Get All Access for $5/mo

Your Shiny New Lenovo Laptop Might Be Vulnerable to Hacking Experts say the world's largest PC maker pre-installed a virus-like software on laptops that makes the devices more vulnerable to cyberattacks.

By Reuters

This story originally appeared on Reuters

Shutterstock

China's Lenovo Group Ltd, the world's largest PC maker, had pre-installed a virus-like software on laptops that makes the devices more vulnerable to hacking, cybersecurity experts said on Thursday.

Users reported as early as last June that a program called Superfish pre-installed by Lenovo on consumer laptops was 'adware', or software that automatically displays adverts.

Robert Graham, CEO of U.S.-based security research firm Errata Security, said Superfish was malicious software that hijacks and throws open encrypted connections, paving the way for hackers to also commandeer these connections and eavesdrop, in what is known as a man-in-the-middle attack.

Lenovo had installed Superfish on consumer computers running Microsoft Corp's Windows, he added. "This hurts (Lenovo's) reputation," Graham told Reuters. "It demonstrates the deep flaw that the company neither knows nor cares what it bundles on their laptops."

An administrator on Lenovo's official web forum said on Jan. 23 that Superfish has been temporarily removed from consumer computers. Lenovo executives were not immediately available for comment during the Lunar New Year holiday in China.

Graham and other experts said Lenovo was negligent, and that computers could still be vulnerable even after uninstalling Superfish. The software throws open encryptions by giving itself authority to take over connections and declare them as trusted and secure, even when they are not.

"The way the Superfish functionality appears to work means that they must be intercepting traffic in order to insert the ads," said Eric Rand, a researcher at Brown Hat Security. "This amounts to a wiretap."

Concerns about cybersecurity have dogged Chinese firms, including telecoms equipment maker Huawei Technologies Ltd over ties to China's government and smartphone maker Xiaomi Inc over data privacy.

Lenovo commanded one-fifth of the global PC market in the third quarter of 2014, according to data research firm IDC.

(Editing by Miral Fahmy)

Want to be an Entrepreneur Leadership Network contributor? Apply now to join.

Editor's Pick

Side Hustle

This 20-Year-Old Student Started a Side Hustle With $400 — and It Earned $150,000 Over the Summer

Jacob Shaidle launched his barbecue cleaning business Shaidle Cleaning in 2021 when he was just 15.

Leadership

3 Ways To Make Sure AI Doesn't Take Your Job

Here's how to thrive (not just survive) during the 'Great AI Reskill.'

Business Ideas

63 Small Business Ideas to Start in 2024

We put together a list of the best, most profitable small business ideas for entrepreneurs to pursue in 2024.

Leadership

4 Secrets to Building a Team That Can Handle Anything

Here's how I was able to empower my team to operate independently and efficiently.

Business News

Is AI Accidentally Spilling Your Company's Secrets? A VC Firm's Private Conversations Were Included in Public Meeting Transcripts.

A meeting transcript with "hours" of private conversations was sent to someone who wasn't meant to read it.

Growing a Business

Sell Your Company When You Least Expect It — How to Properly Scale and Sell Your Business

Many small business owners struggle with expanding without sacrificing quality. Whether you're running a service-based or product-based company, following a few essential steps is key to scaling your business effectively while maintaining consistency.