Laptops shipped by Chinese hardware giant Lenovo have been found to come with preinstalled malware that hijacks search results in favour of Lenovo’s business.
The adware, called Superfish, uses a self-signed root certificate which allows it to collect users’ data from web browsers. The certificate allowed the software to drop advertisements into browser sessions secretly.
This poses a serious security risk as hackers could generate a key to the adware’s certificate, spoofing the users into thinking they’re safe on websites such as banks.
The software was reportedly present on Lenovo laptops sold up until January 2015, that is, until
A Lenovo rep on the company’s official forums said: “Due to some issues (browser pop up behaviour for example), with the Superfish Visual Discovery browser add-on, we have temporarily removed Superfish from our consumer systems until such time as Superfish is able to provide a software build that addresses these issues. As for units already in market, we have requested that Superfish auto-update a fix that addresses these issues.”
In 2013 it was revealed that Lenovo computers were allegedly banned from use in the British government. The ban was brought into place in the mid-2000s following lab testing by spooks which found back doors and security flaws in Lenovo hardware. Lenovo PCs and laptops have also been banned from use in the defense sectors of Australia, Canada, the United States, and New Zealand.
UPDATE
Lenovo has issued a statement on the matter:
“Lenovo removed Superfish from the preloads of new consumer systems in January 2015. At the same time Superfish disabled existing Lenovo machines in market from activating Superfish. Superfish was preloaded onto a select number of consumer models only. Lenovo is thoroughly investigating all and any new concerns raised regarding Superfish.”
Welcome to Silicon UK: AI for Your Business Podcast. Today, we explore how AI can…
Japanese tech investment firm SoftBank promises to invest $100bn during Trump's second term to create…
Synopsys to work with start-up SiMa.ai on joint offering to help accelerate development of AI…
Start-up Basis raises $34m in Series A funding round for AI-powered accountancy agent to make…
Data analytics and AI start-up Databricks completes huge $10bn round from major venture capitalists as…
Congo files legal complaints against Apple in France, Belgium alleging company 'complicit' in laundering conflict…