• STORIES
    • TECH
    • AUTOMOTIVE
    • GUIDES
    • OPINIONS
  • REVIEWS
    • READERS’ CHOICE
    • ALL REVIEWS
    • ━
    • SMARTPHONES
    • CARS
    • HEADPHONES
    • ACCESSORIES
    • LAPTOPS
    • TABLETS
    • WEARABLES
    • SPEAKERS
    • APPS
  • WATCHLIST
    • TV & MOVIES REVIEWS
    • SPOTLIGHT
  • GAMING
    • GAMING NEWS
    • GAME REVIEWS
  • +
    • OUR STORY
    • GET IN TOUCH
Reading: Round 2: Lenovo is back in the news for a new security risk in their computers
Share
Notification Show More
  • STORIES
    • TECH
    • AUTOMOTIVE
    • GUIDES
    • OPINIONS
  • REVIEWS
    • READERS’ CHOICE
    • ALL REVIEWS
    • ━
    • SMARTPHONES
    • CARS
    • HEADPHONES
    • ACCESSORIES
    • LAPTOPS
    • TABLETS
    • WEARABLES
    • SPEAKERS
    • APPS
  • WATCHLIST
    • TV & MOVIES REVIEWS
    • SPOTLIGHT
  • GAMING
    • GAMING NEWS
    • GAME REVIEWS
  • +
    • OUR STORY
    • GET IN TOUCH
Follow US

Round 2: Lenovo is back in the news for a new security risk in their computers

GEEK DESK
GEEK DESK
May 6

Few months after Lenovo’s SuperFish fiasco ended, the company is now back in the spotlight for a new security risk.

Security firm IOActive reported that it has discovered major vulnerabilities in Lenovo’s update system. The report claims that the vulnerabilities can give hackers access to bypass the company’s validation checks, and allow them to replace legitimate software with malicious software running in disguise, unspotted.

Should a Lenovo owner update their machine in a coffee shop, another individual could conceivably use the security hole to swap Lenovo’s programs with their own — what the researchers call the “classic coffee shop attack.” The security hole, along with others described by IOActive, are present in Lenovo System Update 5.6.0.27 and earlier versions, the Verge wrote.

We’ve reached out for comments and were able to get the following statement by a Lenovo Spokesperson:

Lenovo’s development and security teams worked directly with IOActive regarding their System Update vulnerability findings, and we value their expertise in identifying and responsibly reporting them. Lenovo released an updated version of System Update on April 1st which resolves these vulnerabilities and subsequently published a security advisory in coordination with IOActive at: https://support.lenovo.com/us/en/product_security/lsu_privilege.  Existing installations of System Update will prompt the user to automatically install the updated version when the application is run. Alternatively, users may manually update System Update as described in the security advisory.  Lenovo recommends that all users update System Update to eliminate the vulnerabilities reported by IOActive.

Share
What do you think?
Happy0
Sad0
Love0
Surprise0
Cry0
Angry0
Dead0

WHAT'S HOT ❰

Nomad’s Stand One and Tracking Card Pro gain new Stellar Orange finish
Marshall Stockwell III brings longer battery and repairability
Instagram profile grid reorder feature rolls out to users
Apple AirPods beta firmware update supports iOS 27 features
Google Gemini 3.5 Live Translate expands real-time speech tools
AbsoluteGeeks.com — assembled by Absolute Geeks Media FZE LLC during a caffeine incident. © 2014–2026. All rights reserved.
Follow US
AbsoluteGeeks.com was assembled during a caffeine incident.
© Absolute Geeks Media FZE LLC 2014–2026.
Proudly made in Dubai, UAE ❤️
Upgrade Your Brain Firmware
Receive updates, patches, and jokes you’ll pretend you understood.
No spam, just RAM for your brain.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?