In this report, we analyze the Windows, Android, and iOS versions of Tencent’s Sogou Input Method, the most popular Chinese-language input method in China. Our analysis found serious vulnerabilities in the app’s custom encryption system and how it encrypts sensitive data. These vulnerabilities could allow a network eavesdropper to decrypt sensitive communications sent by the app, including revealing all keystrokes being typed by the user. Following our disclosure of these vulnerabilities, Sogou released updated versions of the app that identified all of the issues we disclosed.
Vulnerabilities in Sogou Keyboard encryption expose keypresses to network eavesdropping.
no, people who do this are shilling for China and/or tiktok. we all know this.
and yes the raw keyboard data going directly from your fingers to the government is not something that likely happens in the US, so either way this is a false equivalence.
no, people who do this are shilling for China and/or tiktok. we all know this.
and yes the raw keyboard data going directly from your fingers to the government is not something that likely happens in the US, so either way this is a false equivalence.
Removed by mod
yeah, Snowden probably wouldn’t be really into the idea that we shouldn’t talk about what China is doing it because “everyone else is too”.
Removed by mod
he’s also not a bad-faith actor on an anonymous platform
Removed by mod
but you are defending those who want that to be the whole discussion. blocking you now.
Removed by mod