scubabion.blogg.se

Maxthon browser for linux download
Maxthon browser for linux download













maxthon browser for linux download
  1. MAXTHON BROWSER FOR LINUX DOWNLOAD SOFTWARE
  2. MAXTHON BROWSER FOR LINUX DOWNLOAD FREE

MAXTHON BROWSER FOR LINUX DOWNLOAD FREE

We recently became acquainted with Maxthon, a free browser that offers some unique advantages, such as its Dual Display Modes, Ultra and Retro. Although some might think the collected data harmless, it is still a breach in security that cannot be trusted.There are so many great Web browsers available today that the superpower struggle between IE and Netscape sometimes seems as distant as the Cold War between the U.S. It’s great to have so many options, but sometimes those innocent sheep are truly malicious wolves. Remove it from all of your devices, desktops, laptops, and anything in between. This is one of the easiest solutions I’ve ever had to report. That, my friends, is a massive security issue. Effectively, the opted-out machine was transmitting the very same data as the opted-in machines.

MAXTHON BROWSER FOR LINUX DOWNLOAD SOFTWARE

The local path Maxthon was installed inĪfter continued browsing, the file started collecting a list of installed software and precise version numbers contained on the host machine.They ran this on the browser that had opted out of the UEIP program and, to no one’s surprise, the transmission to the server contained: With that information, they created their own DLL library which imitated the original M圎ncode library and were able to decrypt the data. It was very easy to figure out the Maxthon browser makes use of the M圎ncode library and the encryption key was actually embedded in the Maxthon code. Exatel discovered just how easy it is to run a Man-In-The-Middle attack to on the Maxthon encryption library. The conclusion? Opting out of the program has no effect.Įven though the data is encrypted, there’s a glaring issue. The results of unchecking that option? The ueipdata.zip still transferred itself to the Chinese server and still contained the dat.txt file. Naturally, Exatel decided to test this by unchecking the option to participate in the UEIP program during installation. Error and crash data reported during browser functioningĪccording to the developers at Maxthon, this program can be easily opted out of.Hardware on which the browser is installed.

maxthon browser for linux download

This is part of a voluntary program (as claimed by the creators of Maxthon) that is purported to improve the browser experience by anonymously sharing information about: The abbreviation UEIP (from ueipdata.zip) stands for User Experience Improvement Program. However, after further investigation, they discovered the packet was emanating from the Maxthon Browser, installed on three Exatel employees’ computers, and heading straight for a server in China. That phrase?Įxatel initially thought this could have been a joke (since it was around April First).

maxthon browser for linux download

As they monitored the transmission of data, they discovered a phrase which repeated several times during the packet transfer. It’s very interesting to know the reason why Exatel thought to look twice at a packet that was setting off their Deep Packet Inspection (DPI) alarms. Although it may add a level of comfort to know that the data sent out of your device is encrypted (via a symmetric Rijndael ((AES)) algorithm using a constant 16-byte key of “eu2o4[r04cml4eir”), it may (or may not) surprise you to know the experts that discovered the issue easily found the decryption key. That’s a rather daunting list of information to be sending to a third party server.

  • Installed applications (and their version number).
  • maxthon browser for linux download

    The ueipdata.zip contains a file called dat.txt which stores information about the following: What exactly has been discovered that could be so damaging to this underdog browser? Fidelis Cybersecurity reported that Poland-based Exatel uncovered the Maxthon browser regularly sends a file, via HTTP, named ueipdata.zip, to a server in Beijing, China. That’s why, when I read the details regarding the troubles now plaguing the Maxthon browser, I immediately wanted to warn people that it would be in their best interest to stop using the application. However, it cannot be said enough that we are living in an age when protecting our data has become a top priority for most (and should be for all). This could very well be a case of overreacting and far-reaching paranoia. You may have installed the Maxthon browser on your mobile devices. Maxthon browser is a wolf in sheep’s clothing















    Maxthon browser for linux download