Intel faces 32 lawsuits over the Meltdown and Spectre flaws
Filing suggests there'll be more to come, with customers angry over exploits and Krzanich's shares sale

Intel is facing at least 32 class action lawsuits over the Meltdown and Spectre chip flaws, which have quickly become two of the biggest security vulnerabilities ever uncovered.
The chipmaker revealed the number in a Securities and Exchange Commission filing it made last week. Thirty are customer class action suits from users that are "seeking monetary damages and equitable relief", while two concern securities, and "allege that Intel and certain officers violated securities laws by making statements about Intel's products and internal controls that were revealed to be false or misleading by the disclosure of the security vulnerabilities".
On top of these 32 lawsuits, there were a further three shareholder suits filed against Intel, claiming that the company's board and corporate officers committed "breach of duty" in connection to the disclosure of the security flaws and have failed "to take action in relation to alleged insider trading". That related to Intel CEO Brian Krzanich, who sold shares worth $39 million after researchers informed Intel of Meltdown and Spectre.
Worst still, the filing notes it's likely that further lawsuits around these issues will arise.
Intel isn't the only tech giant getting sued in relation to the vulnerability. Apple was also hit by a class action lawsuit over the debacle in January. The class action complaint was filed in a San Jose district court.
Chipmaker AMD has also being sued over claims that it artificially inflated its stock price by keeping quiet about how the Spectre flaws affected its chips.
Intel's first efforts to patch the vulnerability resulted in performance slowdowns and reboots for many laptops running its chips. It eventually recalled those and issued fresh patches, which it claims don't have those bugs, earlier this month.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Meltdown and Spectre affect Intel processors from the last 10 years, and other manufacturers' processors as well. They allow hackers to gain access to data stored on chips' memory that would normally be protected. But no data breaches have yet been reported.
08/01/2018: Intel is being taken to court over vulnerabilities in its processors, with plaintiffs in California, Oregon and Indiana all taking legal action against the company.
The Meltdown and Spectre flaws, which are present in the vast majority of modern processors, could allow hackers to break into the devices and steal sensitive data. However, no data breaches have been reported as yet, even though the vulnerabilities exist in the majority of processors dating from 1995. The flaw wasn't reported until June last year, despite Intel knowing about it since before then.
The lawyers representing the Californian claimants think there will be more cases coming to light in the coming months, describing it as "one of the largest security flaws ever facing the American public". They are urging Intel to fix the problem and to offer those affected compensation for any losses that have occurred.
However, for this to happen, businesses and individuals would have to provide solid evidence that they have been adversely affected by the flaws.
It may be easier for some of the big businesses affected by the vulnerabilities to take action. Legal experts expect cloud service providers to be the leaders in this, with Amazon, Microsoft and Google all having solid reasons to hold Intel to account if it slows their computational capacity.
An alternative to legal action may be for the cloud providers to demand lower prices on future chips. Kim Forrest, senior equity research analyst at Fort Pitt Capital Group told The Guardian.
Intel explained it was unable to give any information about the cases. "[Intel] can confirm it is aware of the class actions but as these proceedings are ongoing, it would be inappropriate to comment," the company said in a statement.
"Contrary to some reports, any performance impacts are workload-dependent, and, for the average computer user, should not be significant and will be mitigated over time," the company previously said.
Image: Shutterstock
-
Customizing for Every Customer
Personalise customer experiences at scale with CRM+AI+Data+Trust. True 1-to-1 personalisation is finally possible.
-
The Data Foundation for the Age of AI
See how you can build a data strategy for the age of AI. How Data Cloud unifies data for use in personalisation and grounded AI.
-
Millions of Dell laptops are are at risk thanks to a Broadcom chip vulnerability – and more than 100 device models are impacted
News Widely used in high-security environments, the PCs are vulnerable to attacks allowing the theft of sensitive data
-
Industry welcomes the NCSC’s new Vulnerability Research Initiative – but does it go far enough?
News The cybersecurity agency will work with external researchers to uncover potential security holes in hardware and software
-
‘The worst thing an employee could do’: Workers are covering up cyber attacks for fear of reprisal – here’s why that’s a huge problem
News More than one-third of office workers say they wouldn’t tell their cybersecurity team if they thought they had been the victim of a cyber attack.
-
‘A huge national security risk’: Thousands of government laptops, tablets, and phones are missing and nowhere to be found
News A freedom of information disclosure shows more than 2,000 government-issued phones, tablets, and laptops have been lost or stolen, prompting huge cybersecurity concerns.
-
Hackers are targeting Ivanti VPN users again – here’s what you need to know
News Ivanti has re-patched a security flaw in its Connect Secure VPN appliances that's been exploited by a China-linked espionage group since at least the middle of March.
-
Broadcom issues urgent alert over three VMware zero-days
News The firm says it has information to suggest all three are being exploited in the wild
-
Nakivo backup flaw still present on some systems months after firms’ ‘silent patch’, researchers claim
News Over 200 vulnerable Nakivo backup instances have been identified months after the firm silently patched a security flaw.
-
Everything you need to know about the Microsoft Power Pages vulnerability
News A severe Microsoft Power Pages vulnerability has been fixed after cyber criminals were found to have been exploiting unpatched systems in the wild.