Hackers Hijacked ASUS Software Updates and Installed Backdoors on Many PC's and Laptops
Click here to post a comment for Hackers Hijacked ASUS Software Updates and Installed Backdoors on Many PC's and Laptops on our message forum
GREGIX
Nice....never trusted their software anyway, always something was wrong with installer on my z97
fantaskarsef
Never use such a software by principle myself, but I'm fairly sure there's a lot of people doing it. Also, from the linked article:
fantaskarsef
schmidtbag
Stuff like this is why I always prefer to do a complete fresh OS install whenever I get a new PC. Pre-built PCs come with so much useless, bloated, and insecure crap that nobody asked for.
tsunami231
schmidtbag
ruthan
It is not good for Antivirus companies neither, 5 months without detection..
BetA
UPDATE::
https://www.asus.com/News/hqfgVUyZ6uyAyJe1
heres the DIAGNOSIS TOOL from asus:
https://dlcdnets.asus.com/pub/ASUS/nb/Apps_for_Win10/ASUSDiagnosticTool/ASDT_v1.0.1.0.zip
cheers
INSTG8R
alanm
“Supply chain attacks are in the ‘big deal’ category and are a sign of someone who is careful about this and has done some planning,”..... “They wanted to get into very specific targets and they already knew in advance their network card MAC address, which is quite interesting.” .... as well as using digital certificates.
I'll bet some spy agency, CIA, Mossad, Russian intel, etc, are involved. The capabilities and resources needed to pull this sort of thing off are just not what you would see from your regular run of the mill hackers
BetA
updated Pics in first post...
[spoiler]
https://i.imgur.com/EnVtF0f.jpg
https://i.imgur.com/L7rflUR.jpg
[/spoiler]
pimpineasy
where the new chips & sales? this gigabyte mobo suite is trash tier p2w bios with EOL adware too. who is making decision at these companies.. last install of windows 10 was messed up. lmao ez crash tune & rgb using 20% cpu and cycling memory.
BetA
UPDATE2:
https://techcrunch.com/2019/03/27/asus-hacking-risk/
BetA
Aaand another Update on this matter...
"Check if your device has been targeted by the ShadowHammer cyberattack
Kaspersky Lab has uncovered a new advanced persistent threat (APT) campaign affecting more than a million computer users worldwide. Between at least June and November 2018, Operation ShadowHammer targeted users of the ASUS Live Update Utility, injecting a backdoor.
Each backdoor code contained a table of hardcoded MAC addresses – the unique identifier of network adapters used to connect a computer to a network. Once running on a victim’s device, the backdoor verified its MAC address against this table.
If the MAC address matched one of the entries, the malware downloaded the next stage of malicious code. Otherwise, the infiltrated updater did not show any network activity. In total, security experts were able to identify more than 600 MAC addresses hard coded into the malware.
A blog summarizing the attack can be found on Securelist"
You can check on the site:
https://shadowhammer.kaspersky.com/
Alessio1989
.. and this is why dear sysadmins you should not use chmod 777 on company main server.
Astyanax
Asus is going to be sued, negligence and maladministration on their part have compromised systems and the actions or lack there of by Asus's Security Validation team could see them taken to a federal court.