PhoneBoy Speaks Ep 797: Superfish
This Superfish software that Lenovo was installing on their consumer laptops was sketchy enough. What made it more scary was the root certificate it installed with an easy-to-crack password that leaves users susceptible to man-in-the-middle attacks from hackers.
Links:
- Windows Defender fully removes Lenovo’s dangerous Superfish malware
- lenovo-inc/superfishremoval · GitHub
- Superfish Security Flaw Extends Beyond Lenovo - The Mac Observer
- Komodia/Superfish SSL Validation is broken
- Errata Security: Some notes on SuperFish
- Check if you trust the Superfish CA
- Lenovo Caught Installing Adware On New Computers
Visit https://phoneboy.com/ps for more information about PhoneBoy Speaks and to find past episodes.
Donations of audio processing time from Auphonic are welcome!
PhoneBoy Speaks Ep 797: Superfish