Dell preinstalls a root certificate that could be abused by attackers to intercept encrypted data. Dell has confirmed the vulnerability, which it says stems from a customer-support application called Dell Foundation Services. The company has released instructions and software that can be used to automatically or manually expunge eDellRoot from affected systems. Dell’s security misstep parallels Lenovo’s Superfish adware bloatware blunder, which has been dubbed “Superfish 2.0″ A Dell spokeswoman says the certificate is not malware or adware, but it was intended to provide the system service tag to Dell online support.”]
Source: https://www.databreachtoday.com/dell-releases-fix-for-root-certificate-fail-a-8701

