APT trends report Q1 2019

This is our latest summary of APT activity, based on our threat intelligence research and provide a representative snapshot of what we have published and discussed in greater detail in our private APT reports. It aims to highlight the significant events and findings that we feel people should be aware of. Continue reading APT trends report Q1 2019

Operation ShadowHammer: a high-profile supply chain attack

In late March 2019, we briefly highlighted our research on ShadowHammer attacks, a sophisticated supply chain attack involving ASUS Live Update Utility. Now it is time to share more details about the research with our readers. Continue reading Operation ShadowHammer: a high-profile supply chain attack

Your Supply Chain May Be a Trojan Horse

No organization exists in vacuum. There is no such thing as a completely self-sustaining company that does not in some way depend on suppliers, partners, and service providers. Businesses use products and services from other companies to manage and gro… Continue reading Your Supply Chain May Be a Trojan Horse

Popular Video Editing Software Website Hacked to Spread Banking Trojan

If you have downloaded the VSDC multimedia editing software between late February to late March this year, there are high chances that your computer has been infected with a banking trojan and an information stealer.

The official website of the VSDC s… Continue reading Popular Video Editing Software Website Hacked to Spread Banking Trojan

ASUS ShadowHammer Episode – A Custom Made Supply Chain Attack

This Hammer does not work on all nails – Read more on the targeted supply chain attack that evaded major corporations’ security “defenses”
The post ASUS ShadowHammer Episode – A Custom Made Supply Chain Attack appeared first on Security Boulevard.
Continue reading ASUS ShadowHammer Episode – A Custom Made Supply Chain Attack

Here’s the List of ~600 MAC Addresses Targeted in Recent ASUS Hack

EXCLUSIVE — While revealing details of a massive supply chain cyber attack against ASUS customers, Russian security firm Kaspersky last week didn’t release the full list all MAC addresses that hackers hardcoded into their malware to surgically target a… Continue reading Here’s the List of ~600 MAC Addresses Targeted in Recent ASUS Hack

Warning: ASUS Software Update Server Hacked to Distribute Malware

Remember the CCleaner hack?

CCleaner hack was one of the largest supply chain attacks that infected more than 2.3 million users with a backdoored version of the software in September 2017.

Security researchers today revealed another massive supply ch… Continue reading Warning: ASUS Software Update Server Hacked to Distribute Malware

Operation ShadowHammer

Operation ShadowHammer is a newly discovered supply chain attack that leveraged ASUS Live Update software. While the investigation is still in progress and full results and technical paper will be published during SAS 2019 conference in Singapore, we would like to share some important details about the attack. Continue reading Operation ShadowHammer