Skip to main content
  1. Home
  2. Computing
  3. News

Patch your HP laptops — the keyboard may have a keylogger installed

Add as a preferred source on Google

HP issued a patch for its Synaptics touchpad driver last month to fix a potential keylogger issue, but it may be more widely problematic than initially expected. The keylogger security researchers identified within the driver may affect hundreds of HP laptops and mobile workstations, including its recent Spectre Pro x360 models.

The fix for this problem was released at the start of November in a dry sounding fashion; the driver update was called the “Synaptics Touchpad Driver Potential, Local Loss of Confidentiality.” Although HP did designate it as something that should be acted on as soon as possible, ZwClose breaks down exactly why this issue is potentially more dangerous than HP makes it sound.

Recommended Videos

The keylogger in question was discovered hidden within HP’s keyboard driver and looked to save scan codes. Although the logging was disabled by default, it could easily be enabled by a user with administrative access. HP’s claim is that it was a debug trace that wasn’t removed — and now has been by the patch.

In the patch notes, it also goes out of its way to highlight that neither HP itself nor the touchpad developer, Synaptics, had any access to customer information:

“A potential security vulnerability has been identified with certain versions of Synaptics touchpad drivers that impacts all Synaptics OEM partners,” the update page reads. “A party would need administrative privileges in order to take advantage of the vulnerability. Neither Synaptics nor HP has access to customer data as a result of this issue.”

Such a problem could still be easily exploitable by malware or a nefarious individual with local access to the HP machine. The fact that this news arises at a time when HP stands accused of installing spyware and tracking software on to customers’ machines (as per ZeroHedge), is hardly ideal. It’s not clear where the tracker came from — be it Windows Update or HP itself — but some users have complained of it having a negative effect on system performance as well.

Although incidents like this don’t engender much trust in a company, it is important that you acquire the patched driver either directly from HP’s website or through a Windows Update. Considering hundreds of different HP laptops are said to be affected by this bug, it’s all the more likely someone would try to exploit it, so update your system as soon as possible.

This isn’t the first time HP has had trouble with keyloggers on its platform, though the most recent one was auditory.

Jon Martindale
Jon Martindale covers how to guides, best-of lists, and explainers to help everyone understand the hottest new hardware and…
I’m not sold on Googlebook’s future, but it sure has two big wins I can’t ignore
Magic Pointer and native Android app could help Googlebook prove its future
Googlebook

Shortly after its announcement, the discourse surrounding Googlebook quickly took over forums, subreddits, X, and other social media platforms. Google just introduced a new category of laptops built around Gemini Intelligence, Android integration, ChromeOS, phone continuity, premium hardware, and OEM partners.

Yet, I am still not fully sold on the larger future Google is describing here. Google has been in laptops for more than 15 years through Chromebooks, and the company itself frames Googlebook as a move from an operating system to an “intelligence system.” This sounds like the "future" of laptops, but it also carries the Google problem, where it introduces an interesting idea before the ecosystem has proven itself.

Read more
Google will let some Chromebooks transition into a Googlebook experience soon
Google says some existing models will move into the Googlebook experience, while ChromeOS support continues for devices left behind
Clothing, Coat, Footwear

Googlebook is launching this year, but Google isn’t cutting every Chromebook loose.

In an interview with Chrome Unboxed, Google VP John Maletis said some Chromebooks will be able to move into Googlebook-style software through a firmware update. This means Googlebook shifts Google’s laptop plans toward an Android foundation, with Gemini built more deeply into the laptop experience and Android apps no longer sitting behind the same emulation layer.

Read more
Googlebook laptops will come in multiple chip options beyond just Intel, and that’s a relief
More chips, more choices. Google is giving Googlebook buyers real hardware flexibility from day one.
Googlebook

After Google's bombastic Android Show, where the company unveiled tons of new features, Google VP John Maletis sat down with Chrome Unboxed to talk Googlebook. The interview contains several nuggets of information, and one of the most reassuring confirmations we got was about the chips powering these new laptops. 

Maletis said that Google is working with Intel, Qualcomm, and MediaTek, meaning the platform won't live or die by a single silicon provider. For anyone who has followed the Chromebook space for a while, this is genuinely good news.

Read more