Web Hack List

Other nomination

eDellRoot

Dell shipped consumer and commercial PCs from August 2015 carrying a root certificate, eDellRoot, whose private key was left on the machine. Anyone can extract that key, sign certificates for any HTTPS site and intercept or alter a Dell owner's traffic on a shared network, repeating Lenovo's Superfish failure.

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of its author, first published at the original source. Preserved copies are kept so the citation survives its host.