• Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
No Result
View All Result
Home Mobile Phones Android Phones

Xiaomi Smartphones Discovered To have Pre-Installed Security Flaw

by Yin Shen
April 5, 2019
Share on WhatsappShare on TelegramThreads

Most smartphones come with pre-installed apps out of the box. Some might be useful and some might not even be used at all. Check Point Research recently found out that Xiaomi’s pre-installed security app suffers from a security flaw that could affect millions of Xiaomis smartphones.

The pre-installed app is called Guard Provider, and contains anti-virus scanners from Avast, AVL and Tencent that serve to detect potential malware. The security flaw found by the researchers lies within the app’s update mechanism.

According to Check Point Research, the security app receives updates through an unsecured HTTP connection. Attackers could take advantage of the Avast Update APK to insert the malware via a man-in-the-middle (MITM) attack. However, the attackers will need to be connected to the same Wi-Fi network as the targeted Xiaomi device.

On a relative note, Check Point Research also pointed out the disadvantages of using several SDKs within the same app; because they all share the app context and permissions, a problem in one SDK could very easily compromise the protection of others. Thus, private data on an SDK cannot be isolated therefore can also be accessed by the others.

Xiaomi has already released a patch to fix the security flaw. It’s understandable that users would trust the phone manufacturers’ pre-installed apps, but it’s clear that even they can slip up sometimes.

(Source: Android Authority, Check Point Research// Image: Check Point Research)

RELATED:  Xiaomi 17 Series, Xiaomi Tag Global Launch Slated For 28 February 2026
Filed Under Anti VirusAvastsecurity flawtencentxiaomi
Updated 11:07 am, Fri, 5 April 19
http://lowy.at/wFOIc
SendShareShareShare1Tweet1

Follow us on Instagram, Facebook, Twitter or Telegram for more updates and breaking news. 

No Result
View All Result

TRENDING THIS WEEK

  1. 1
    Fintech

    TNG Digital Retracts RON95 Subsidy Initiative, Issues Apology

  2. 2
    Fintech

    TNG eWallet Gets Physical Customer Service Hub At Kota Raya

  3. 3
    Automotive

    BYD Reportedly Reconsidering Tanjung Malim CKD Plans

  4. 4
    Telco

    China Mobile’s CMLink Now Offers Prepaid Plans In Malaysia; Priced From RM25/Month

  5. 5
    Automotive

    Tesla Officially Launches Model Y L In Malaysia; Pricing To Start From RM260,000

NETWORK

  • Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks

ABOUT

  • Advertise
  • Careers
  • Privacy Statement
  • Editorial Policy
  • Terms of Use
  • Contact Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Banking
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Banking
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.