Xiaomi Smartphone Users Beware !! It has been collecting its millions of smartphone users private sensitive data. Also, Xiaomi is storing this private sensitive information on servers located in Russia and China.
Gabi Cirlig who is a security expert has found that his Redmi Note 8 smartphone was collecting his internet activity includes a history of visited sites, queries on search engines, etc and also forwarded this sensitive information to servers located in China and Russia.
The popular browser applications from the Xiaomi smartphone like Mi Browser Pro, Mint Browser which is included by default in Xiaomi's smartphones are stealing user's browsing behavior even if users are browsing through the incognito mode of browser.
Gani Cirlig also found that this could be happening in other Xiaomi's smartphones as well includes Xiaomi Mi MIX 3, Xiaomi Mi 10, Redmi K20. Because all Xiaomi's smartphones share the same browser code.
Gani Cirlig also demonstrated this and capture a video in which he explained how a search of random word and visit of a website in incognito mode is collected and forwarded to the server.
This browsing information is packaged and protected with base64 encoding. However, this protection can be broken easily as a result, users' data could expose. Also, these packages send information like the version of Android installed on the system, and unique device ID.
According to the analysis done by Gani Cirlig, this information is collected by the company named Sensor Analytics and Xiaomi uses its service to improve its users' behavior.
Also, the data collection is not limited to the smartphone user's internet activity but it also collects the information about the user's interaction with the smartphone's status bar and user's behavior when sliding screens.
In response, Xiaomi stated that all claims of security researchers are false and they hadn't collected its user's behavioral data. but at last, the company accepted that they have secretly collected the navigation data.
However, from a security researcher's video, it is clear that Xiaomi is not only collecting navigation data but also collecting its user's behavioral data anonymously. So, Be aware of this thing.
If you have any questions related to Xiaomi's this behavior and also want to share your views on this then please mention in the comments box and I will get back to you and stay tuned with my blog.