Розничные платежи в Китае — жизнь по QR
Розничные платежи в Китае или жизнь по QR - на основе опыта посещения Китая весной 2026 года и проживания в Китае. Статья от двух специалистов индустрии финансовых технологий (финтех).
Розничные платежи в Китае — жизнь по QR
Розничные платежи в Китае или жизнь по QR - на основе опыта посещения Китая весной 2026 года и проживания в Китае. Статья от двух специалистов индустрии финансовых технологий (финтех).
Alipay (100M+ Google Play installs) — what I found by reverse-engineering the APK:
1. A remotely activatable SSL/TLS kill switch
2. 79,371 server-replaceable methods bypassing Play review
3. 1,834 undisclosed data hooks (IMEI, GPS, clipboard, audio)
4. 97% of permission checks return null
Ant Group's response: "these vulnerabilities do not exist."
40 days later, the SSL bypass is still in production.
Thread with code evidence ↓
UPDATE: WeChat just banned my account.
Reason? An article titled "As a Chinese citizen, I formally reported Alipay to the CAC."
That article was ALREADY DELETED 13 days ago.
Ant Group's earlier complaint about the same content was REJECTED by WeChat's own review (Case 4285****65).
Timeline:
• 3/11 — Ant Group complaint rejected by WeChat ✗
• 3/15 — Wave 1: 4 articles deleted anyway
• 3/20 — Wave 2: 4 more deleted (including the one cited)
• 3/25 — Wave 3: 9th article deleted (same day CAC confirmed Alipay investigation)
• 4/2 — Account BANNED based on content deleted 13 days prior
China's CAC has confirmed it is investigating Alipay. WeChat banned me for reporting it.
Full documentation: https://innora.ai/zfb/wechat-ban-expose.html
#infosec #alipay #tencent #wechat #censorship #cybersecurity #vulnerability #whistleblower
THREAD: Alipay SecurityGuard SDK — What we found and what happened next.
1/7 We reverse-engineered Alipay's SecurityGuard SDK (v10.8.30.8000, 89K Java source files). Found 17 vulnerabilities including a whitelist bypass (CVSS 9.3) that makes all 17 remotely exploitable via a single crafted URL.
18 CVEs filed across 4 MITRE tickets. Vendor says: 'normal functionality.'
@LyrischerPoet @Werftpark @NDR Nur wenn die Akzeptanz von #wero durch #Händler höher ist, weil kritisch für den Erfolg von wero bei Verbrauchern.
zufriedenstellend beantwortbar...
D.h. wero muss besser als [seinerzeit] #GeldKarte, #eurocash, #AMEX, #VISA & #MasterCard sein.
アップル、中国で「アップル税」を30%→25%へ ミニアプリ経済圏に対抗
Today: Pagamenti mobili cinesi, anche i turisti italiani possono goderne
Visitare la Cina è ancora più facile per i turisti e italiani ed europei, ma anche per chi viaggia per affari: grazie ad un accordo fra Tinaba e Alipay+, sarà molto comodo pagare mentre si viaggia per la Cina continentale. Ci parla di questa nuova opportunità l’amministratore delegato di Banca...
Chinese mobile payments, even Italian tourists can enjoy them.
Visiting China is even easier for tourists and Italians and Europeans, but also for those traveling for business: thanks to an agreement between Tinaba and Alipay+, it will be very convenient to pay while traveling throughout mainland China. The CEO of Banca…
#Chinese #Italian #China #Italians #Europeans #Tinaba #Alipay+ #Banca
https://www.today.it/speciale/orizzonte-italia-cina/pagamenti-mobili-cina.html