ADVERTISEMENT

Some Logitech wireless mice and keyboards are vulnerable to a significant security flaw that the company first fixed three years ago

An old security flaw in Logitech's wireless mice and keyboards that was patched three years ago is still lingering in Logitech accessories that were made before the flaw was discovered, but haven't been sold yet.

logitech usb dongle unifying receiver
ADVERTISEMENT

An old flaw in Logitech's wireless mouse and keyboard USB Unifying Receiver dongles can allow hackers to take control of those mice and keyboards and thus, ultimately, a computer.

The flaw was discovered in 2016 and dubbed "MouseJack." It can allow a hacker to intercept the wireless signal between a Logitech mouse or keyboard and the USB Unifying Receiver dongle it connects to from up to 100 meters away, said Bastille , a wireless security consultancy. The flaw doesn't affect accessories connected via Bluetooth.

ADVERTISEMENT

In 2016, Sean Hollister of CNET (now at The Verge) recounted how the MouseJack flaw enabled security researchers to break into his laptop during a demonstration. "They broke in like it was nothing. They could have wiped my hard drive, stolen my files, or practically anything nefarious you can do with a computer," Hollister said.

Logitech rolled out a patch back in 2016 when the flaw was discovered. Crucially, however, the patch hasn't and couldn't make it to Logitech accessories that are still sitting in their packaging on store shelves. After all, they hadn't yet been connected to the internet,

Speaking to Hollister at The Verge , a Bastille security researcher said he recently purchased a Logitech M510 mouse that was released in 2010 and came with an unpatched dongle.

Logitech confirmed to The Verge that the company hadn't recalled products that were in transit, on store shelves, or otherwise in the world at the time, and that it had rolled out the patch for customers to install themselves. This means that anybody buying a Logitech device that was made before Bastille's initial report might find it to be vulnerable.

However, the company also told the Verge that products manufactured after the flaw was discovered had the necessary changes implemented.

ADVERTISEMENT

Thankfully, the fix is simple. Logitech has a support page where a user can download and install the patch for Windows and macOS devices. So if you own a wireless Logitech mouse or keyboard maybe make sure you're up to date.

We've reached out to Logitech for additional comment and will update if we hear back.

See Also:

ADVERTISEMENT

SEE ALSO: This odd-looking vertical mouse from Logitech should be the last computer mouse you ever buy

FOLLOW BUSINESS INSIDER AFRICA

Unblock notifications in browser settings.
ADVERTISEMENT

Recommended articles

3 African countries could play host to Russian diplomatic missions

3 African countries could play host to Russian diplomatic missions

Trends in online casino gaming in New Zealand

Trends in online casino gaming in New Zealand

10 African countries with the highest number of migrants

10 African countries with the highest number of migrants

PHOTOS: Inside the hostel in Rwanda set to house migrants from the UK in July

PHOTOS: Inside the hostel in Rwanda set to house migrants from the UK in July

10 African countries with the weakest governments

10 African countries with the weakest governments

Zap unveils Africa's first non-custodial exchange

Zap unveils Africa's first non-custodial exchange

The future of healthcare on display: Day 1 of Medlab West Africa wraps up

The future of healthcare on display: Day 1 of Medlab West Africa wraps up

Nigeria suspends a Chinese business over discrimination charges

Nigeria suspends a Chinese business over discrimination charges

10 African countries with the greatest soft power influence over the world in 2024

10 African countries with the greatest soft power influence over the world in 2024

ADVERTISEMENT