Motorola says affiliate hijacking of Amazon app was ‘unintended’

Motorola says affiliate hijacking of Amazon app was ‘unintended’

摩托罗拉称亚马逊应用被劫持为“非预期行为”

Motorola says that recently discovered behavior, which saw some of its phones sending users to an affiliate tracking website before opening the Amazon app, was “unintended” and has been “promptly corrected.” The company didn’t explain how the error was introduced in the first place. 摩托罗拉表示,近期发现的部分手机在打开亚马逊(Amazon)应用前会先跳转至联盟营销追踪网站的行为属于“非预期”,目前已“迅速纠正”。该公司并未解释该错误最初是如何产生的。

“Recently, Motorola acted quickly to resolve an issue that was identified, which caused some users in the US launching the Amazon Shopping app to be routed through a web tracking link before opening the app. This behavior was unintended and resulted in an inconsistent user experience,” Allison Yi, Motorola’s executive director of product management, told The Verge in a statement. “Upon identifying the issue, we promptly corrected the routing configuration. Users can now expect all installed apps to launch directly as intended.” 摩托罗拉产品管理执行总监 Allison Yi 在一份声明中告诉 The Verge:“近期,摩托罗拉迅速解决了一个已发现的问题,该问题导致部分美国用户在启动亚马逊购物应用时,会被重定向到一个网页追踪链接。这种行为并非本意,且导致了不一致的用户体验。在发现问题后,我们立即修正了路由配置。用户现在可以确信所有已安装的应用都将按预期直接启动。”

The unusual situation was first reported by 9to5Google after it was spotted by a Reddit user. On opening the Amazon app, the phone would first briefly open the phone’s browser before returning to Amazon. Strangest of all, users were sent to a website that appears to be linked to fashion influencer Kira Abboud, though it isn’t actually referenced on any of her other pages. That split-second visit was enough to install a tracking cookie however, which in turn added an affiliate code to the user’s shopping session — though, again, not one that matches any of Abboud’s other content. 这一异常情况最初由 Reddit 用户发现,随后被 9to5Google 报道。当用户打开亚马逊应用时,手机会先短暂跳转至手机浏览器,然后再返回亚马逊。最奇怪的是,用户被重定向到的网站似乎与时尚博主 Kira Abboud 有关,尽管在她本人的任何页面上都没有提及该网站。然而,那短短一瞬间的访问足以植入追踪 Cookie,进而为用户的购物会话添加一个联盟营销代码——尽管该代码与 Abboud 的其他内容并不匹配。

The code wouldn’t make any direct difference to the end user, but could theoretically allow whoever installed it to receive a small percentage of any purchase that was made. The Verge uses similar Amazon affiliate links for some of our shopping content, though always with a disclaimer, rather than installed covertly. 该代码对终端用户不会产生直接影响,但从理论上讲,它可能让安装者从用户的任何购物行为中获取一小部分佣金。The Verge 在部分购物内容中也会使用类似的亚马逊联盟链接,但我们始终会附带免责声明,而不是暗中植入。

Yi blamed the redirect on “an app search and suggestion experience for the Moto App Launcher” codeveloped with Device Native. It was Device Native’s website that Reddit user Trypocopris noticed was being queried by the phone behind the scenes before users were sent to kira-abboud.com. The company says on its website that it delivers “personalized, on-device mobile ad serving without sharing user data.” Amusingly, until yesterday Device Native had a public page listing the documentation for its Motorola integration. That page has now been taken offline, though not before the Internet Archive made a copy. Yi 将此次重定向归咎于与 Device Native 共同开发的“Moto 应用启动器(Moto App Launcher)的应用搜索和建议体验”。Reddit 用户 Trypocopris 注意到,在用户被跳转至 kira-abboud.com 之前,手机在后台查询的正是 Device Native 的网站。该公司在其官网上声称,它提供“个性化的设备端移动广告服务,且不会共享用户数据”。有趣的是,直到昨天,Device Native 的官网上还有一个公开页面,列出了其与摩托罗拉集成的相关文档。该页面现已被下线,不过互联网档案库(Internet Archive)已对其进行了备份。

Motorola did not comment on how the “issue” was introduced, or whether Device Native was to blame, but did reiterate its commitment to user privacy. “Motorola takes user experience, privacy, and platform integrity seriously and will continue to closely monitor the system to ensure expected behavior across devices,” Yi said. 摩托罗拉并未评论该“问题”是如何引入的,也未说明是否应由 Device Native 负责,但重申了其对用户隐私的承诺。Yi 表示:“摩托罗拉非常重视用户体验、隐私和平台完整性,并将继续密切监控系统,以确保设备表现符合预期。”