
They originally did make a patch, but then they didn't release it. He told IBTimes, “This one had code execution that was quite obvious and easy to exploit – it literally took less than 10 minutes to attack the system using that vulnerability.” Manzuik added, “They have told us they are patching the issue, but we have still not seen a patch from it. “Asus and Acer were the worst,” according to Steve Manzuik, Duo Security's director of security research. You know bloatware slows down your computer, but Duo Security’s Duo Labs warned, “The worst part is that OEM software is making us vulnerable and invading our privacy.” The researchers said every one of the five major OEM PC vendors it investigated had at least one update tool as well as at least one vulnerability which a hacker could exploit for a man-in-the-middle attack, then execute code, to completely compromise the affected PC.



In some cases, it would take less than 10 minutes for an attacker to fully compromise your PC. No one actually likes the preloaded bloatware that comes installed on new Windows PCs, but if your computer is an Asus, Dell, Hewlett Packard, Acer or Lenovo, then that crapware can could get you hacked.
