Stories
Slash Boxes
Comments

News for nerds, stuff that matters

Acer May Be Bugging Computers

Posted by Zonk on Mon Jan 08, 2007 12:43 AM
from the might-want-to-look-into-this dept.
tomjen writes "What if a well known laptop company had silently placed an ActiveX Control on their computers that allowed any webpage to execute any program? Well Acer apparently has and they have (based on the last modified-by date of the file) been doing this since 1998. 'Checking the interface of the control reveals it has a method named "Run()" as shown below. The method supports parameters "Drive", "FileName", and "CmdLine". Isn't it strange for a control that's marked "safe for scripting" to allow a method that is suggestive of possible abuse?'"
This discussion has been archived. No new comments can be posted.
Display Options Threshold:
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • But dude... (Score:5, Funny)

    They're Ferrari's
  • Phew! (Score:1, Interesting)

    by gardyloo (512791) on Monday January 08 2007, @12:47AM (#17504720)
    Typing this on an Acer laptop. Sure glad I wiped the thing immediately and put linux on. So far I've really liked the laptop, but Acer is one company which gives you "restore" DVDs which contain a disk image and which wipe everything else off if you want to use them to reinstall Windows. Hate that.
    • Re:Phew! (Score:5, Funny)

      by BrainInAJar (584756) on Monday January 08 2007, @12:49AM (#17504736)
      Mine shipped with Linux, which I immediately wiped & installed FreeBSD, but I appreciate the thought
      [ Parent ]
      • Re:Phew! (Score:5, Funny)

        by gardyloo (512791) on Monday January 08 2007, @12:53AM (#17504760)
        Haha. I was just joking. I actually use mine by drilling through the case, and making and breaking a couple of connections between the motherboard and three "C" cells hooked in series with paperclips. Manually, beeyotch. Real men type in raw binary without the keyboard. But I appreciate the thought.
        [ Parent ]
        • Re:Phew! by Anonymous Coward (Score:1) Monday January 08 2007, @02:52PM
          • 1 reply beneath your current threshold.
        • Re:Phew! (Score:5, Funny)

          by Dilaudid (574715) on Monday January 08 2007, @06:34AM (#17506482)
          Old? Hah I rememember trolling by morse code back when slashdot was a ham radio channel.
          [ Parent ]
          • Re:Phew! (Score:4, Funny)

            by pallmall1 (882819) on Monday January 08 2007, @06:56AM (#17506610)
            And liked it!
            [ Parent ]
          • Re:Phew! by MMC Monster (Score:2) Monday January 08 2007, @09:23AM
            • Re:Phew! by JudgeFurious (Score:1) Monday January 08 2007, @09:37AM
              • Re:Phew! by Anonymous Coward (Score:2) Monday January 08 2007, @09:53AM
                • Re:Phew! by fwarren (Score:2) Monday January 08 2007, @12:36PM
              • Re:Phew! by bigdavesmith (Score:2) Monday January 08 2007, @10:03AM
                • Re:Phew! by d3ac0n (Score:2) Monday January 08 2007, @11:22AM
              • Re:Phew! by AJWM (Score:3) Monday January 08 2007, @11:19AM
              • 1 reply beneath your current threshold.
          • Re:Phew! by Anonymous Coward (Score:2) Monday January 08 2007, @09:41AM
            • The winner by gardyloo (Score:2) Monday January 08 2007, @01:07PM
          • Re:Phew! by blincoln (Score:2) Monday January 08 2007, @10:13AM
            • Re:Phew! by allanc (Score:2) Monday January 08 2007, @02:32PM
          • Re:Phew! (Score:5, Funny)

            I rememember trolling by morse code back when slashdot was a ham radio channel.

            Youngsters these days. Back then it was called dashdot, it predated even radio, the oldest of us trolled with semaphores. With the introduction of electrickity, the whole telegraph scene took off. Then some guy named Morse forked the project and publicised the code as his own. It's been downhill ever since.

