Supply Chain Incident
ASUS Live Update Operation ShadowHammer
Attackers compromised the ASUS Live Update utility and distributed signed malicious updates to selected downstream systems.
ConfidenceHigh
Evidence LevelResearcher
Attack StageDistribution Compromise
Source Artifact DivergenceUnknown
Affected Packages
No structured records.
Affected Releases
No structured records.
Repositories
No structured records.
Organizations
Maintainers
No structured records.
Threat Actors
No structured records.
Campaigns
No structured records.
Build Systems
No structured records.
Distribution Channels
- Signed software installer/update channel
Compromised Accounts
No structured records.
Connected Entities
- ASUS Organization
- Signed software installer/update channel Distribution Channel
References
- Operation ShadowHammer Kaspersky Securelist · 2019-03-25