Flutterby™! : DJI spying on the US?

Next unread comment / Catchup all unread comments User Account Info | Logout | XML/Pilot/etc versions | Long version (with comments) | Weblog archives | Site Map | | Browse Topics

DJI spying on the US?

2017-11-30 23:07:37.285834+00 by Dan Lyke 0 comments

Leaked government memo claims DJI is spying on the US for China. DJI is the maker of the popular quadcopter drone the Phantom:

The claims aren't a certainty, according to ICE, which says in the memo that Special Agent in Charge Intelligence Program (SIP) Los Angeles has "moderate confidence" that DJI is providing law enforcement and critical infrastructure data to China. However, the memo claims that SIP LA has "high confidence" that DJI is "selectively targeting government and privately owned entities within these sectors to expand its ability to collect and exploit sensitive U.S. data."

SIP Los Angeles makes some alarming claims about the DJI GO and SkyPixel mobile apps, saying in part that they grab facial recognition data even if the feature is disabled. The collected data, which is said to include sensitive personal info like full names, images and videos, phone numbers, and computer credentials, are automatically uploaded to unspecified "cloud storage systems" in Hong Kong and Taiwan "to which the Chinese government most likely has access."

DJI's statement on the ICE bulletin

Previously: Man gets threats—not bug bounty—after finding DJI customer data in public view:

DJI, the Chinese company that manufactures the popular Phantom brand of consumer quadcopter drones, was informed in September that developers had left the private keys for both the "wildcard" certificate for all the company's Web domains and the keys to cloud storage accounts on Amazon Web Services exposed publicly in code posted to GitHub. Using the data, researcher Kevin Finisterre was able to access flight log data and images uploaded by DJI customers, including photos of government IDs, drivers licenses, and passports. Some of the data included flight logs from accounts associated with government and military domains.

US Army calls for units to discontinue use of DJI equipment

Remember, kids, "the cloud" is just a fancy word for "other people's computers".

[ related topics: Children and growing up Interactive Drama Books Photography Aviation Software Engineering moron Current Events Consumerism and advertising Law Enforcement Hong Kong Handicaps & Disabilities ]

comments in ascending chronological order (reverse):

Add your own comment:

(If anyone ever actually uses Webmention/indie-action to post here, please email me)

Format with:

(You should probably use "Text" mode: URLs will be mostly recognized and linked, _underscore quoted_ text is looked up in a glossary, _underscore quoted_ (http://xyz.pdq) becomes a link, without the link in the parenthesis it becomes a <cite> tag. All <cite>ed text will point to the Flutterby knowledge base. Two enters (ie: a blank line) gets you a new paragraph, special treatment for paragraphs that are manually indented or start with "#" (as in "#include" or "#!/usr/bin/perl"), "/* " or ">" (as in a quoted message) or look like lists, or within a paragraph you can use a number of HTML tags:

p, img, br, hr, a, sub, sup, tt, i, b, h1, h2, h3, h4, h5, h6, cite, em, strong, code, samp, kbd, pre, blockquote, address, ol, dl, ul, dt, dd, li, dir, menu, table, tr, td, th

Comment policy

We will not edit your comments. However, we may delete your comments, or cause them to be hidden behind another link, if we feel they detract from the conversation. Commercial plugs are fine, if they are relevant to the conversation, and if you don't try to pretend to be a consumer. Annoying endorsements will be deleted if you're lucky, if you're not a whole bunch of people smarter and more articulate than you will ridicule you, and we will leave such ridicule in place.

Flutterby™ is a trademark claimed by

Dan Lyke
for the web publications at www.flutterby.com and www.flutterby.net.