Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!

Dell installs self-signed root certificates on PCs with private key included

QuizzicalQuizzical Member LegendaryPosts: 25,531
http://techreport.com/news/29358/dell-gets-superfishy-by-shipping-pcs-with-self-signed-root-certificates
http://techreport.com/news/29361/dell-owns-up-to-edellroot-hole-and-provides-removal-instructions

Remember the whole Lenovo Superfish debacle, where Lenovo decided to make all Internet encryption insecure so that they could show you some extra ads?  Well, Dell has now done that, too, though their explanation is that it is there to make it easier for their tech support people to do stuff.

Dell says they're sorry now that they got caught, and has given instructions on how to remove the malicious certificate.  But that shouldn't be necessary.  What's really astonishing is that Dell would do so even after Lenovo got busted for doing the same thing earlier this year.

Comments

  • goboygogoboygo Member RarePosts: 2,141
    I wonder if it was going to be used for support purposes or software updates, but the fact that they left the key in with the cert is a major no no.
  • HrimnirHrimnir Member RarePosts: 2,415
    Quizzical said:
    http://techreport.com/news/29358/dell-gets-superfishy-by-shipping-pcs-with-self-signed-root-certificates
    http://techreport.com/news/29361/dell-owns-up-to-edellroot-hole-and-provides-removal-instructions

    Remember the whole Lenovo Superfish debacle, where Lenovo decided to make all Internet encryption insecure so that they could show you some extra ads?  Well, Dell has now done that, too, though their explanation is that it is there to make it easier for their tech support people to do stuff.

    Dell says they're sorry now that they got caught, and has given instructions on how to remove the malicious certificate.  But that shouldn't be necessary.  What's really astonishing is that Dell would do so even after Lenovo got busted for doing the same thing earlier this year.
    Really boggles my minds that companies keep pulling this shit.  Especially Dell. They're traditionally a reasonably well run company.  This whole things smacks of middle management stirring the pot.

    "The surest way to corrupt a youth is to instruct him to hold in higher esteem those who think alike than those who think differently."

    - Friedrich Nietzsche

  • flizzerflizzer Member RarePosts: 2,455
    I don't find any of this surprising but perhaps that is the conspiratorial side of me speaking.

    I remember when  I first got online. My first thought:  Just wait until the govt gets hold of this.  I expected we would all be monitored and there would be location/recording devices in most computers.  Like everyone Im now online but make it difficult for them.  That means no Facebook, Twitter, or other media sites that you aid in keep tabs on you.  Give  false info online as much as possible.  Of course, I release this is  at most a modicum of security but such is the world we live in. Fahrenheit 451 is almost here.  My little way of fighting back.
  • IselinIselin Member LegendaryPosts: 18,719
    Torval said:

    After getting shoddy workmanship on an Acer desktop I'm back to the point where I have to build my own systems at work and home again. I loathe doing it. It stopped being fun about 5 or so years ago.

    If I had to do it for work I guess I might grow tired of it too but building your own desktop has always been the way to go. It's not even about the savings for me, it's all about the control of hand picking everything that goes into it.
    "Social media gives legions of idiots the right to speak when they once only spoke at a bar after a glass of wine, without harming the community ... but now they have the same right to speak as a Nobel Prize winner. It's the invasion of the idiots”

    ― Umberto Eco

    “Microtransactions? In a single player role-playing game? Are you nuts?” 
    ― CD PROJEKT RED

  • WizardryWizardry Member LegendaryPosts: 19,332
    Your Windows has a backdoor to hacking left open on purpose so Microsoft can get in,so not like anything is on the legit side of things.

    As was 100 years ago as is today ,money is the root of all evil,people will do just about anything to get self promotion or make a buck.

    Never forget 3 mile Island and never trust a government official or company spokesman.

  • QuizzicalQuizzical Member LegendaryPosts: 25,531
    edited November 2015
    Wizardry said:
    money is the root of all evil
    That's actually a common misquote.  There's nothing wrong with having coins or paper currency as opposed to relying on a barter system.  The original quote (up to translation) is, "The love of money is the root of all kinds of evil."
  • time007time007 Member UncommonPosts: 1,062
    1 Timothy 6:10 For the love of money is the root of all kinds of evil.  It's a Bible verse.  (I'm sure Quizzical knew this, this bit of info is just for everyone else fyi)

    IMPORTANT:  Please keep all replies to my posts about GAMING.  Please no negative or backhanded comments directed at me personally.  If you are going to post a reply that includes how you feel about me, please don't bother replying & just ignore my post instead.  I'm on this forum to talk about GAMING.  Thank you.
  • SeelinnikoiSeelinnikoi Member RarePosts: 1,360
    Anyone that buys a Dell should get that and worse!
    If you are a Star Wars fan, why not try the Star Wars The Old Republic?
    New players can get a welcome package and old/returning players can also get a welcome back package and 7 days free subscription time! Just click here to use my referral invitation
  • HrimnirHrimnir Member RarePosts: 2,415
    Anyone that buys a Dell should get that and worse!
    Thats ridiculous.  Lets say you need to buy a laptop for your grandmother, or another family member who isn't super tech savvy.  90% of the time you can't build a PC yourself for as cheap as you can buy one from a place like Dell or Acer, etc (mainly because they get massive bulk discounts on Windows, where if you build yourself you're spending $110 or so JUST on a copy of windows) and thats not even talking about laptops.

    "The surest way to corrupt a youth is to instruct him to hold in higher esteem those who think alike than those who think differently."

    - Friedrich Nietzsche

  • KiyorisKiyoris Member RarePosts: 2,130
    ppl still buy Dells? good lord
  • rawfoxrawfox Member UncommonPosts: 788
    Its the followers of the god of milking.
  • waynejr2waynejr2 Member EpicPosts: 7,771
    Hrimnir said:
    Quizzical said:
    http://techreport.com/news/29358/dell-gets-superfishy-by-shipping-pcs-with-self-signed-root-certificates
    http://techreport.com/news/29361/dell-owns-up-to-edellroot-hole-and-provides-removal-instructions

    Remember the whole Lenovo Superfish debacle, where Lenovo decided to make all Internet encryption insecure so that they could show you some extra ads?  Well, Dell has now done that, too, though their explanation is that it is there to make it easier for their tech support people to do stuff.

    Dell says they're sorry now that they got caught, and has given instructions on how to remove the malicious certificate.  But that shouldn't be necessary.  What's really astonishing is that Dell would do so even after Lenovo got busted for doing the same thing earlier this year.
    Really boggles my minds that companies keep pulling this shit.  Especially Dell. They're traditionally a reasonably well run company.  This whole things smacks of middle management stirring the pot.

    So Irresponsible! 
    http://www.youhaventlived.com/qblog/2010/QBlog190810A.html  

    Epic Music:   https://www.youtube.com/watch?v=vAigCvelkhQ&list=PLo9FRw1AkDuQLEz7Gvvaz3ideB2NpFtT1

    https://archive.org/details/softwarelibrary_msdos?&sort=-downloads&page=1

    Kyleran:  "Now there's the real trick, learning to accept and enjoy a game for what it offers rather than pass on what might be a great playing experience because it lacks a few features you prefer."

    John Henry Newman: "A man would do nothing if he waited until he could do it so well that no one could find fault."

    FreddyNoNose:  "A good game needs no defense; a bad game has no defense." "Easily digested content is just as easily forgotten."

    LacedOpium: "So the question that begs to be asked is, if you are not interested in the game mechanics that define the MMORPG genre, then why are you playing an MMORPG?"




Sign In or Register to comment.