• Home
  • News
  • Coins2Day 500
  • Tech
  • Finance
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
Techdji

World’s Biggest Drone Maker Tries to Fix Security Flaw

By
Reuters
Reuters
Down Arrow Button Icon
By
Reuters
Reuters
Down Arrow Button Icon
September 6, 2017, 6:28 PM ET

Chinese manufacturer DJI Technology, the world’s largest civilian drone maker, said on Wednesday it was hunting for security flaws in its flight-control software after coders found its apps could be “hot patched” to circumvent scrutiny by Apple and Alphabet.

“We have updated the apps to remove the suspect code,” Adam Lisberg, spokesman for DJI, said of the hot-patching problem.

“We are going through all the code now to see if there’s anything else we didn’t know about.”

DJI’s camera-equipped drones, which range from palm-sized models that cost as little as $500 to those the size of a small outdoor grill, command about 70% of the global commercial and consumer drone market, Goldman Sachs and Oppenheimer estimated in 2016.

Their cameras are increasingly used in sensitive settings, such as making movies or inspecting industrial facilities. AT&T deployed about four dozen drones, including DJI models, to spot cell tower damage after Hurricane Harvey. Lisberg said DJI had sent drones and spare batteries to help with the recovery.

But as their popularity has grown, so have concerns about data privacy. DJI’s apps, which run on Apple IOS and Google Android, until recently allowed “hot patching” new code into an app any time a tablet or phone connected to the internet.

Such code can turn a phone into a listening device, or send out sensitive data, computer security experts said.

“App developers are finding ways to circumvent the controls that go into the app stores,” said Michael Murray, vice president of security intelligence at cyber firm Lookout, which researched hot patching.

DJI’s apps connected with more than two dozen websites while booting up, sending user and location data, said Andreas Makris, a coder in Germany familiar with the apps.

DJI’s Lisberg said problems stemmed from third-party plug-ins that help users share images on social media. But at least one was sending data DJI didn’t know about, he said. DJI stopped it and is looking for other problems.

DJI is offering a “bug bounty” of up to $30,000 for coders who find flaws. It plans to release this month a feature that lets users disconnect phones or tablets from the internet while flying to ensure data is not sent out.

Get Data Sheet, Coins2Day’s technology newsletter.

The company stepped up effort tighten security after the U.S. Army in May ordered service members to stop using DJI drones because of “cyber vulnerabilities.”

About the Author
By Reuters
See full bioRight Arrow Button Icon
Rankings
  • 100 Best Companies
  • Coins2Day 500
  • Global 500
  • Coins2Day 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Coins2Day Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Coins2Day Brand Studio
  • Coins2Day Analytics
  • Coins2Day Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Coins2Day
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

© 2025 Coins2Day Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Coins2Day Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.