Asus PCs Hit by Malware Delivered by Hackers Through Automatic Update Service: Report

Advertisement
By Associated Press | Updated: 26 March 2019 10:16 IST
Highlights
  • Hackers infected thousands of computers from ASUS with malicious software
  • They used company's online automatic update service
  • Kaspersky said it detected 57,000 infections among its customers

 In a sophisticated targeted espionage operation, hackers infected tens of thousands of computers from the Taiwanese vendor Asus with malicious software using the company's online automatic update service, security researchers reported Monday.

Kaspersky Lab said it detected 57,000 infections among customers of its antivirus software. It estimates that the exploit likely affected more than 1 million computers from the world's No. 5 computer company .

The malware was designed to open a "backdoor" for intruders in the infected machines, researchers said.

About 50 percent of the affected Kaspersky anti-virus software customers were in Russia, Germany and France, the company said . The US accounted for less than 5 percent.

A Symantec spokeswoman said about 13,000 of its antivirus customers received the malicious updates.

The so-called supply-chain attack was first reported by the online news site Motherboard.

Kaspersky said the infected software was on Asus's Live Update servers from June to November and was signed with legitimate certificates. It did not detect the malware until January, when new capabilities were added to its anti-virus software, the company said.

Kaspersky said its researchers determined that the malware was programmed for surgical espionage when they saw that it was designed to accept a second malware payload for specific computers based on unique identifiers of their network connections. It identified more than 600 computers programmed to receive the payload.

In a blog post and answers to emailed questions, the company said the nature of the second malware payload was unknown because the server that delivered it was no longer active.

Kaspersky said that while is too early to know who was behind the operation, it is consistent with a 2017 incident blamed by Microsoft on a Chinese state-backed group the company calls BARIUM.

Asus did not immediately respond to two emailed requests seeking comment.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Kaspersky, Asus
Advertisement

Related Stories

Popular Mobile Brands
  1. Infinix Hot 70 Pro India Launch Timeline Announced; Colourways Teased
  2. Asus VM240 AiO All-in-One Desktop PC Debuts Alongside New Gaming Accessories 
  3. Qualcomm Teases Arrival of Two New Snapdragon 8 Elite Chips
  4. Moto G Max Goes on Sale in India: Check Price, Offers
  1. Vivo V2607 Geekbench Listing Reveals Key Details: What You Need to Know
  2. Elon Musk’s X Considers Stablecoin-Based Payments for Influencers and Content Providers
  3. Sony's Live Service Co-Op Game Horizon Hunters Gathering Reportedly Being Rebooted After Poor Player Feedback
  4. BitGo Becomes First Global Crypto Firm to Secure South Korea VASP Licence
  5. Huawei Pura X View Pre-Orders Begin; Confirmed to Feature Wide-Screen 16:9.5 Display, 7,000mAh Battery
  6. iQOO Gaming Tablet Tipped to Get Active Cooling, Snapdragon 8 Elite Gen 6 Pro SoC
  7. OnePlus Tipped to Launch a New 4G Phone Exclusively in India Next Month
  8. Qualcomm Teases Two New Snapdragon 8 Elite Chips Ahead of Snapdragon Summit
  9. Lava Bold N4 Lite India Launch Date Announced; Design and Durability Details Teased
  10. Coinbase Expands Tokenisation Push With Abu Dhabi Regulatory Approval
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.