            Hitches up his braces, fires some chaw in the spittoon, waits for someone older to out-troll

            the AC
            [ Parent ]
            • Re:Phew! by JazzLad (Score:1) Monday January 08 2007, @11:27AM
            • Re:Phew! by Alsee (Score:2) Monday January 08 2007, @08:15PM
          • CPTP by einnar2000 (Score:1) Monday January 08 2007, @11:28AM
        • Re:Phew! (Score:4, Funny)

          Someone please mod this agressive idiot to hell....please.
          There is no "-1 sinful" moderation, sorry.
          [ Parent ]
          • Re:Phew! by cadeon (Score:2) Monday January 08 2007, @10:59AM
        • 1 reply beneath your current threshold.
      • Re:Phew! by Kadin2048 (Score:2) Monday January 08 2007, @01:33AM
        • Re:Phew! by mikek3332002 (Score:1) Monday January 08 2007, @01:42AM
        • Re:Phew! (Score:4, Interesting)

          by BrainInAJar (584756) on Monday January 08 2007, @02:16AM (#17505232)
          There was a local computer store in town that was selling them, and apparantly Acer shipped them to the store with Linux preinstalled. Some strange Chinese distro I'd never heard of... I'd reccomend the laptop, yeah... Served me well so far... warranty just expired and I've had no need to use it.

          and no, I wasn't going for humour mods... my laptop actually shipped with Linux, and I did wipe it for FreeBSD (it runs OpenSolaris now, but that's beyond the point).
          [ Parent ]
          • Re:Phew! by jamar0303 (Score:1) Monday January 08 2007, @05:08AM
          • Re:Phew! by Zontar The Mindless (Score:2) Monday January 08 2007, @05:23AM
          • 1 reply beneath your current threshold.
        • Re:Phew! (Score:5, Informative)

          by belmolis (702863) <billposerNO@SPAMalum.mit.edu> on Monday January 08 2007, @02:33AM (#17505344)
          (http://billposer.org/)

          I recently bought a laptop with Ubuntu pre-installed from The Linux Store [thelinuxstore.ca], which is in Ontario. I've been perfectly satisfied aside from the minor point that they only offer the choice of Ubuntu and Fedora Core when I would have preferred Debian.

          [ Parent ]
          • Re:Phew! (Score:4, Insightful)

            by DaveCar (189300) on Monday January 08 2007, @07:18AM (#17506742)
            Heh, if you're the kind of anal-retentive who runs Debian then you'd probably have an problem with which version of Debian they installed. Then the kernel version, then the desktop environment ... if you want to run Debian it is probably easier on everyone if you just install it yourself ...

            I run Debian ;-)
            [ Parent ]
          • There are at least two Ontarios by Better.Safe.Than.Sor (Score:1) Monday January 08 2007, @11:23AM
            • 1 reply beneath your current threshold.
          • 1 reply beneath your current threshold.
        • Re:Phew! by Brian Gordon (Score:1) Monday January 08 2007, @02:43AM
          • Re:Phew! by DrSkwid (Score:2) Monday January 08 2007, @05:56AM
            • Re:Phew! by mrchaotica (Score:2) Monday January 08 2007, @08:39AM
              • Re:Phew! by cloudmaster (Score:2) Monday January 08 2007, @10:38AM
              • oops, you're right by DrSkwid (Score:2) Monday January 08 2007, @10:46AM
              • Re:Phew! by mrchaotica (Score:2) Monday January 08 2007, @01:56PM
        • Re:Phew! by KDR_11k (Score:2) Monday January 08 2007, @03:10AM
        • Re:Phew! by FunkyELF (Score:1) Monday January 08 2007, @09:42AM
        • Re:Phew! by Badfysh (Score:1) Monday January 08 2007, @10:40AM
      • Re:Phew! (Score:5, Funny)

        by Linker3000 (626634) on Monday January 08 2007, @03:51AM (#17505750)
        Meh,

        I immediately reformatted my newly-purchased Acer's hard disk, installed DR-DOS and Crosstalk and do all my computing on a VAX 11/750.

