Tanzania's Largest Online Directory
Over 40,400 Listings
Subscribe to 123 Tanzania and be the first to know what's happening

Technology News

Fri Sep 08, 2017

Lenovo fined over Superfish adware-ridden laptops

The company has also agreed to seek consumers' consent before installing any such software in the future.

Lenovo faced uproar when it emerged in 2015 that it had hidden an advert-delivering program made by Superfish on hundreds of thousands of computers.

It later provided a tool to remove it.

US Federal Trade Commission investigators have alleged that Lenovo first started selling compromised laptops in August 2014.

The software involved was called VisualDiscovery, and was made by the California-based start-up Superfish.

It was designed to show pop-up ads from retailers when users hovered their cursors over related products on a website.

Owners began complaining about the issue, on the Lenovo's own forums, in late-2014.

But the discovery got picked up by the mainstream media only the following year, after security researchers reported that the code worked by substituting its own security key for the encryption certificates used by many websites and did so in a sloppy manner.

'VisualDiscovery... did not adequately verify that the websites' digital certificates were valid before replacing them, and then used the same easy-to-crack password on all affected laptops,' the FTC said.

The watchdog said the software had put 'login credentials, social security numbers, medical information, and financial and payment information' at risk.

In addition, the watchdog said, it had blocked browsers from warning users if they visited spoofed or otherwise malicious websites.

Although Lenovo was apparently unaware of the security risks, the FTC alleged that this was only because it had failed to properly vet the software.

Lenovo's financial penalty will be shared by 32 US states.

In addition, the company has agreed to implement a software security compliance programme that it must allow an independent third-party to check at regular intervals for the next 20 years.

Superfish closed in May 2015 following the scandal, and its founder repurposed its object-recognition technology via a new company, JustVisual.


Hits: 85
Posted by Arwa


Related Products




Tangazo Kwa Umma
Cybercrimes Act, 2015
The Value Added Tax Act, 2014

PUBLIC NOTICE: Compliance to register and use Dot Tz (.tz) Domain names in Tanzania


Debt Collector
Sales & Marketing Officer
Apply for Internship Opportunities at MS TCDC in Arusha
IT Sales and Marketing Officer
Program Monitoring, Evaluation, Accountability and Learning (MEAL) Coordinator
Marketing Executive
View All


Android P will prevent apps from quietly hijacking your camera
AT&T will launch mobile 5G in Atlanta, Dallas and Waco
Apple rushes out fix to Telugu letter text bomb bug
AI ripe for exploitation, experts warn
Young Brits 'lack cyber-security awareness'
View All


Subscribe to our Newsletter


Add your Company in our Premium listing

Highlight your Company here and get it viewed by Thousands of visitors

Charges are as follows:
Monthly - Tshs.20,000/-
Yearly   - Tshs.200,000/-

To put your company in our Premium Listing fill the form below:

Name is required and must be characters only.

You can pay through:
TIGO PESA - 0659 233 378
MPESA        - 0764 202 807

Sign Up X