Reverse Engineering of a Huawei P20 from China
twitter.com
twitter.com
The real issue is that most phone makers have tons of unnecessary services pre-installed in their phones, such as social media login, location tracking, and cloud storage. It would be better to design/license Android OS in a way that gives user complete control on what is pre-installed.
(a) Sending info over plain HTTP to non-secure sites based in China
(b) Sending all your browser and other online activity to a site called track.uc.cn
I thought that the government has its fingers in all the tech companies so whether the data are encrypted or not doesn't matter?
This is just guessing. If I have to bet, I'd as well bet that Google/Samsung/ISPs/Everyone is spying on you, but just guessing and shrugging it off is not helping.
We should be inspired to check even more devices and inform users about backdoor traffic.
I was talking to a none tech friend from the US and when I mentioned Huawei he went on a rant how they are Chinese spy devices.
Meanwhile here in Europe Huawei phone are quite popular and sold through carriers.
https://consumer.huawei.com/en/opensource/
The harder part is to go though the source code.
Things like the evil services in the article are not open source at all.
Disclaimer: I have a Huawei P10. Awesome product.
Better be smart with what you actually do with the phone and what kind of data/apps you use it for.
Nobody knows for sure of course unless you have access to the relevant code but Apple is at least not in the business of selling data to advertisers or needs to bolster their budget with buy in from data mining companies.
French security researcher. Worst nightmare of Oneplus,
Wiko, UIDAI, Kimbho, Donald Daters and others.
I wonder how he thinks about 1+'s security comparing to Huawei's.