GEEKOM , a domestic mini PC manufacturer, has been found distributing infected driver downloads that contain a backdoor, as confirmed by both user reports and testing from VideoCardz. The malware has been active since December 2024, originating from a compromised legacy support page on GEEKOM's website. Affected models include A7, A8, AE7, AE8, AX7 Pro, and AX8 Pro. GEEKOM has advised users who manually downloaded drivers from Google to conduct a full system scan and consider a complete OS reinstall for safety.
The company has not clarified how the security breach occurred, and after the incident was reported, GEEKOM unsuccessfully requested VideoCardz to take down their accurate report. Drivers pre-installed from the factory remain unaffected.