this post was submitted on 05 Mar 2026
1052 points (98.9% liked)

Technology

83805 readers
1872 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] rekabis@lemmy.ca 24 points 1 month ago (5 children)

Yes, but if you are running Windows on them, do they still inject Chinese state-sponsored malware into Windows on every boot from UEFI/BIOS storage?

They were caught doing this on several occasions, to the point where Lenovo products are forbidden across significant swaths of the U.S. government and military.

[–] matlag@sh.itjust.works 9 points 1 month ago

Err... were they? I remember vulnerabilities and a ban from SOME of the US gov agencies, but not clear if it was because of spying concerns or because they wanted a US supplier.

[–] quips@slrpnk.net 7 points 1 month ago (3 children)

How this hasn’t killed all serious interest is beyond me.

[–] Drusas@fedia.io 6 points 1 month ago

Very few people, relatively speaking, have heard anything about this whatsoever. That's how.

[–] Pirate@feddit.org 5 points 1 month ago (1 children)

There’s this thing called uninstalling the factory OS and reinstalling with a clean image. If you go a step further you can even get rid of Windows altogether and install Linux.

[–] quips@slrpnk.net 0 points 1 month ago (1 children)

How can you trust that there’s no rootkits being injected into your linux install?

[–] Pirate@feddit.org 1 points 1 month ago* (last edited 1 month ago) (1 children)

How can you trust other laptop manufacturers aren’t doing the same if we’re going with unfounded assumptions?

Most Linux images offer checksums to verify integrity.

[–] quips@slrpnk.net 1 points 1 month ago

Track record and reputation

[–] BCsven@lemmy.ca 3 points 1 month ago (1 children)

My memory was fuzzy, but I think it wasn't UEFI but apps/drivers, but j could be wrong

[–] rekabis@lemmy.ca 3 points 1 month ago

You are correct, however they were malicious in nature and loaded on every boot from the UEFI/BIOS. They required Windows and auto-terminated the install if they already existed.

[–] drmoose@lemmy.world 2 points 1 month ago (2 children)
[–] Nugscree@lemmy.world 1 points 1 month ago

Trust me bro ^*tm^

[–] rekabis@lemmy.ca 0 points 1 month ago (1 children)

One example of many.

You must be new to tech to not remember this. Wasn’t all that long ago.

[–] drmoose@lemmy.world 3 points 1 month ago (1 children)

Not even remotely the same thing OP is claiming. It's their own windows flavor version with auto start script.

[–] rekabis@lemmy.ca 1 points 1 month ago* (last edited 1 month ago)

Read it again. It occurs even with a full system wipe and re-install from Microsoft-direct media, or even a full hard drive swap. It is wholly independent of what is on the hard drive, the only restriction being that it can only successfully run when injected into Windows.

[–] BCsven@lemmy.ca -1 points 1 month ago

They can't be a 10, only framework gets a 10. Nothing compares.