Antivirus Firm Accuses Xiaomi MIUI with Various Security Flaws

Main Image
  • Like
  • Comment
  • Share

An Indian Anti-virus firm, eScan, has slammed Xiaomi’s MIUI for its severe security vulnerabilities and flaws. The firm released a report which says that MIUI poses a significant threat for apps and user data on phones.

While Xiaomi has denied these accusations, eScan in its report have severely criticized various MIUI features like their uninstall process, Smart-locking feature, and Mi Mover app. Interestingly, the report doesn’t just stop at Xiaomi but, also blames app developers for ignoring such security concerns.

Also Read: Lenovo K8 Note vs Xiaomi Redmi Note 4 – A ‘Note’worthy Fight

eScan blames MIUI Features

According to eScan, MIUI lacks an authentic app uninstall process. Their report read that “the process of uninstall of security apps like the antivirus, implemented in MIUI poses a significant security threat since the authentication process implemented by the app is bypassed.”

The report also reflected some of the flaws with Mi Mover app, which is Xiaomi’s ideal app for cloning your device. eScan says that while cloning with Mi Mover, it copies everything including logged-in credentials for apps, history, wallets and conducted operations, which poses a significant security threat.

The point eScan is making is that on the new Xiaomi phones, apps have to ask for re-authentication, which doesn’t happen if these are being set-up via Mi Mover.

Responding to the above allegation, Xiaomi said “Mi Mover is designed to be a convenient tool for our users to move their data from an old smartphone to a new phone. In order for Mi Mover to initiate this process, a password is required. More importantly, in order to use Mi Mover, the smartphone has to be unlocked. Thus, there are two layers of protection for the user – phone lock and a Mi Mover password that are necessary.”

The eScan’s report also warned Xiaomi users from using Xiaomi’s “Smart-Locking” option, as it can automatically unlock the devices without any pin, pattern or other security option.

Xiaomi’s Defence

Also Read: Xiaomi Mi 5X With Dual Cameras To Launch In India In September

Defending their MIUI software, Xiaomi released a statement that totally disagreed with eScan reports. A statement from the company spokesperson states, “Escan earlier today shared a report which list few concerns in MIUI. We strongly disagree with the allegations made by Escan in their report. As a global Internet company, Xiaomi takes all possible steps to ensure our devices and services adhere to our privacy policy.” 

The statement adds, “Any perpetrator who gains physical access to an unlocked phone, is capable of malicious activity and an unlocked phone is greatly at risk of user data being stolen.  This is why, we at Xiaomi encourage our users to be more aware of guarding their private data using PIN, Pattern locks, or the onboard fingerprint sensor available on most of our smartphones. In fact, prompting users to enable fingerprint lock is a standard step when setting up a Xiaomi smartphone for first use.”

Ashish KumarAshish Kumar
He is Journalism graduate, sports lover, and a passionate reader. Just like others his eyes is also filled with dreams and believes that one day those dreams will come true. Cheers!

Related Articles

ImageOnePlus Backtracks: Gemini Ultra Not Coming to Phones After All

Remember how OnePlus apologized for mistakenly advertising the UFS 3.1 storage in the OnePlus 12R as UFS 4.0? Something similar has happened again. At the Google Cloud Next ’24 event, OnePlus announced its ties with Google for bringing the Gemini 1.0 Ultra, Google’s largest and most capable model for highlighting complex tasks, to its smartphones …

ImageMIUI 11 Features, Changelog and the Eligible Xiaomi Phones with Download Links

MIUI 11 has launched on Xiaomi’s big event on September 24 which witnessed the unveiling of Mi 9 Pro and Mi Mix Alpha. Earlier this month, the MIUI 11 beta version 11.9.9.9 had rolled out accidentally which gave us a peek into the new features. Now that the update is official, we have all of …

ImageHow to disable Ads in MIUI 12 using a single toggle

Ads are commonplace in MIUI. They are ubiquitous, intrusive, and mars the user experience. Some folks walk away from Xiaomi phones for this exact reason. Still, MIUI is married with adverts because that’s the main source of Xiaomi’s revenue. Last year, the company CEO Lei Jun revealed that MIUI will clamp down on ads, especially …

ImageXiaomi’s HyperOS Won’t Support Devices With Unlocked Bootloaders

In October 2023, the Chinese smartphone manufacturer Xiaomi revealed HyperOS, its new operating system that will replace MIUI. The company says HyperOS unifies its vast ecosystem of devices, improving integration by introducing low-level refactoring, intelligent connectivity, proactive intelligence, and better security. Speaking of security, the company also plans to limit HyperOS to devices with locked …

ImageCheck out Xiaomi’s list of phones to get HyperOS update globally in 1H 2024

Xiaomi’s HyperOS made its debut in China last year. It took HyperOS up until January 2024 rolled in to arrive globally starting with Xiaomi 12 Pro and Xiaomi Pad 6 in India last month. Cut to now, Xiaomi has confirmed a global rollout for HyperOS that will replace the current-gen MIUI 14 and we have …

Discuss

Be the first to leave a comment.