國內的安卓手機用戶最頭疼的往往是各種預裝軟體及「全家桶」,國外因為有谷歌官方商店的原因,軟體環境比國內好很多。沒想到最近非洲手機之王,中國傳音旗下的手機被發現預裝了惡意軟體,會偷偷下載及訂閱各種服務,還被廣泛報導。傳音辯稱是供應商的問題,但真實情況如何就不得而知了。
據市場調查公司IDC數據顯示,中國傳音控股生產的安卓手機在非洲市場佔有統治地位,市場份額達到41%。這家深圳公司去年在中國版納斯達克上市,公司產品並未在中國銷售,市場幾乎集中在非洲大陸。和三星及蘋果等競爭對手相比,傳音旗下的Tecno品牌手機價格更有競爭力。
In a statement to CNN Business, Tecno Mobile said the problem &34; for which it issued a fix in March 2018. Consumers currently experiencing difficulties should download the fix through their phones or contact after sales support, it added.
在向CNN財經發來的一份聲明中,傳音旗下的Tecno稱「這是一個之前已經在全球解決了的手機安全老問題」,其在2018年3月就發布了修復,目前仍有問題的消費者可以通過下載該修復工具或聯繫售後解決。
Transsion blamed an &34; according to BuzzFeed.
BuzzFeed稱傳音將問題的原因歸咎於「其供應鏈上某家不具名的上遊廠商」。
Triada malware installs a piece of code known as xHelper onto compromised devices, automatically subscribing users without their knowledge to services that consume pre-paid airtime — the only way to pay for digital products in many developing countries.
Triada這款惡意軟體會在手機中植入一款名為xHelper的代碼,在用戶不知情的情況下自動訂閱會消耗用戶流量的服務——在很多發展中國家,流量是用戶獲取數據服務的唯一途徑。
&34; Secure-D said in a statement.
「哪怕重啟設備、刪除該應用甚至恢復出廠設置,xHelper木馬仍然存在。即便是有經驗的專業人員也很難徹底解決,更別提普通用戶了。」Secure-D平臺在一份聲明中指出。
The company&39;s Tecno W2 handset. Its analysis was carried out on phones from existing users and newly purchased handsets. No signs of Triada malware were found to affect other mobile phones manufactured by Transsion, Secure-D said.
Secure-D通過調查代碼及數據還發現xHelper欺詐性訂閱的請求與傳音旗下Tecno品牌的W2型號手機有關。這項調查涉及到市場存量用戶及新購機用戶,目前除了W2之外,還未在傳音生產的其它手機上發現Triada這款惡意軟體。
In a 2016 blog post, Google, which developed the Android operating software, attributed the presence of Triada to the actions of third-party suppliers within the production process.
實際上,安卓系統開發商谷歌在2016年的一篇博客中就將Triada之類惡意軟體的存在歸咎於供應鏈上的一些第三方供應商。
&39; data security and products safety,&34;Every single software installed on each device runs through a series of rigorous security checks," it added, noting that security updates are periodically sent to mobile users.
Tecno移動在聲明中說「我們一直都非常重視用戶的數據安全及產品可靠性。所有預裝在設備上的軟體都經過一系列嚴格的安全檢查」,並補充說其定期會向用戶推送安全更新。