        Next...
        [ Parent ]
        • Re:Phew! by Tore S B (Score:2) Monday January 08 2007, @11:16AM
          • Re:Phew! by crawling_chaos (Score:2) Monday January 08 2007, @03:00PM
        • Re:Phew! by james_in_denver (Score:2) Monday January 08 2007, @07:50PM
        • Loser by Anonymous Coward (Score:1) Monday January 08 2007, @08:57AM
          • Re:Loser by Flashpot (Score:1) Monday January 08 2007, @10:09AM
        • 1 reply beneath your current threshold.
      • Note: The following comments are legitimate information, designed to help people help themselves. I am not an Acer fanboy (I reserve that for SanDisk), but I like my laptop. YMMV.
        Actually, I have an Acer Aspire 1640. It's a nice machine for the $799 I got it for about 6 months ago. And Acer doesn't load a bunch of AOL/WildTangent/EarthLink/etc useless "applications" that are bundled because they can't stand on their own, like certain other manufacturers *cough*Dell*cough*HP*cough*. The few things that were bundled (counted on *maybe* 2 hands) were actually useful.
        Once I got to college (where I have access to $10 Win XP Pro discs) I wiped it, reinstalled Windows (gasp!) *and* Ubuntu Linux. Works great, and with 120GB HD, plenty of space for both OS's. The Windows works great, since it's very light (only Windows-only stuff, everything else is on Ubuntu+Wine).
        Hardware support on Linux is pretty decent. After some elbow grease, wireless, ethernet, widescreen, CPU power stepping, Sansa m250, even hardware buttons are working. Sound is the only thing I'm not sure about, output works fine, input seems finicky. I could probably fix it, but I don't care that much yet.

        So...I'm not that concerned. Besides, who uses Internet Explorer anyway?
        (That was sarcasm. I know the correct answer is "98% of everyone, luser!")
        (That was sarcasm too. I know the correct answer is really "No, it's 89%, n00b!!11!!BBQ!! Look at my fancy link [example.com]!!")
        (Other appropriate comments include "I for one welcome our new Acer-invited overlords", "In soviet russia, computers bug Acer!", "I use lynx, you insensitive clod", "Ubuntu sux. [Insert Distro Name Here] is sooo, like, better because [insert unsubtantiated claim here].", etc., ad infinitum.)
        [ Parent ]
      • Re:Phew! by ThomS (Score:2) Monday January 08 2007, @07:40AM
        • Re:Phew! by rjshields (Score:2) Monday January 08 2007, @08:52AM
          • Re:Phew! by FlyingSquidStudios (Score:2) Monday January 08 2007, @09:33AM
            • Re:Phew! by bigsam411 (Score:1) Monday January 08 2007, @10:42AM
              • Re:Phew! by FinalCut (Score:1) Monday January 08 2007, @10:59AM
              • Re:Phew! by Archangel Michael (Score:2) Monday January 08 2007, @11:55AM
              • Re:Phew! by Em Adespoton (Score:2) Monday January 08 2007, @01:13PM
              • Re:Phew! by Archangel Michael (Score:2) Monday January 08 2007, @01:44PM
              • Re:Phew! by Em Adespoton (Score:2) Monday January 08 2007, @03:06PM
          • 1 reply beneath your current threshold.
      • Re:Phew! by HiThere (Score:2) Monday January 08 2007, @01:46PM
    • Re:Phew! by GFLPraxis (Score:3) Monday January 08 2007, @12:50AM
      • Re:Phew! (Score:4, Informative)

        by mallardtheduck (760315) <stuartbrockman.hotmail@com> on Monday January 08 2007, @12:58AM (#17504786)
        My HP notebook, bought about 15 months ago not only came with restore disks, but a plain Windows XP SP2 disk and disks for WinDVD and Sonic's CD recording software.

        I don't know about SONY, but in my experience, HP are more generous than most in terms if disks included with their PCs.
        [ Parent ]
        • Re:Phew! by jellie (Score:1) Monday January 08 2007, @02:25AM
          • Re:Phew! by aerthling (Score:1) Monday January 08 2007, @02:42AM
          • Re:Phew! by TheSpoom (Score:2) Monday January 08 2007, @07:04AM
        • Re:Phew! by Bargearse (Score:1) Monday January 08 2007, @02:39AM
        • Re:Phew! by Anonymous Coward (Score:1) Monday January 08 2007, @02:51AM
        • Re:Phew! by Zardoz44 (Score:3) Monday January 08 2007, @07:37AM
        • Re:Phew! by Tauvix (Score:3) Monday January 08 2007, @07:50AM
        • Re:Phew! by ocbwilg (Score:2) Monday January 08 2007, @08:42AM
          • 1 reply beneath your current threshold.
        • Re:Phew! by Tinfoil (Score:2) Monday January 08 2007, @09:54AM
          • Re:Phew! by cyber-dragon.net (Score:2) Monday January 08 2007, @11:46AM
      • Re:Phew! by aauu (Score:1) Monday January 08 2007, @01:07AM
        • Re:Phew! by totally bogus dude (Score:1) Monday January 08 2007, @03:36AM
        • 1 reply beneath your current threshold.
      • Re:Phew! (Score:4, Informative)

