks
  • Reviews
  • Fantasy Zone
    • Entertainment
    • Quotes and Status
    • Life Style
    • Home Made Tips
    • Hair Care
    • Skin Care
    • Fantasy Tips
  • Tricks
    • Free Recharge
    • Free Internet
    • shopping Cashback
    • Recharge Cashback
  • Tech
  • Mobiles
  • Gadgets
  • News
  • How To's
  • Software
Breaking
  • How to Take Great Photos With Apple's iPhone X
  • Samsung Galaxy S9+ Review
  • Asus VivoBook 15 (X510UA) Review
  • Xiaomi Redmi 5 with 18:9 display
  • Vivo V9 with dual rear cameras
  • Xiaomi Redmi 5 launch
  • Vodafone partners with Tecno to offer Rs 2200 cashback
  • LG G7 with iPhone X-like notch
  • Oppo F7 India launch confirmed
  • Alcatel 1x with Android Oreo (Go edition) announced in India
  • Huawei P20, P20 Pro, P20 Lite price
  • Xiaomi MIUI 9 global stable ROM rolling out for all smartphones
  • Nokia 9 to sport iPhone X-like notch
  • Samsung Galaxy S9 passes scratch
  • Huawei Y9 2018 with four cameras, 4000mAh battery launched
  • OnePlus 5T gets Android 8.1 Oreo in open beta 4
  • Samsung Galaxy Note 9 won’t get under-display fingerprint scanner
  • Oppo F7, Mi Mix 2S, LG G7 and more
  • Oppo F7 with iPhone X-style notch to launch
  • Motorola could cancel Moto X5, layoffs hit Chicago office

Featured post

How to Take Great Photos With Apple's iPhone X

Recent Posts

Labels

  • Android Apk Files
  • Android Apps
  • Android Games
  • Apps Apk Files
  • Entertainment
  • Fantasy Tips
  • Gadgets
  • Hair Care
  • HomeMade Tips
  • How To's
  • News
  • Quotes
  • Quotes & Status
  • Recharge Cashback
  • Recharge Promo Codes
  • Shopping Cashback
  • Technology
  • skin care
Home / Mobiles / News / eScan report says MIUI has security flaws

