Close Menu
Technotification
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram
    Technotification
    • Home
    • News
    • How To
    • Explained
    • Facts
    • Lists
    • Programming
    • Security
    • Gaming
    Technotification
    Home › News › Asus Update Servers Hijacked To Inject Malware in Users Computers

    Asus Update Servers Hijacked To Inject Malware in Users Computers

    By Subham KapisweDecember 3, 2022
    Facebook Twitter Reddit LinkedIn
    asus server hacked

    With the penetration of Internet to each corner of the World, it has become easy to target millions of computers at once. A lot of manufacturers releases software updates and security patches to millions of computers simultaneously, but what if this process turned against them?

    According to a recent update by Motherboard, Cyber criminals hijacked one of the largest computer manufacturing company – ASUS servers to inject malware in millions of users’ computers via automatic software updates.

    Read: Cyber Security Tips to Ensure Your Business is Safe

    Millions of Asus Users Infected by the Malware

    asus servers hijacked

    The Asus software update utility tool comes pre-installed with every Asus computers. It contacts Asus servers periodically to check if any firmware, BIOS, UEFI, drivers, applications or other update is available for the device. The attackers performed a supply chain attack on the company’s server until it got compromised. Then, they used the server to directly infect the users’ computer with malware through automatic software update utility.

    The supply chain attack was initially discovered in January 2019. However, the attack appears to be active from June to November 2018. As per the Kaspersky lab analysis, more than one million Asus users in the world are affected by the malware via the software updates. The malware is found to be targetting random pool of systems by searching their MAC address using trojanized samples containing hardcoded MAC address to identify the specific targets.

    “The reason that it stayed undetected for so long is partly due to the fact that the trojanized updaters were signed with legitimate certificates (eg: “ASUSTeK Computer Inc.”). The malicious updaters were hosted on the official liveupdate01s.asus[.]com and liveupdate01.asus[.]com ASUS update servers” as described by the researchers of Kaspersky.

    cyber attack

    The researchers at Kaspersky labs extracted more than 600 unique MAC addresses from 200+ samples. When it comes to complexity and techniques, they believe that the attack is even serious than CCleaner supply chain attack and Shadowpad Attack.

    The attack mostly affected the Asus users who belong to Russia, Japan, Italy, United States, Spain, Poland, U.K, Canada, Germany, etc. In order to help the customers, Kaspersky created a site where any Asus user can visit and check if your device has been targeted by the cyber attack just by comparing the Mac Addresses of your adapters with the hardcoded ones.

    Also Read: Jackson County Computers Paid $400,000 For Massive Ransomware Attack

    Though there isn’t any official update from Asus, Motherboard also reported that the malicious updates are coming from ASUS live server update and were signed by Asus. The Kaspersky will publish the complete details and technical paper on this serious supply chain attack during SAS 2019 conference in Singapore.

    Share. Facebook Twitter LinkedIn Tumblr Reddit Telegram WhatsApp
    Subham Kapiswe
    • LinkedIn

    A computer science engineer by education and blogger by profession who loves to write about Programming, Cybersecurity, Blockchain, Artificial Intelligence, Open Source and other latest technologies.

    Related Posts

    NVIDIA GeForce NOW is Finally Coming to India

    January 8, 2025

    India’s JioGamesCloud Added 100+ New Games

    October 15, 2023

    Apple’s latest iOS 16.6 Patch Boosts iPhone Privacy & Security

    July 31, 2023

    Multiview Feature Now Available on YouTube Tv

    July 31, 2023

    Threads’ to Recieve DM Support Soon, Confirms Meta Spokesperson

    July 30, 2023

    Capgemini to Sink 2 billion Euros in AI Following Half-Year Sales

    July 29, 2023
    Lists You May Like

    5 Best Torrent Sites for Software in 2025

    January 2, 2025

    10 Best Torrent Search Engine Sites (2025 Edition)

    February 12, 2025

    10 Best RARBG Alternative Sites in April 2025 [Working Links]

    April 1, 2025

    The Pirate Bay Proxy List in 2025 [Updated List]

    January 2, 2025

    10 Sites to Watch Free Korean Drama [2025 Edition]

    January 2, 2025

    10 Best Torrent Sites for eBooks in 2025 [Working]

    January 2, 2025

    10 Best GTA V Roleplay Servers in 2025 (Updated List)

    January 6, 2025

    1337x Alternatives, Proxies, and Mirror Sites in 2025

    January 2, 2025

    10 Best Anime Torrent Sites in 2025 [Working Sites]

    January 6, 2025

    15 Best Wallpaper Engine Wallpapers in 2025

    January 6, 2025
    Pages
    • About
    • Contact
    • Privacy
    • Careers
    Privacy

    Information such as the type of browser being used, its operating system, and your IP address is gathered in order to enhance your online experience.

    © 2013 - 2025 Technotification | All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.