        by phalse phace (454635) on Monday January 08 2007, @01:42AM (#17505078)
        Don't know about you, but I wouldn't call $20 a ridiculous amount to pay for a set of restore disks. And you can avoid paying the $20 or so by burning your own set of restore disks... my HP notebook prompted me to do so when I first turned it on. It just burns an image of the restore partition on the C: drive. If you forget or decide you want to do it later, it will/can remind you again in a couple days or so.
        [ Parent ]
        • Re:Phew! (Score:4, Informative)

          by Propaganda13 (312548) on Monday January 08 2007, @02:38AM (#17505366)
          Corrupt that extra partition and see how far that "restore" disk gets you. It's not the regular Windows restore disk that used to come with computers and it's definitely not a Windows disk. It won't work without the data on the partition.

          $20 for the set of disks + $52.50(Dell refunded price for Windows) is about the same price you could buy Windows XP Home OEM version for.
          [ Parent ]
          • Re:Phew! by jamar0303 (Score:1) Monday January 08 2007, @05:16AM
          • Re:Phew! by dianebrat (Score:1) Monday January 08 2007, @08:32AM
            • Re:Phew! by d3ac0n (Score:2) Monday January 08 2007, @12:12PM
            • Re:Phew! by Propaganda13 (Score:2) Monday January 08 2007, @07:12PM
        • Re:Phew! by Splab (Score:3) Monday January 08 2007, @04:02AM
          • Re:Phew! by TravisWatkins (Score:2) Wednesday January 10 2007, @11:38AM
      • Re:Phew! by KDR_11k (Score:1) Monday January 08 2007, @03:17AM
      • That's BS (Score:4, Informative)

        by cheros (223479) on Monday January 08 2007, @03:34AM (#17505664)
        Sony and HP don't include restore disks because they're harder to keep current than a production disk image - they're DVDs, not CDs.

        All you need to do is burn the images (DVDs) when you get the laptop, and Sony positively nags you repeatedly to do it. Also, if you leave the recovery partition in place you can do it again later.

        As for getting the original DVDs, they don't charge a ridiculous amount (in the $60 region) but they do ask for a ridiculous amount of proof that it's your own laptop and you're not going to share the disks with the world..

        Don't know about HP, but have handled enough Sony laptops :-)
        [ Parent ]
        • Re:That's BS by fireboy1919 (Score:2) Tuesday January 09 2007, @07:39AM
        • 1 reply beneath your current threshold.
      • Re:Phew! by man_of_mr_e (Score:2) Monday January 08 2007, @04:21AM
      • Re:Phew! by jamar0303 (Score:1) Monday January 08 2007, @05:13AM
      • Re:Phew! by east coast (Score:2) Monday January 08 2007, @01:07PM
      • Re:Phew! (Score:5, Funny)

        by pboulang (16954) on Monday January 08 2007, @01:11AM (#17504880)
        I spend a hundred bucks on dinner sometimes, and that's just for me, not including the babe or the vino. Sheesh.
        Do you have to pay for the babe by the hour or is it a flat rate?
        [ Parent ]
        • Re:Phew! by glesga_kiss (Score:2) Monday January 08 2007, @09:40AM
        • 2 replies beneath your current threshold.
      • Re:Phew! by mikkelm (Score:1) Monday January 08 2007, @03:50AM
      • 1 reply beneath your current threshold.
    • Re:Phew! by east coast (Score:3) Monday January 08 2007, @12:58AM
    • Re:Phew! by bilbravo (Score:2) Monday January 08 2007, @08:28AM
    • Re:Phew! by tim_uk (Score:2) Monday January 08 2007, @08:34AM
    • Re:Phew! by mikael (Score:2) Monday January 08 2007, @09:09AM
    • Acer's stuck on FAT by evuraan (Score:1) Monday January 08 2007, @02:00PM
    • Re:Phew! by number11 (Score:2) Monday January 08 2007, @03:42PM
    • 4 replies beneath your current threshold.
  • And now that it's publicized... (Score:5, Interesting)

