Xiaomi Phones Caught Harvesting User Data Via Web Browser, Even Incognito Mode
Anil - May 04, 2020
Data includes different types that might be a little far from what you might think, including different settings you changed, the song you played, folders you opened, and more.
- Xiaomi 17T Pro Excels as Telephoto Champion with Monster Battery Life
- RGB Notification Lights Make a Triumphant Return on Xiaomi's Poco X8 Pro
- Xiaomi Unveils Cutting-Edge 17 Series Smartphones and Teases Vision GT Hypercar
According to a report from Forbes, Xiaomi has come under fire due to its misbehavior when illegally collecting personal data from Xiaomi users. This finding was publicized after a collaboration between Forbes and the security researcher Gabriel Cirlig.

The Chinese brand has been accused of using its homegrown browser that every Xiaomi smartphone has come equipped with by default. To your surprise, this happened even when the user chose to go into the Incognito Mode or use a privacy-conscious web service like DuckDuckGo.
In particular, Gabriel Cirlig once used a Redmi Note 8 to conduct one of his experiments for people’s concerns. As it turned out, the phone kept almost everything recorded after Cirlig interacted with it. Data includes different types that might be a little far from what you might think, including different settings you changed, the song you played, folders you opened, and more.

The system then sent them to storage servers in Russia and Singapore – but the domain addresses are located in Beijing, China. It’s not something too hard for the security researcher to break apart encrypted data into plain texts because the data itself only got packed with a simple encoding format called base64.
Additionally, Cirlig also found similar flaws in several Xiaomi phones, including Mi Mix 3, Xiaomi Mi 10, and Redmi K20. As reported by Andrew Tierney, another security expert, such suspicious behaviors were caught taking place in the company’s Mint Browser and Mi Browser Pro.

Xiaomi already made a rush to judgment by declaring that all findings mentioned above are “misleading and untrue”. A spokesperson said the recorded data is used for improving user experience – and no specific user is subject to privacy threats. Gabriel Cirlig later sent Xiaomi a video to show how these browsers gave away data to “unknown” servers, even in incognito mode.
Featured Stories
ICT News - Jun 16, 2026
Elon Musk Becomes World's First Trillionaire After SpaceX's Record IPO
ICT News - Jun 14, 2026
The Technological Revolution at the 2026 FIFA World Cup
ICT News - Jun 03, 2026
Apple's Liquid Metal Hinge Poised to Deliver Breakthrough for Foldable iPhone...
ICT News - May 29, 2026
New Glenn Rocket Explodes in Massive Fireball During Static Fire Test at Cape...
Mobile - May 24, 2026
iOS 27 Preview: Apple Delivers Its Most Intelligent Siri Yet Alongside Fresh AI...
ICT News - May 08, 2026
Elon Musk Highlights Neuralink Breakthrough with New Surgical Robot for Brain...
ICT News - Apr 13, 2026
DDR4 RAM Prices Finally Fall After Soaring More Than 2,200 Percent
ICT News - Apr 06, 2026
Artemis II Crew Enters Moon's Gravitational Sphere on Historic Day 5
ICT News - Mar 31, 2026
DDR5 RAM Prices Finally Easing: Relief for PC Builders in 2026
ICT News - Mar 29, 2026
FTC Takes Action Against Debanking Practices by Major Financial Firms
Read more
ICT News- Jun 16, 2026
Elon Musk Becomes World's First Trillionaire After SpaceX's Record IPO
Musk has indicated he will retain a controlling interest and continue serving as chief executive.
Comments
Sort by Newest | Popular