China’s DJI drone security company commentary

Following the news that China’s DJI drones could be collecting ‘unnecessary data’ from owners phones, Tod Beardsley, Research Director at Rapid7 has provided the below commentary.

“The investigative work by Synacktiv shows that even established companies sometimes wander outside the boundaries set by Google in how Android apps are delivered and updated. The analysis of the DJI 4 GO app from DJI, a popular China-based drone maker, shows that the “hobbyist” version of the Android app makes direct requests for software updates outside of the Play store, which means that future updates can install all sorts of things without Google noticing — including exploits for vulnerabilities.

“While this mechanism for installation and updates is fairly normal inside China — where Google Play isn’t permitted to operate at all — it’s suspect for users in the US and the EU where sideloading apps and updates is much less common. In other words, users of this application are right to be suspicious of this update mechanism outside of China, and I’d recommend not using your day-to-day Android device to pilot DJI drones. Rather, if you must use one of these versions of DJI 4 GO, you should stick with a “burner” device that doesn’t have immediate access to all your personal information. After all, Android platforms are fairly cheap, compared to the cost of a DJI drone. Finally, it’s important to note that while the research may or may not be applicable to DJI’s most recent app offering, “DJI Fly,” the advice about being leery of sideloading apps and updates remains the same.”

 

Share this post on Twitter or LinkedIn.

See more news here.

About Security Buyer

Security Buyer is the leading authority in global security content, delivering expert news, in-depth articles, exclusive interviews, and industry insights across print, digital, and event platforms. Published 10 times a year, the magazine is a trusted resource for professionals seeking updates and analysis on the latest developments in the security sector.

To submit an article, or for sponsorship opportunities, please contact our team below.

Rebecca Spayne picture 2025

Rebecca Spayne

Managing
EDITOR

Georgina Turner image

Georgina Turner

Sales
Manager

Afua Akoto image - Security Buyer

Afua Akoto

Marketing Manager

Read the Latest Issue

Follow us on X

Follow us on X

Click Here

Follow us on LinkedIn

Follow us on LinkedIn

Click Here

Advertise here

Reach decision makers and amplify your marketing

Advertise here

Click Here

Related News

Christina Alexander Judge - SecurityBuyer

Christina Alexander Announced as Security Buyer Awards Judge

Security Buyer is proud to announce Christina Alexander as the latest addition to the distinguished judging panel for the Security…
Milestone - SecurityBuyer

Milestone Systems updates across XProtect, BriefCam, Arcules

Milestone Systems today announced updates across its complete security technology portfolio with releases for XProtect
ASSA ABLOY SMARTair - Security Buyer

More flexible management of Gen-Z student accommodation

Almost everyone attending university for the first time is now a digital native. They expect the convenience…
ICT - securitybuyer

ICT announces Martin Vermaak as COO

Integrated Control Technology (ICT), a leading provider of intelligent access control, intrusion detection, building automation..
FLIR - security buyer

New FLIR camera for Perimeter Security

FLIR, a Teledyne Technologies company, today released its newest high-resolution visible/thermal security camera for commercial..
Contacta - Security Buyer

Contacta launches Level 8 ballistically-resistant window intercom

Assistive listening specialist, Contacta, has launched the world’s first window intercom system with a Level 8 UL752 approval.
Big Interview Abdullah Tanoli

Big Interview – Hero of Leicester Square

Rebecca Spayne of Security Buyer has the privilege of speaking with a real-life hero, Abdullah Tanoli, the hero of Leicester Square..
SentinelOne & AWS - Security Buyer

SentinelOne Teams with AWS to bring Cloud Security Protection

SentinelOne announced that it is a launch partner for the new AWS Security Hub. The new collaboration builds on a long standing..
Genetec - Security Buyer

Genetec and Hanwha Vision

The latest in our ongoing series introducing Hanwha Vision’s pioneering partners, leads us to Ben Durrant, Account Executive at Genetec Inc.
Altronix - SecurityBuyer

Altronix POE367 Delivers 277VAC Support

Altronix has expanded its power product line with the new POE367 power supply/charger designed specifically for 277VAC input environments.
Scroll to Top