financetom
Technology
financetom
/
Technology
/
Security flaw found, fixed that could have left millions of Dell laptops vulnerable, researchers say
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Security flaw found, fixed that could have left millions of Dell laptops vulnerable, researchers say
Aug 5, 2025 6:24 AM

*

Flaw affects more than 100 Dell laptop models, says Cisco

Talos

*

No evidence of exploitation in the wild, researchers say

*

Dell issued patches in March, April, May; advisory

published

June 13

By AJ Vicens

Aug 5 (Reuters) - A flaw in the chips used to secure

tens of millions of Dell laptops could have given

attackers the ability to steal sensitive data as well as

maintain access even after a fresh operating system install,

researchers with Cisco Talos said Tuesday.

The previously unreported analysis, validated by Dell in a

June security advisory, affected more than 100 models of Dell

laptops, according to the company, and targeted a chip in the

computer that stores passwords, biometric data and security

codes, and installs fingerprint, smartcard and near-field

communications drivers and firmware.

There is no indication that the vulnerabilities have been

exploited in the wild, according to the researchers, and Dell

issued patches for the devices in March, April and May, with an

overall security advisory published June 13.

The vulnerabilities are specific to the Broadcom

BCM5820X chip used by Dell in its ControlVault security firmware

and software. The flaw affects laptop models common in the

cybersecurity industry and government settings, according to

Philippe Laulheret, the senior vulnerability researcher at Cisco

Talos who discovered and led the analysis.

"Sensitive industries that require heightened security when

logging in (via smartcard or NFC) are more likely to find

ControlVault devices in their environment," Laulheret wrote in a

blog published Tuesday ahead of a presentation of the analysis

at the Black Hat security conference in Las Vegas scheduled for

August 6.

The findings highlight the need for more security research

focused on computer hardware tasked with handling biometrics and

other sensitive data, said Nick Biasini, head of outreach at

Cisco Talos.

"These concepts of secure enclaves and using biometrics and

these various other types of technologies are getting more and

more widespread," Biasini said. "It's becoming commonplace on

devices but it also introduces a new attack surface."

A spokesperson for Dell said in a statement that the company

addressed the issues "quickly and transparently," and directed

customers to the June 13 advisory. "As always, it is important

that customers promptly apply security updates that we make

available and move to supported versions of our products to

ensure their systems remain secure," the spokesperson said.

Broadcom ( AVGO ) declined to comment.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Lyft and Waymo Launch Partnership to Expand Autonomous Mobility to Nashville
Lyft and Waymo Launch Partnership to Expand Autonomous Mobility to Nashville
Sep 17, 2025
Waymo and Lyft ( LYFT ) to expand to Nashville next year, with Lyft's ( LYFT ) Flexdrive managing Waymo’s fully autonomous vehicles. SAN FRANCISCO--(BUSINESS WIRE)-- Lyft ( LYFT ) (“Lyft”) , a global mobility platform, and Waymo, the world’s leading autonomous driving technology company, today announced a new partnership to bring Waymo’s fully autonomous ride-hailing service to Nashville...
Omni Design Technologies Secures over $35 Million in Series A Funding to Advance Its Leadership in Wideband Signal Processing™ for the AI Data Revolution
Omni Design Technologies Secures over $35 Million in Series A Funding to Advance Its Leadership in Wideband Signal Processing™ for the AI Data Revolution
Sep 17, 2025
SAN JOSE, Calif.--(BUSINESS WIRE)-- Omni Design Technologies, a leader in Wideband Signal Processing™ solutions for the AI data revolution, today announced that it has successfully raised over $35 million in an oversubscribed Series A equity financing round. The round was led by CDIB-TEN Capital, a joint venture fund established by CDIB Capital and TEN Capital, CDIB-Innolux II, FM Capital, Tipping...
Ralliant Showcases Breakthrough Innovation with New Tektronix Platforms
Ralliant Showcases Breakthrough Innovation with New Tektronix Platforms
Sep 17, 2025
Launches highlight organic investment strategy and strengthen alignment with long-term growth vectors RALEIGH, N.C.--(BUSINESS WIRE)-- Ralliant Corporation ( RAL ) (“Ralliant”) , a premier player in precision technologies, today spotlighted two significant product launches from its Tektronix business: the 7 Series DPO oscilloscope and the MP5000 Series modular precision test system. Tektronix, a global leader in test and measurement, announced...
Rec Accelerates Growth with Pro Athlete-Backed Series A to Power Local Recreation
Rec Accelerates Growth with Pro Athlete-Backed Series A to Power Local Recreation
Sep 17, 2025
Supported by investors including Larry Fitzgerald, Kevin Durant, and Joe Montana, Rec expands nationwide to meet surging demand for modern recreation SAN FRANCISCO, Sept. 17, 2025 /PRNewswire/ -- Rec, the recreation technology company modernizing how America plays, today announced it has raised $11 million Series A led by Crosslink Capital. Athlete investors Larry Fitzgerald, Jr. and Kelvin Beachum, Jr. joined...
Copyright 2023-2026 - www.financetom.com All Rights Reserved