Dell hell redux: eDellRoot infects 10M laptops (Superfish déjà vu)
Every Dell desktop and laptop shipped since August has contained a bogus root certificate, eDellRoot. Not only that, but the cert includes its own private key! It’s like Superfish 2.0...
That means more than 10,000,000 computers were infected at the source, allowing attackers to spoof secure websites. And they could install infected Windows updates, because the certificate is also able to sign code.
Oh, and if you try to remove the cert, Dell’s bloatware reinstalls it. Nice.
What a freakin’ mess. Dell clearly learned nothing from Lenovo’s Superfish débâcle.
In IT Blogwatch, bloggers never tire of Slacker-Steve macros. Not to mention: Steve in happier times...
To read this article in full or to leave a comment, please click here