JucoTech

Security Researcher Found Pre-Installed Keylogger In Hp Laptops[460]

December 12, 2017
December 12, 2017 | | TAG: tech-news
keylogger found in hp notebook models
keylogger in hp laptops

Have you bought an HP Laptop? Then you are at risk surely. Because it is recording each and every keystroke that you type on your keyboard. A security researcher name 'Michael Myng', discovered a pre-installed keylogger in several Hewlett-Packed(HP) Laptops which might allow hackers to steal your sensitive information, including passwords and credit card details.

Actually, this keylogger is present in SynTP.sys file, which is part of Synaptics touchpad drivers. Due to that pre-installed keylogger, more than 460 HP Notebook models are estimated to be vulnerable to hackers.

How The Security Researcher Found pre-installed Keylogger:

When the security researcher looking for the driver to adjust the backlighting of HP laptop keyboards, then a line in the SynTp.sys Keyboard driver caught his attention. When he dug more into it, he found that the file is saving all scan codes and keystrokes into a WPP(Windows Software Trace PreProcessor) location.

In fact, the keylogger component is disabled by default. Hackers can make use of this opportunity to enable pre-installed keylogger present in HP laptops with help open source tools that are available on the internet and they can easily bypass the UAC(User Access Control) by setting a registry key value.

Registry Key Location:
HKLM\Software\Synaptics\%ProductName%
HKLM\Software\Synaptics\%ProductName%\Default

The researcher reported the presence of keylogger issue to HP team. The company said that it was basically a "debug trace" that is left accidentally and it has been removed now.

Notice:
Neither Synaptics nor HP nor Hackers have access to customer data. A third party person/software would need administrative privileges to make use of the vulnerability.

To eradicate this issue HP company released a driver update to remove the debugging code present in the affected HP Notebook Models. List of the affected Notebook models and fixed drivers can be found at Hp Support Website. Check whether your laptop model is one among them or not.

To eradicate this issue HP company released a driver update to remove the debugging code present in the affected HP Notebook Models. List of the affected Notebook models and fixed drivers can be found at Hp Support Website. Check whether your laptop model is one among them or not.


Post a Comment

Don't Miss An Update