Tencent Sougou Input Method Responds to Accusations of Virus Vulnerabilities and Secret Browser Configuration Tampering

On September 26th, according to a report from Kuaitech, the official Weibo account of Tencent Sogou Input Method recently addressed a circulating misinformation regarding “virus vulnerabilities” within the software.

Following an internal investigation, it was determined that the issue stemmed from a testing feature that had not yet been officially released. Due to an anomaly in the testing configuration, this feature became externally accessible.

Response from Tencent Sogou Input Method regarding alleged virus vulnerabilities and undisclosed browser configuration tampering

Upon identifying the problem, Tencent Sogou Input Method promptly implemented a fix, ensuring that this incident does not affect the actual user experience.

Tencent Sogou Input Method has further announced its commitment to reinforcing the management of its testing processes to prevent similar occurrences in the future.

It is understood that on September 20th, Huorong Security published an article on its WeChat official account titled “Sogou Input Method’s Cloud Control Distribution Module ‘Secretly’ Tampering with Browser Configurations.” The article stated that the Huorong Threat Intelligence Center had recently detected a virus accelerating its spread, specifically targeting browser homepages. Tracing the source of this virus led directly to Sogou Input Method.

Huorong Security explained that Sogou Input Method utilizes its Shiply terminal foundation (the underlying component of the Sogou Input Method client) to distribute a general module that requests control configurations from the cloud.

These cloud-controlled configurations are delivered using user profiling, considering various dimensions such as region and time for precise targeting. Given that the Shiply platform inherently supports phased rollouts, it is speculated that attackers might have first used small-scale phased testing to validate the effectiveness of their actions before proceeding with widespread dissemination.

The module responsible for promoting the virus would first detect any antivirus software present on the user’s device. Subsequently, by modifying configuration files, it would forcibly alter the homepage and default search engine settings of prominent browsers like Edge and Chrome.

Response from Tencent Sogou Input Method regarding alleged virus vulnerabilities and undisclosed browser configuration tampering

免责声明:本网站内容主要来自原创、合作伙伴供稿和第三方自媒体作者投稿,凡在本网站出现的信息,均仅供参考。本网站将尽力确保所提供信息的准确性及可靠性,但不保证有关资料的准确性及可靠性,读者在使用前请进一步核实,并对任何自主决定的行为负责。本网站对有关资料所引致的错误、不确或遗漏,概不负任何法律责任。任何单位或个人认为本网站中的网页或链接内容可能涉嫌侵犯其知识产权或存在不实内容时,可联系本站进行审核删除。
(0)
上一篇 2025年 9月 26日 上午5:16
下一篇 2025年 9月 26日 上午7:45

相关推荐

欢迎来到AI快讯网,开启AI资讯新时代!