eScan report says MIUI has security flaws

Latest Govt. Jobs 21:40:00 Mobiles , News Edit
Image result for eScan report says MIUI has security flawseScan report claims Xiaomi’s MIUI has multiple security issues, but the company has denied this is true.
According to eScan, there are some key problems with Xiaomi’s MIUI. For instance, the report says MIUI’s system app poses a threat to ‘Security app’s like anti-virus, etc, because when it comes to the un-installation, the system doesn’t ask for a password. The report says, “From a security point of view, the process of un-install implemented in MIUI poses a significant security threat since the authentication process implemented by the app is bypassed.” It also claims all security apps on Xiaomi phones are affected by this design flaw.A new report by security firm eScan has claimed Xiaomi’s MIUI has multiple security vulnerabilities and flaws. The report says MIUI poses a significant threat for apps and user data on the phones. Xiaomi on its part has denied this is true and is disputing the eScan report. Interestingly the report doesn’t just stop at Xiaomi, but also blames app developers for ignoring security concerns.
The report adds Xiaomi’s MIUI is not ideal of handling work-related profiles, and says that MIUI doesn’t “properly label” these. The report also raises security concerns over the Mi Mover app, which allows for complete data transfer from Xiaomi to Xiaomi smartphones, and also Xiaomi to other branded smartphones. According to the report, Mi Mover app copies all the data, including logged-in credentials for apps, which poses a significant security threat.
According to eScan, the problem is the Xiaomi Mi-Mover “can access App-System-Data which allows cloning of the End-User apps.” Even in the new Xiaomi phone, “all the applications allowed the user to log into the app and allowed access to all the history, wallets and conducted operations as if both the devices are same,” notes the report. IRCTC app was the only exception to this, and asked for registration again.
The point eScan is making is that on the new Xiaomi phone, apps have to ask for re-authentication, which doesn’t happen if these are being set-up via Mi Mover.  It is also asking Xiaomi users not to enable the “Smart-Lock,” option which can automatically unlock devices.
But the report admits that in some cases the bugs are theoretical and that device would have to be stolen, along with the pin/password/pattern for the account to get accessed. It reads, “Facebook Theoretical bug, the end-user has to protect the phone from getting stolen and has to implement pattern/Passcode on the device.” eScan’s report adds in the end that Xiaomi will be “issuing a patch as per the schedule,” though the date is not confirmed. The report says “app developers are also equally responsible” for some of these flaws.
Xiaomi has disagreed with this report. A statement from the company spokesperson states, “Escan earlier today shared a report which list downs few concerns in MIUI. We strongly disagree with the allegations made by Escan in their report. As a global Internet company, Xiaomi takes all possible steps to ensure our devices and services adhere to our privacy policy.” 
The statement adds, “Any perpetrator who gains physical access to an unlocked phone, is capable of malicious activity and an unlocked phone is greatly at risk of user data being stolen.  This is why, we at Xiaomi encourage our users to be more aware of guarding their private data using PIN, Pattern locks, or the onboard fingerprint sensor available on most of our smartphones. In fact, prompting users to enable fingerprint lock is a standard step when setting up a Xiaomi smartphone for first use.”  
Mi Mover is designed to be a convenient tool for our users to move their data from an old smartphone to a new phone. In order for Mi Mover to initiate this process, a password is required. More importantly, in order to use Mi Mover, the smartphone has to be unlocked. Thus, there are two layers of protection for the user – phone lock and a Mi Mover password that are necessary.
Further, as per the Escan report, a vendor’s Security Team replied, “As part of exploiting the issue you describe, someone needs to take control of a user’s mobile phone and get that phone in an unlocked state. This is a very high barrier to entry and seems unlikely to happen commonly, making this more of a theoretical attack. The protection, in this case, is to not allow someone to steal and unlock your phone.”
Share on Facebook Share on Twitter Share on Google Plus

RELATED POSTS


Xiaomi Redmi 5 launch

Vodafone partners with Tecno to off...

LG G7 with iPhone X-like notch
eScan report says MIUI has security flaws eScan report says MIUI has security flaws Reviewed by Latest Govt. Jobs on 21:40:00 Rating: 5

0 comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments ( Atom )

Search This Blog

TEST BOOK FOR GOVT ENTRANCE TEST

TEST BOOK FOR GOVT ENTRANCE TEST
Find All Latest book for preparation of SSC,RAILWAYBANK PO,RBI,BANK CLERK,GATE ME,GATE CE are available here in less prices, to check out the books click here

Translate

  • Popular Post
  • Random posts
  • Category

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & Earn Offer:  Hey Guys! Today I make an article about Teen Patti Referral ...
  • Taotronics TT-BH22 Headphones Review
    We make it a addiction to now not look up pricing of a product sooner than reviewing and if ...
  • Hands-on with the home windows 10 Creators update for the Xbox One: Beam recreation streaming arrives
    The Windows 10 Creators Update is here, now—yes,  now —but not (officially) on the PC. The ...
  • Reliance Jio to offer sharp tariff discounts for customers signing up by March-end
    Reliance Industries' Jio unit will charge a tariff for its services from April, but will offer ...
  • Pentagon strongly condemns North Korea missile test
    The Pentagon on Monday strongly condemned North Korea’s latest missile test, adding that the ...
  • Fitbit Zip 2017 review
    Fitbit PROS: Clever, accurate tracking Expandable online service Integration with 3rd ...

