Lenovo Statement on Superfish
101–110 of 312 posts
Re: Lenovo Statement on Superfish
#102Earlier quoted context omitted.
Can you ever imagine Apple pulling a stunt like this? No, because it’s astonishingly user hostile: Lenovo should be hanging their head in shame, not making out like it’s no big deal.
The big difference is you don't mind when Apple does things like this. If you have "Hey, Siri" enabled then your phone's microphone is on all the time listening to everything you say. But I don't see a lot of people crying foul over that.
Re: Lenovo Statement on Superfish
#103Earlier quoted context omitted.
Anybody can MITM secure connections these computers make, right?
And present any HTTPS cert of their choosing to any compromised visitors e.g https://b4nk0famer1ca.com/
Re: Lenovo Statement on Superfish
#104One way to read this is they have not seen any evidence that people have actually been hacked in the wild. They may understand perfectly well that it is now trivial to do this but no one's actually reported yet that they had thousands of dollars stolen due to using online banking on a compromised Lenovo machine on public Wi-Fi.
Roll on the class action lawsuits.
Re: Lenovo Statement on Superfish
#105What's the best way to tell Lenovo they fucked up? I mean, I can vent over social media all day but will they even pay attention?
Re: Lenovo Statement on Superfish
#106> We have thoroughly investigated this technology and do not find any evidence to substantiate security concerns. I try to be measured around here, as hard as I can. I can't formulate a polite way to respond to this claim. Lenovo, you are full of shit, and maliciously so. There is no excuse, nor forgiveness, for what you've done here.
They are so big and bureaucratic, half the time they don't know who is working on what.
This behavior is still inexcusable.
Somebody should be fired for putting this garbage on computers to "enhance the users experience."
Re: Lenovo Statement on Superfish
#107Re: Lenovo Statement on Superfish
#108Earlier quoted context omitted.
Can you ever imagine Apple pulling a stunt like this? No, because it’s astonishingly user hostile: Lenovo should be hanging their head in shame, not making out like it’s no big deal.
The big difference is you don't mind when Apple does things like this. If you have "Hey, Siri" enabled then your phone's microphone is on all the time listening to everything you say. But I don't see a lot of people crying foul over that.
Re: Lenovo Statement on Superfish
#109Earlier quoted context omitted.
Not even a hint of an admission on the certificate issue, I'm not surprised. If they admit they knew about the root certificate or even acknowledge its existence after the discovery, they could open themselves up to legal liability if someone's bank account or identity is compromised. This really sucks because I used to recommend Lenovo workstations and ThinkPad laptops to people; it really is good hardware at a dece…
They actually reference the root certificate in their removal instructions: "Uninstalling Superfish Visual Discovery Go to Control Panel > Uninstall a Program Select Visual Discovery > Uninstall Superfish will be removed from Program Files and Program Data directories, files in user directory will stay intact for the privacy reason. Registry entry and root certificate will remain as well. The Superfish service will s…
Re: Lenovo Statement on Superfish
#110Earlier quoted context omitted.
> supermarket special offers Why would you not want to sign up to know about what discounts are available at your local grocery store, especially if you frequent it weekly.
Keyword there is "snail mail." You're saying you really want this stuff in your mailbox every week? I don't want any snail mail(of any kind), any week but it's something I still have to live with.