Citizen Lab is a national treasure. I really enjoy reading about what they do.
I'm skeptical. Citizen Lab is great, but just because they didn't reply doesn't mean these issues weren't worked on or fixed. They tested 8.59.2
and the current US version is 8.59.5
with the current Chinese version being 8.70.6
.
There's been dozens of updates since the test, so it's hard say if these test are even valid anymore. Additionally;
Network attackers can read users’ file a contents on the Android versions of the application available for download on RedNote’s website and on the Mi Store, but not in the version downloaded from the Google Play Store or the iOS version.
The major security issue isn't even possible as long as you get them directly from the Play Store.
That may have been addressed on Android, I got an update yesterday
I'm not particularly worried about those vulnerabilities. Unfortunately, they are pretty common AFAIK, but at-least they pretty much only open a backdoor within whatever network you're connected to, and can be mitigated with a VPN.
IMO, there's much bigger reasons to be worried about RedNote than security or even privacy.
IMO, there's much bigger reasons to be worried about RedNote than security or even privacy.
What are those reasons?
Technology
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related content.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, to ask if your bot can be added please contact us.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.