ASUS wasn't the only company affected by ShadowHammer

ASUS wasn't the only company affected by ShadowHammer

In the end, ASUS wasn't the only company targeted by supply chain attacks during the ShadowHammer hack operation uncovered by Kaspersky Lab and we now know that at least six other companies have been infiltrated by hackers. Taiwanese hardware manufacturer's supply chain According to expert estimates, ASUS was not the only company that infiltrated its IT infrastructure during the ShadowHammer operation during the ShadowHammer operation, because Kaspersky researchers could. The cybersecurity firm found that ASUS and newly discovered samples used very similar algorithms to calculate API hashes. Also, IPHLPAPI.dll has been used in all malware samples. ShadowHammer Victims In addition to ASUS, three Asian gaming companies (Electronics Extreme, Innovative Extremist, and Zepetto) were also victims of Operation ShadowHammer, and Kaspersky also discovered another gaming company, a parent company. Investigators did not name the three new victims as they are still alerting them to supply chain attacks they have been subjected to. Attackers who have targeted the three Asian gaming companies have been able to drop a malicious payload designed to collect system information and download additional payloads from their command and control (C&C) server. Once installed on a user's system, Trojan games first check to see if processor and traffic monitoring tools are running. if the system language is Simplified Chinese or Russian. If any of these checks are met again, the backdoor is programmed to automatically stop execution. Kaspersky provided further details on the nature of ShadowHammer's operation in a blog post: "We believe this is the result of a sophisticated supply chain attack, matching or even exceeding the ShadowPad and CCleaner incidents in terms of complexity and techniques.The reason it went undetected for a long time is due in part to the fact that the Trojan horse software was signed with legitimate certificates (for example, "ASUSTeK Computer Inc.") If you have a computer ASUS, it is highly recommended to download and update to the latest version of ASUS Live Update utility to prevent future attacks Via BleepingComputer Keep your systems protected from the latest cyber threats with the best antivirus