National Security Authorities Warn: Stay Alert to Overseas Entities Using Malicious SDKs to Gather Sensitive Data
2025-12-02 / Read about 0 minute
Author:小编   

On December 2, the Ministry of State Security issued a cautionary note, highlighting that while Software Development Kits (SDKs) can significantly boost developers' productivity, they also harbor the potential for data breaches. Overseas entities might incorporate malicious SDKs into apps to unlawfully gather sensitive information, thereby jeopardizing national security. The looming threats encompass concealed "backdoors," unauthorized access to permissions, and inherent security flaws. To thwart SDK-related data theft, individual users are advised to download apps exclusively from reputable sources and exercise caution in managing app permissions. Companies involved in app development should institute a robust security management system covering the entire lifecycle of their products. APP platform operators must transparently disclose SDK details and encourage enhancements along with responsible data management. The national security authorities urge both citizens and organizations to remain vigilant and report any suspicious activities related to the illegal utilization of SDKs that could compromise national security through multiple reporting avenues.