    by mallardtheduck (760315) <stuartbrockman.hotmail@com> on Monday January 08 2007, @12:49AM (#17504740)
    I expect exploits for this to start appearing within days, if not hours...
  • present on Aspire 1690 (Score:3, Informative)

    by Phil246 (803464) on Monday January 08 2007, @12:55AM (#17504766)
    Checked mine, its present :( Anyone know if its safe to make that file and its registry entry 'disappear' ?
  • The 4th USB port (Score:4, Interesting)

    I once bought a Fujitsu-Siemens laptop with 3 USB ports, but when I opened it I noticed it had a non-visible 4th USB port near the hard disk that you needed a screwdriver in order to access. No mention of it in Fujitsu-Siemen's manuals and other documentation that I got with the laptop, and no mention of it on their website. Although visually hidden, the port was visible via diagnostics software. I thought that this could be one way to put a spy antenna or other device on a laptop (a USB port provides 500mA of power which is enough to power a large range of antennas and electronics). It could be used to put an anti-theft antenna revealing the laptop's location, to put a keylogger, or to put a backup device. In the end I just put a permanent flash key drive in it so I had a laptop with permanent flash storage in addition to the hard disk.
    • Re:The 4th USB port (Score:5, Insightful)

      by mallardtheduck (760315) <stuartbrockman.hotmail@com> on Monday January 08 2007, @01:06AM (#17504844)
      Could just be there for optional "built-in" bluetooth or Wifi. A USB module is probably cheaper than an Mini-PCI.
      Plus, if they do no wireless, Wifi-only and Wifi+BT models, with a single Mini-PCI slot, they would need both Wifi and Wifi+BT cards, if they have a "hidden" USB port, they only need to stock Wifi mini-PCI cards and USB bluetooth adapters, the same adapters that are sold independently.
      [ Parent ]
    • Re:The 4th USB port by starwed (Score:3) Monday January 08 2007, @01:10AM
    • It's an appendix. (Score:5, Interesting)

      I think a lot of computers have internal ports that were put in there as part of the original board design, but were never taken advantage of during configuration or subsequent system design.

      In an old Mac of mine (G4 "Sawtooth"), there is an internal Firewire port right on the motherboard, even though there are virtually no (to my knowledge anyway) internal Firewire devices available. The most useful thing you can do with it is run it out to a dummy card-slot panel and give yourself an extra external port. (I suppose you could also run another HD by using a IDE to FW converter card, if you could find a small enough one.)

      It's there, I suspect, because when they were designing that mobo, it wasn't clear that Firewire would be used primarily for DV and external peripherals, and wouldn't become the internal-peripheral interconnect of choice. For all the designers knew, Firewire could have become like SATA is today, with hard drives being built for it natively. In that case, having one inside the case could be useful as hell (particularly since that machine has space for 4 or 6 internal 3.5" HDs and 2 removable-media drives). They had no way of knowing that it would end up being the electronics version of an appendix.

      I suspect if you were to look around closely at the first generations of a lot of technologies, you'd find a lot of things like this; design decisions made for possibilities that just didn't pan out, but were left there anyway.
      [ Parent ]
      • Re:It's an appendix. by Zouden (Score:3) Monday January 08 2007, @03:14AM
      • PHB == appendix (Score:5, Interesting)

        by TapeCutter (624760) on Monday January 08 2007, @05:08AM (#17506050)
        (Last Journal: Tuesday February 13 2007, @05:31PM)
        I know that some, but certainly not all, "hidden" hardware/software is the result of a PHB "work-around", I submit the following anecdote about illogical engineering vs optimal solutions....

        Many moons ago I worked on a large project where we supplied a logistics application along with 8000 laptops that we were also expected to maintain. The spec's for the laptop's were written into the $80M/5yr contract, in particular the contract specified "special" (ie: manafactured by our sister company) laptops with a 120M HDD. A thousand or so laptops were delivered immediately, I suspect this was mainly to garner a large initial payment, 800 were then stored in a warehouse by the customer for 2yrs while we wrote the software and ran a pilot with the other 200.

