AGL 40.02 Decreased By ▼ -0.01 (-0.02%)
AIRLINK 127.99 Increased By ▲ 0.29 (0.23%)
BOP 6.66 Increased By ▲ 0.05 (0.76%)
CNERGY 4.44 Decreased By ▼ -0.16 (-3.48%)
DCL 8.75 Decreased By ▼ -0.04 (-0.46%)
DFML 41.24 Decreased By ▼ -0.34 (-0.82%)
DGKC 86.18 Increased By ▲ 0.39 (0.45%)
FCCL 32.40 Decreased By ▼ -0.09 (-0.28%)
FFBL 64.89 Increased By ▲ 0.86 (1.34%)
FFL 11.61 Increased By ▲ 1.06 (10.05%)
HUBC 112.51 Increased By ▲ 1.74 (1.57%)
HUMNL 14.75 Decreased By ▼ -0.32 (-2.12%)
KEL 5.08 Increased By ▲ 0.20 (4.1%)
KOSM 7.38 Decreased By ▼ -0.07 (-0.94%)
MLCF 40.44 Decreased By ▼ -0.08 (-0.2%)
NBP 61.00 Decreased By ▼ -0.05 (-0.08%)
OGDC 193.60 Decreased By ▼ -1.27 (-0.65%)
PAEL 26.88 Decreased By ▼ -0.63 (-2.29%)
PIBTL 7.31 Decreased By ▼ -0.50 (-6.4%)
PPL 152.25 Decreased By ▼ -0.28 (-0.18%)
PRL 26.20 Decreased By ▼ -0.38 (-1.43%)
PTC 16.11 Decreased By ▼ -0.15 (-0.92%)
SEARL 85.50 Increased By ▲ 1.36 (1.62%)
TELE 7.70 Decreased By ▼ -0.26 (-3.27%)
TOMCL 36.95 Increased By ▲ 0.35 (0.96%)
TPLP 8.77 Increased By ▲ 0.11 (1.27%)
TREET 16.80 Decreased By ▼ -0.86 (-4.87%)
TRG 62.20 Increased By ▲ 3.58 (6.11%)
UNITY 28.07 Increased By ▲ 1.21 (4.5%)
WTL 1.32 Decreased By ▼ -0.06 (-4.35%)
BR100 10,081 Increased By 80.6 (0.81%)
BR30 31,142 Increased By 139.8 (0.45%)
KSE100 94,764 Increased By 571.8 (0.61%)
KSE30 29,410 Increased By 209 (0.72%)

China's Lenovo Group Ltd, the world's largest PC maker, said on Thursday it will no longer pre-install software that cybersecurity experts said was malicious and made devices vulnerable to hacking.
Lenovo had come under fire from security researchers who said earlier on Thursday the company pre-installed a virus-like software from a company called Superfish on consumer laptops that hijacked web connections and allowed them to be spied upon. Users reported as early as last June that a programme, also called Superfish, was 'adware' or software that automatically displays adverts.
Superfish will no longer be pre-installed and has been disabled on all products in the market since January, when Lenovo also stopped pre-installing the software, said a Lenovo spokesman in an email to Reuters on Thursday. Superfish was included on some consumer notebooks shipped between October and December, he said.
"We have thoroughly investigated this technology and do not find any evidence to substantiate security concerns," the spokesman said. Superfish "does not profile nor monitor user behaviour. It does not record user information. It does not know who the user is. Users are not tracked nor re-targeted... The relationship with Superfish is not financially significant."
Robert Graham, CEO of U.S.-based security research firm Errata Security, said Superfish was malicious software that hijacks and throws open encrypted connections, paving the way for hackers to also commandeer these connections and eavesdrop, in what is known as a man-in-the-middle attack. "This hurts (Lenovo's) reputation," Graham told Reuters. "It demonstrates the deep flaw that the company neither knows nor cares what it bundles on their laptops."
Graham and other experts said Lenovo was negligent, and that computers could still be vulnerable even after uninstalling Superfish. The software throws open encryptions by giving itself authority to take over connections and declare them as trusted and secure, even when they are not. "The way the Superfish functionality appears to work means that they must be intercepting traffic in order to insert the ads," said Eric Rand, a researcher at Brown Hat Security. "This amounts to a wiretap."
Concerns about cybersecurity have dogged Chinese firms, including telecoms equipment maker Huawei Technologies Ltd over ties to China's government and smartphone maker Xiaomi Inc over data privacy.
Lenovo commanded one-fifth of the global PC market in the third quarter of 2014, according to data research firm IDC.

Copyright Reuters, 2015

Comments

Comments are closed.