Core Viewpoint - Tencent's input method has addressed concerns regarding a virus vulnerability linked to Sogou Input Method, clarifying that the issue originated from an unlaunched testing feature that was improperly configured, allowing external access [1][3]. Group 1: Incident Overview - The incident began on September 20, when Huorong Security reported a virus targeting browser homepages, tracing its source to Sogou Input Method [1]. - Huorong indicated that Sogou Input Method utilizes the Shiply terminal infrastructure to release general modules that request control configurations from the cloud, which are tailored based on user profiles [1]. Group 2: Virus Mechanism - The virus's promotional module first checks for antivirus software on user devices and then alters configuration files to forcibly change the homepage and default search engine settings of Edge and Chrome browsers [3]. - Huorong's security products are capable of intercepting and eliminating the aforementioned promotional module [3]. Group 3: Company Response - Tencent's input method team stated that they completed repairs on September 20, ensuring that user experience would not be affected and expressed apologies for the inconvenience caused [3]. - The company plans to enhance management of testing processes to prevent similar issues in the future [3].
专门锁定浏览器主页的病毒正在蔓延,腾讯搜索输入法回应
Di Yi Cai Jing·2025-09-25 10:13