Security flaws in China’s My2022 Olympics app could allow surveillance

China's My2022 App Flaws Compromise Security with Surveillance Threats | Cyber In :60 | GZERO Media

Marietje Schaake, International Policy Director at Stanford's Cyber Policy Center, Eurasia Group senior advisor and former MEP, discusses trends in big tech, privacy protection and cyberspace:

Does the Beijing 2022 Olympics app have security flaws?

Well, the researchers at the Citizen Lab of the University of Toronto do believe so. And if their revelations, this time, will set off a similar storm as they did with the forensics on NSO Group's spyware company, then there will be trouble ahead for China. The researchers found that the official My2022 app for the sports event, which attendees are actually required to download and to use for documenting their health status, has flaws in the security settings. Loopholes they found could be used for intrusion and surveillance.

Now, of course, China is not exactly known as a bastion of privacy protections. But beyond the flaws, the app also has a censorship keyword list, which has relation to terms like Tiananmen protests, the Dalai Lama, or the Uyghur Muslim minority. And in response, Dutch supporters will be provided with a burner phone. And sure, that might be a short-term solution, but I'm not sure whether other officials visiting China, now for the Olympics, or for business or politics, are always as careful. I remember attending a World Economic Forum events in China, as a member of European Parliament, and being one of the only ones to proactively take precautions.

Now, unfortunately, one of the researchers of the Citizen Lab confirmed that, "Our findings expose how My2022 security measures are wholly insufficient to prevent sensitive data from being disclosed to unauthorized third parties." But the Beijing organizing committee has stood by its app, and said it passed the examination of international mobile app markets, such as Google, Apple, and Samsung. So unfortunately, no clear solution in sight to make sure that systematically, human rights and privacy are better protected in China.

More from GZERO Media

A 3D-printed miniature model depicting US President Donald Trump, the Chinese flag, and the word "tariffs" in this illustration taken on April 17, 2025.

REUTERS/Dado Ruvic

The US economy contracted 0.3% at an annualized rate in the first quarter of 2025, while China’s manufacturing plants saw their sharpest monthly slowdown in over a year. Behind the scenes, the world’s two largest economies are backing away from their extraordinary trade war.

A photovoltaic power station with a capacity of 0.8 MW covers an area of more than 3,000 square metres at the industrial site of the Chernobyl Nuclear Power Plant, Kyiv region, Ukraine, on April 12, 2025.
Volodymyr Tarasov/Ukrinform/ABACAPRESS.COM

Two months after their infamous White House fight, the US and Ukraine announced on Wednesday that they had finally struck a long-awaited minerals deal.

Indian paramilitary soldiers patrol along a road in Srinagar, Jammu and Kashmir, on April 29, 2025.
Firdous Nazir via Reuters Connect

Nerves are fraught throughout Pakistan after authorities said Wednesday they have “credible intelligence” that India plans to launch military strikes on its soil by Friday.

Palestinian Hamas and Islamic Jihad fighters form a human chain in front of the crowd gathered near the family home of slain Hamas leader Yahya Sinwar, where the Hamas militant group prepares to hand over Israeli and Thai hostages to a Red Cross team in Khan Yunis, on January 30, 2025, as part of their third hostage-prisoner exchange..
Photo by Majdi Fathi/NurPhot

Israel hunted Yahya Sinwar — the Hamas leader and mastermind of the Oct. 7 attack — for over a year. He was hidden deep within Gaza’s shadowy tunnel networks.

A gunman stands as Syrian security forces check vehicles entering Druze town of Jaramana, following deadly clashes sparked by a purported recording of a Druze man cursing the Prophet Mohammad which angered Sunni gunmen, as rescuers and security sources say, in southeast of Damascus, Syria April 29, 2025.
REUTERS/Yamam Al Shaar

Israel said the deadly drone strike was carried out on behalf of Syria's Druze community.

Britain's King Charles holds an audience with the Prime Minister of Canada Mark Carney at Buckingham Palace, on March 17, 2025.

Aaron Chown/Pool via REUTERS

King Charles is rumored to have been invited to Canada to deliver the speech from the throne, likely in late May, although whether he attends may depend on sensitivities in the office of UK Prime Minister Keir Starmer.

Getting access to energy, whether it's renewables, oil and gas, or other sources, is increasingly challenging because of long lead times to get things built in the US and elsewhere, says Greg Ebel, Enbridge's CEO, on the latest "Energized: The Future of Energy" podcast episode. And it's not just problems with access. “There is an energy emergency, if we're not careful, when it comes to price,” says Ebel. “There's definitely an energy emergency when it comes to having a resilient grid, whether it's a pipeline grid, an electric grid. That's something I think people have to take seriously.” Ebel believes that finding "the intersection of rhetoric, policy, and capital" can lead to affordability and profitability for the energy transition. His discussion with host JJ Ramberg and Arjun Murti, founder of the energy transition newsletter Super-Spiked, addresses where North America stands in the global energy transition, the implication of the revised energy policies by President Trump, and the potential consequences of tariffs and trade tension on the energy sector. “Energized: The Future of Energy” is a podcast series produced by GZERO Media's Blue Circle Studios in partnership with Enbridge. Listen to this episode at gzeromedia.com/energized, or on Apple, Spotify,Goodpods, or wherever you get your podcasts.