Dell has issued instructions on how to remove a self-signed root certificate from a number of its PCs after users raised security concerns in an episode reminiscent of Lenovo’s Superfish controversy earlier this year.
The Austin, Texas-based firm confirmed it was Dell Foundation Services that installed the ‘eDellRoot’ certificate, but stressed its existence was for customer support reasons – not like Superfish, which was used to inject adverts onto affected systems.
Those who discovered the offending certificate claimed it was a risk to any affected system, but Dell has not revealed which of its products are impacted.
“Unfortunately, the certificate introduced an unintended security vulnerability. To address this, we are providing our customers with instructions to permanently remove the certificate from their systems via direct email, on our support site and Technical Support.
“We are also removing the certificate from all Dell systems moving forward. Note, commercial customers who reimage their own systems will not be affected by this issue. Dell does not pre-install any adware or malware. The certificate will not reinstall itself once it is properly removed using the recommended Dell process.”
Dell will also issue a software update removing the certificate later today.
It remains to be seen what reputational damage Dell will suffer, having already witnessed the backlash against Lenovo following Superfish. However the firm is adamant there was no malicious intent behind the certificate and it was only intended to aid customers.
“The certificate is not malware or adware,” Dell said in a blog post. “Rather, it was intended to provide the system service tag to Dell online support allowing us to quickly identify the computer model, making it easier and faster to service our customers. This certificate is not being used to collect personal customer information.”
Do you know the history of Dell? Take our quiz!
State media reports the Iranian regime has lifted the ban on WhatsApp and Google Play,…
Landmark ruling finds NSO Group liable on hacking charges in US federal court, after Pegasus…
Microsoft reportedly adding internal and third-party AI models to enterprise 365 Copilot offering as it…
Albania to ban access to TikTok for one year after schoolboy stabbed to death, as…
Shipments of foldable smartphones show dramatic slowdown in world's biggest smartphone market amidst broader growth…
Google proposes modest remedies to restore search competition, while decrying government overreach and planning appeal