        When it came time to ramp up to full production we found we could no longer get 120M HDD's but could get 250M for the same price (the HDD's were third party PCMCIA cards that were supposed to be "pre-imaged" by the hardware guys). The Dilbert moment happened when a PHB with way too much time on his hands had to sign the purchase order and demanded 120M HDD's because "that's what's it says in the contract". The solution was illogical but effective, we quietly arranged for our hardware friends to format the 250M physical drive into a 120M logical drive and ignore the remaning space (and told them why). A few PHB readable edits to the PO and hey presto a warehouse full of laptops with our software pre-installed on 120M drives and an extra PHB-invisible partion.

        Now throwing away half the drive is clearlly illogical but in my mind it was the "optimal" solution, with the possible exception of a time consuming appendectomy that would gum up the workflow for weeks/months and could possibly result in a devil we didn't know taking over. I also say "optimal" because: The PHB belived he had asserted his authority over the project and a rival PHB in the sister company, all with just one demand. From what I recall he went off to pester someone else and gloat about it. Not only did it nueter the PHB but HR, the lawyers and the accountants were kept in their cages, the techies got a good laugh, and the customer remained oblivious to the whole fiasco.

        Finally, a year or so into production when the image size started to bloat towards the 120M limit, the same PHB asked for a costing to retrofit bigger drives, like any good salesman we umm'ed and ahh'ed then went off to "see what we could do" before announcing we could remotely activate a new D: drive on a standard update cycle using some simple "magic" and a couple of mandays labour. The news delighted the PHB who promptly added a manday for his own "time". We didn't even hint that it was his previous demand had caused the current space squeeze, we simply saved our eveidence in case an appendectomy was required at some future random impasse. We also saved all the "can do" brownie points for the next time we had to convince the same PHB that his proposed solution to some imaginary problem really, truly, is a "can't do" situation, regardless of what PC week says.
        [ Parent ]
      • Re:It's an appendix. by Garrett Fox (Score:1) Monday January 08 2007, @07:49AM
      • 1 reply beneath your current threshold.
    • Re:The 4th USB port by dreamlax (Score:1) Monday January 08 2007, @02:12AM
    • 1 reply beneath your current threshold.
  • by Toddlerbob (705732) on Monday January 08 2007, @12:59AM (#17504798)
    Is there simply a file I can delete to fix this? I got an Acer desktop for my sister, and I'd like to tell her what to delete to get rid of this threat.
  • Isn't it a little bit naive (Score:3, Interesting)

    by zappepcs (820751) on Monday January 08 2007, @01:00AM (#17504814)
    (Last Journal: Friday May 18, @11:07AM)
    to think that Acer and others have not been doing this for years? Put on the tin foil hat now, they may be doing so in conjunction with governments. Lets not stop there, your ISP and phone company might also be doing the same thing?

    I bet that buried in the EULA somewhere is a statement about remote support or some other such thing that would negate any complaints about this code as far as culpability goes. Wonder what they will do now that the botnet boys know its there? Just one more reason that people who want to have a safe computer should learn how to administer one properly... IMO.
  • to those of us uneducated (Score:1, Interesting)

    by Anonymous Coward on Monday January 08 2007, @01:03AM (#17504824)
    Please give examples or something of how this could be used for ill purposes. Yes, I realize it is obvious to most people but I'm a beginner. I do not know what harm can come of the power, in and of itself, of being able to run a program that is already on computer. Would one, through this particular acer thing, be able to pass things to that program and then have that program in turn do other bad things or what? Please give rudimentary examples.
    • Re:to those of us uneducated (Score:5, Informative)

      by Anonymous Coward on Monday January 08 2007, @01:09AM (#17504866)
      Please give examples or something of how this could be used for ill purposes. Yes, I realize it is obvious to most people but I'm a beginner. I do not know what harm can come of the power, in and of itself, of being able to run a program that is already on computer. Would one, through this particular acer thing, be able to pass things to that program and then have that program in turn do other bad things or what? Please give rudimentary examples.
      One could, for example, use the Windows ftp.exe client to download an arbitrary program (e.g. botnet software) and then execute it. I'm certain there are even better ways to do it but this one could work well enough to completely take over the machine.
      [ Parent ]
    • Re:to those of us uneducated (Score:4, Informative)

      by codepunk (167897) on Monday January 08 2007, @01:16AM (#17504922)
      (http://www.codepunk.com/)
      I have not seen the control or have a copy of it but it can be a simple as a couple of lines
      of script in a web page. Now I can possibly own most acer laptops visiting that page.

