UC Browser
In this report we analyze Windows and Android versions of web browser UC Browser, and find they transmitted personally identifiable information with easily decryptable encryption and were vulnerable to arbitrary code execution during software updates.
Citizen Lab Senior Research Fellow Jason Q. Ng spoke to the China Economic Review on the findings of the UC Browser report, and the impact of security vulnerabilities on users.
Our report reveals that UC Browser poorly secures data in its English and Chinese language versions for Android.
UC Browser is the most popular mobile web browser in China and India, boasting over 500 million users. This report provides a detailed analysis of how UC Browser manages and transmits user data, particularly private data, during its operation. Our research was prompted by revelations in a document leaked by Edward Snowden on which the Canadian Broadcasting Corporation (CBC) was preparing a story.