Chinese Firm Installed Back Door on Thousands of Smartphones; Says It Was a Mistake

Advertisement
By Gadgets 360 Staff | Updated: 16 November 2016 14:38 IST
Highlights
  • The personal data was collected via a back door software made by AdUps
  • The software was installed on all Blu R1 HD phones
  • AdUps also manages software updates for Huawei and ZTE

A security firm claims it has found mobile phone firmware on smartphones being sold in the US that transmitted personally identifiable information (PII) to servers in China via a back door. Several such reports have emerged over the years, and conspiracy theories usually point to the Chinese government being the ultimate beneficiary of the data. The software company in question - Shanghai Adups Technology - however claims that this is not the case, and that the software meant for a Chinese manufacturer was mistakenly included in US devices.

Security firm Kryptowire says it has found several models of Android smartphones being sold through US retailers like Amazon and Best Buy that contained the contentious firmware. These models included the Blu R1 HD, which gained popularity due to its very low price of $50 (subsidised by ads) and was sold exclusively through Amazon. The common denominator between the smartphones was the presence of commercial Firmware Over The Air (FOTA) made by Adups, a back door found to be collecting and transmitting sensitive data to its servers in China, apart from having the ability to executive remote commands with escalated privileges and the ability to reprogram devices.

Information that was collected and transmitted included the full-body of text messages, contact lists, call history with full telephone numbers, unique device identifiers including the International Mobile Subscriber Identity (IMSI) and the International Mobile Equipment Identity (IMEI) from a user's phone. In some versions of the software, it even included fine-grained location. This transfer was happening without any initiation to the customer. Notably, even anti-virus and other security software on phones were not able to discover the threat, as they normally disregard software already bundled on the phone by the smartphone manufacturer.

Advertisement

As mentioned, the software was spotted in the Blu R1 HD smartphone, and Kryptowire informed Google, Amazon, Blu, and Adups of the issue. Both Blu and Amazon were fast to react to the issue. Blu has issued a software update that will apparently fix the 'potential security issue', which is said to affect 120,000 of its devices. Furthermore, the Blu R1 HD, which was being sold on Amazon exclusively, is no longer listed on the website as well. Amazon is also informing users that their smartphones will receive an update.

Advertisement

AdUps itself has defended itself and its intentions, saying the data is not linked to the Chinese government. According to a document provided by Adups to Blu to explain the issue, and obtained by the New York Times, the company said the version of the software that collected and transmitted information was meant for certain Chinese manufacturer that wanted to monitor user behaviour. It was not meant for smartphones in the US. "This is a private company that made a mistake," the company's lawyer told NYT.

Adups claims that its software is present in over than 700 million devices in 200 countries, including smartphones made by Huawei and ZTE. Its service portfolio includes smartphones, tablets, and automobile entertainment systems.

Advertisement

While both Adups and Blu have acknowledged the issue, there is the possibility such a back door continues to exist in other smartphones using versions of the FOTA software. If you'd like to check if your smartphone is affected, look for these apk files on your smartphone - com.adups.fota and com.adups.fota.sysoper.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Realme 16 Pro+ 5G Retail Box Reveals Price in India Weeks Before Launch
  2. Realme Pad 3 5G to Launch Alongside the Realme 16 Pro Series
  3. OnePlus Nord 6 Visits Certification Website, Could Launch Soon
  4. iPhone Fold Seen in Leaked Renders With Pixel-Fold Like Design
  5. SPHEREx completes first cosmic sky map, offering unprecedented astronomical data
  1. Red Magic 11 Air Launch Confirmed; Tipster Hints at Presence of Snapdragon 8 Elite Chip
  2. Samsung Reportedly Plans to Expand India Manufacturing With Focus on Phone Displays, May Source Chips From India
  3. Realme 16 Pro+ 5G Price in India Leaked as Tipster Reveals Retail Box Ahead of Launch on January 6
  4. OnePlus Nord 6 Visits SIRIM Certification Website, Could Launch Soon: Expected Features, Specifications
  5. Samsung Galaxy Book 6 Ultra, Galaxy Book 6 Pro Listed on Bluetooth SIG Database Ahead of CES 2026
  6. New York Times Reporter, Authors Sue Google, OpenAI, Meta Over AI-Based Copyright Infringement
  7. Power Book IV: Force Season 3 OTT Release Date: Everything You Need to Know About Streaming, Plot, and More
  8. Middle Class Now Streaming Online: What You Need to Know About This Tamil Movie
  9. Tere Ishk Mein OTT Release Date Reportedly Revealed: When and Where to Watch it Online??
  10. Apple Expected to Pay 230 Percent Premium for iPhone 17 Pro RAM Chips In 2026: Report
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.