      The script could do something like this
      ftp somehost
      ftp get somefile
      execute somefile

      Bingo I own your laptop.

      Or say I just ftp your firefox data so I can grab your history, passwords etc.

      [ Parent ]
    • Re:to those of us uneducated (Score:5, Interesting)

      by djupedal (584558) on Monday January 08 2007, @01:35AM (#17505046)
      "Please give examples or something of how this could be used for ill purposes. Yes, I realize it is obvious to most people but I'm a beginner."

      A beginner & an AC - wants to know exactly how to execute the 'bad thing', and promises not to inhale :)

      Oh...rudimentary...well, that's different. Since Acer would presumably have the power to control any aspect of your computer when you use it to log onto any webpage, all they need to do is to wait for you to access a site under their control, and bingo, they can lift all of your installation logs, cookies, saved passwords, MS WORD docs containing the words 'budget; personal; finance; medical; records; debt; sex, SSN (and all applicable variants),etc.

      OK, let's say you are gullible enough to think that they can take all of that they want, and still not put you at risk - now, think for just a moment about who 'they' are...? What are the odds of 'they' going to all that trouble and not having some plan to do something with what they glean that you will not be pleased with...? Still not impressed?

      How's this... Acer sits around and waits for just the right time and boom - they toggle a flag on your computer that makes it appear that it needs to have XYZ repaired, and what do you know, the only resource is...ACER!!

      A new age variation on the old water-bag trick. One guy owned two service stations. One station was the last stop before heading out of LA, into the desert, heading for Palm Springs. The other was the last service station before heading out of Palm Springs, out across the desert, heading for LA. When a car stops on the LA side, the station staff sell the unaware traveler a scary story about being in the desert and having the car break down from overheating. Seems, tho, if you buy a canvas water-bag filled with water, and hang it on your car's front grille, it will supposedly help cool the air before it flows across the radiator. Best insurance money can buy. Thank ya now, ya'll have a safe trip! :)

      Problem is, that big 'ol canvas bag actually blocks the airflow, and by the time you get near the other side of the desert, your car overheats and you have to pay the Palm Springs service station to come and tow your car and fix everything that broke from overheating. Not a small fee, even in those days. They explain how the bag is what did the damage, and the hapless owner tells them to keep it.

      What do you think the Palm Springs service station guys do with the demon water-bag? Well, of course, they sell it to the next dupe going from there to LA, and even help by attaching it to the grille of his car. Thank ya now, ya'll have a safe trip! :)

      I figure that one bag most likely made dozens of round trips across the Mohave, and put at least two generations of kids thru law school :)

      Rumor has it owning those two stations was the fastest way to retirement until the big casinos came in and the real pocket-picking took off.
      [ Parent ]
    • Re:to those of us uneducated by fabs64 (Score:1) Monday January 08 2007, @01:36AM
    • Re:to those of us uneducated by dezert_fox (Score:2) Monday January 08 2007, @02:45AM
    • Re:to those of us uneducated by flyingfsck (Score:2) Monday January 08 2007, @03:29AM
    • Re:to those of us uneducated by rune420 (Score:1) Monday January 08 2007, @03:51AM
    • Re:to those of us uneducated by Dr. Blue (Score:2) Monday January 08 2007, @09:47AM
    • 2 replies beneath your current threshold.
  • Lessons learned... (Score:5, Insightful)

    by Anonymous Coward on Monday January 08 2007, @01:11AM (#17504882)
    1) Whenever possible, build your own.

    2) When you can't build your own (laptops), *always* re-install your OS after purchasing a new computer, and for God's sake use a real install CD and not the recovery one provided by the manufacturer.
  • cvrsd;lk.a5df.a,pfll; (Score:2, Funny)

    by Tablizer (95088) on Monday January 08 2007, @01:11AM (#17504886)
    (http://www.geocities.com/tablizer | Last