Baidu’s and Don’ts: Privacy and Security Issues in Baidu Browser

This report describes privacy and security issues with Baidu Browser, a web browser for the Windows and Android platforms. Our research shows that the application transmits personal user data to Baidu servers without encryption and with easily decryptable encryption, and is vulnerable to arbitrary code execution during software updates via man-in-the-middle attacks. Much of the data leakage is the result of a shared Baidu software development kit, which affects hundreds of additional applications.

Ron Deibert hosted Q&A with Snowden attorney Ben Wizner

Citizen Lab Director Ron Deibert hosted a Q&A session with Ben Wizner, Director of the American Civil Liberties Union’s (ACLU) Speech, Privacy, and Technology Project, and attorney for NSA whistleblower Edward Snowden. The event followed the screening of the CITIZENFOUR film.

Christopher Parsons on Canada’s monitoring of social media

Canada’s Department of National Defence, and its associated research wing, Defence Research and Development Canada (DRDC), are looking to purchase software to analyze social media streams in real-time. Christopher Parsons weighs in on concerns of the possibility of accidentally collecting Canadians’ personal information.