Random Posts

  • Helpchat CARDSECASH Offer – Get Rs 50 Cashback on Rs 300 Recharge using Credit Card (New Users)
    Helpchat CARDSECASH Offer – Get Rs 50 Cashback on Rs 300 Recharge using Credit Card (New Users)
    26.04.2016 - 0 Comments
    Helpchat CARDSECASH Offer – Helpchat is again here with an awesome offer in which you can get flat Rs 50…
  • Nokia's decision to stick with stock Android is a stroke of genius
    Nokia's decision to stick with stock Android is a stroke of genius
    02.03.2017 - 0 Comments
    The buzz surrounding Nokia's keynote at this year's Mobile World Conference was…
  • Brainwavz launches two earphones in B-Series, starting at Rs 4,199
    Brainwavz launches two earphones in B-Series, starting at Rs 4,199
    04.02.2017 - 0 Comments
    Brainwavz has launched two new earphones in its B-series, which are called the B 100 and B 150. The…
  • How to Disable Screenshots On Your Apple Watch
    How to Disable Screenshots On Your Apple Watch
    26.02.2017 - 0 Comments
    If you find yourself accidentally taking screenshots of your Apple Watch and filling up your iPhone’s…
  • Samsung Pay may soon be coming to your smartphone
    Samsung Pay may soon be coming to your smartphone
    02.03.2017 - 0 Comments
    South Korean tech giant Samsung will be rolling out…

Labels

Android Apk Files Android Apps Android Games Apps Apk Files Apps Hack Tricks Entertainment Free Internet Freecharge Gadgets Games Apk Files How To's Laptops Guide Mobiles Reviews Technology Viral's android zone free recharge

Entertainment

Tricks

Popular Posts

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • Hands-on with the home windows 10 Creators update for the Xbox One: Beam recreation streaming arrives
    The Windows ...
  • Taotronics TT-BH22 Headphones Review
    We make it a ...
  • This week in video games: Oculus founder departs, Mad Catz shutters, Battlefield 1 gets friendly
    In the grand ...
  • Paytm Hostel Booking Offer HTL40 – Get 40% cashback On No Minimum Order Value (2 Times)
    Paytm Paytm Hostel ...
  • Now Paytm offering extra benefits worth of Rs. 381 on Reliance Jio Prime recharges
    Paytm, the most ...
  • Top 10 Android Games in India
    Top 10 Android Games in India
    Top 10 Android ...

Random Posts

  • How to restore your WhatsApp account
    How to restore your WhatsApp account
    18.02.2018 - 0 Comments
    Losing a smartphone in today's day and age is nothing less than a nightmare. For, so much of our data,…
  • Classic and retro arcade games for Android
    Classic and retro arcade games for Android
    29.11.2016 - 0 Comments
    Sometimes you just can’t beat a classic arcade game. It’s like driving a mechanical car — sturdy and…
  • IBM brings Salesforce
    IBM brings Salesforce
    14.02.2018 - 0 Comments
    Technology giant IBM today launched Bluewolf, a Salesforce consulting agency, in India as it aims to…
  • Flagship Ryzen 1800X processor has already set a world record benchmark
    Flagship Ryzen 1800X processor has already set a world record benchmark
    24.02.2017 - 0 Comments
    Yesterday witnessed the official reveal of AMD’s exciting new Ryzen processors –…
  • Vodafone awards Rs 2,040-crore 4G contract to Ericsson
    Vodafone awards Rs 2,040-crore 4G contract to Ericsson
    15.02.2017 - 0 Comments
    Vodafone India has awarded a 4G deployment contract worth $300 million (about Rs 2,040 crore)…

Most Popular

  • Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Offer 2018: Refer and Earn Flipkart Vouchers Free
    Teen Patti Refer & ...
  • SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J7 (2016) REVIEWS
    SAMSUNG GALAXY J ...
  • Top 5 Best SmartPhones under 7000 Rs (March 2017)
    Looking for the ...
  • Apple, IBM, Cisco are huge because of Indians, do not deny them H-1B visa: RBI Governor Urjit Patel
    ...
  • SAMSUNG GALAXY J7 (2016) Specifications
    SAMSUNG GALAXY J ...
  • BlackBerry Teases Marshmallow Beta Testing for Priv by Next Week
    Blackberry ...
  • LG Q6 Review
    LG Q6 Review
    2017 is ...

Contact Form

Name

Email *

Message *

Offers Zone

Created By Android Century Distributed by Android Century
  • Home
  • About us
  • Contact us
  • Privacy policy
  • Terms of use
  • Advertise here
Subscribe Via Email Subscribe To Android Century By Email And Get Free Updates. ;-)


Your email address is safe with us!