FINDING · DETECTION

All six browsers grant dangerous Android permissions (READ_PHONE_STATE, INTERNET, ACCESS_NETWORK_STATE) to third-party SDKs; built-in phone browsers grant significantly more such permissions than app-store browsers. Baidu Mobile Tongji Analytics SDK—present in all six via Baidu as default search engine—collects IMEI, UUID, CUID, GAID, device MAC, and Bluetooth MAC, creating a persistent cross-app device fingerprint that identifies users across VPN sessions and survives IP changes.

From 2025-rodriguez-revisitingRevisiting BAT Browsers: Protecting At-Risk Populations from Surveillance, Censorship, and Targeted Attacks · §4.3 · 2025 · Free and Open Communications on the Internet

Implications

Tags

censors
cn
techniques
dpikeyword-filtering
defenses
tunneling

Extracted by claude-sonnet-4-6 — review before relying.