Shein Shopping App Glitch Copies Android Clipboard ContentsShein Shopping App Glitch Copies Android Clipboard Contents
The Android app unnecessarily accessed clipboard device contents, which often includes passwords and other sensitive data.
![Shein app on the screen of a cellular device laying on a wooden table. Shein app on the screen of a cellular device laying on a wooden table.](https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/blt1a6d059dce19f8bf/64f155b5b4c236f0ba4fdd6b/Shein_GH_Tech_Alamy.jpg?width=1280&auto=webp&quality=95&format=jpg&disable=upscale)
A version of the Shein shopping application in the Google Play store with more than 100 million downloads was unnecessarily accessing Android-device clipboard contents, creating a potential security threat, according to Microsoft.
The software giant said in a blog post from Microsoft Threat Intelligence that it asked Shein to remove the feature from its Android app that accessed user clipboards, and the company complied. However, users need to update their apps to be free from danger.
From passwords to account numbers, and auto-fill information of all kinds, device clipboards can contain a treasure trove of sensitive data.
"Microsoft discovered that an old version of the Shein Android application periodically read the contents of the Android device clipboard and, if a particular pattern was present, sent the contents of the clipboard to a remote server," the Microsoft blog post said. "While we are not specifically aware of any malicious intent behind the behavior, we assessed that this behavior was not necessary for users to perform their tasks on the app."
About the Author
You May Also Like
Uncovering Threats to Your Mainframe & How to Keep Host Access Secure
Feb 13, 2025Securing the Remote Workforce
Feb 20, 2025Emerging Technologies and Their Impact on CISO Strategies
Feb 25, 2025How CISOs Navigate the Regulatory and Compliance Maze
Feb 26, 2025Where Does Outsourcing Make Sense for Your Organization?
Feb 27, 2025