Dell Helps PC Owners Remove ‘Superfish-Like’ Rogue Certificate

Dell has issued instructions on how to remove a self-signed root certificate from a number of its PCs after users raised security concerns in an episode reminiscent of Lenovo’s Superfish controversy earlier this year.

The Austin, Texas-based firm confirmed it was Dell Foundation Services that installed the ‘eDellRoot’ certificate, but stressed its existence was for customer support reasons – not like Superfish, which was used to inject adverts onto affected systems.

Those who discovered the offending certificate claimed it was a risk to any affected system, but Dell has not revealed which of its products are impacted.

Dell certificate

“Customer security and privacy is a top concern and priority for Dell,” a company spokesperson told TechWeekEurope. “The recent situation raised is related to an on-the-box support certificate intended to provide a better, faster and easier customer support experience.

“Unfortunately, the certificate introduced an unintended security vulnerability. To address this, we are providing our customers with instructions to permanently remove the certificate from their systems via direct email, on our support site and Technical Support.

“We are also removing the certificate from all Dell systems moving forward. Note, commercial customers who reimage their own systems will not be affected by this issue. Dell does not pre-install any adware or malware. The certificate will not reinstall itself once it is properly removed using the recommended Dell process.”

Dell will also issue a software update removing the certificate later today.

It remains to be seen what reputational damage Dell will suffer, having already witnessed the backlash against Lenovo following Superfish. However the firm is adamant there was no malicious intent behind the certificate and it was only intended to aid customers.

“The certificate is not malware or adware,” Dell said in a blog post. “Rather, it was intended to provide the system service tag to Dell online support allowing us to quickly identify the computer model, making it easier and faster to service our customers. This certificate is not being used to collect personal customer information.”

Do you know the history of Dell? Take our quiz!

Steve McCaskill

Steve McCaskill is editor of TechWeekEurope and ChannelBiz. He joined as a reporter in 2011 and covers all areas of IT, with a particular interest in telecommunications, mobile and networking, along with sports technology.

Recent Posts

Iran Lifts Ban On WhatsApp, Google Play

State media reports the Iranian regime has lifted the ban on WhatsApp and Google Play,…

33 mins ago

Spyware Maker NSO Group Found Liable In US Court

Landmark ruling finds NSO Group liable on hacking charges in US federal court, after Pegasus…

3 days ago

Microsoft Diversifying 365 Copilot Away From OpenAI

Microsoft reportedly adding internal and third-party AI models to enterprise 365 Copilot offering as it…

3 days ago

Albania Bans TikTok For One Year After Stabbing

Albania to ban access to TikTok for one year after schoolboy stabbed to death, as…

3 days ago

Foldable Shipments Slow In China Amidst Global Growth Pains

Shipments of foldable smartphones show dramatic slowdown in world's biggest smartphone market amidst broader growth…

3 days ago

Google Proposes Remedies After Antitrust Defeat

Google proposes modest remedies to restore search competition, while decrying government overreach and planning appeal

3 days ago