I-ASUS iqinisekise ukuba khona kwe-backdoor kusisetshenziswa Sokuvuselela Okubukhoma

Muva nje, i-Kaspersky Lab ithole ukuhlasela kwe-cyber okungajwayelekile okungenzeka kuthinte cishe abasebenzisi abayisigidi bekhompuyutha ephathekayo ye-ASUS nedeskithophu. Uphenyo lubonise ukuthi izigebengu ze-inthanethi zengeze umnyango ongemuva kunsiza ye-ASUS Live Update, esetshenziselwa ukubuyekeza i-BIOS, i-UEFI nesofthiwe yamabhodi omama wenkampani yaseTaiwan namalaptop. Ngemva kwalokhu, abahlaseli bahlele ukusatshalaliswa kwensiza eguquliwe ngeziteshi ezisemthethweni.

I-ASUS iqinisekise ukuba khona kwe-backdoor kusisetshenziswa Sokuvuselela Okubukhoma

I-ASUS iqinisekise leli qiniso ngokushicilela umbiko okhethekile kwabezindaba mayelana nokuhlasela. Ngokwesitatimende esisemthethweni somkhiqizi, i-Live Update, ithuluzi lokuvuselela isofthiwe yemishini yenkampani, yayingaphansi kokuhlaselwa kwe-APT (Advanced Persistent Threat). Igama elithi APT lisetshenziswa embonini ukuchaza izigebengu zikahulumeni noma, okungajwayelekile, amaqembu obugebengu ahlelwe kakhulu.

"Inombolo encane yamadivayisi ijovwe ngekhodi enonya ngokuhlaselwa okuyinkimbinkimbi kumaseva ethu e-Live Update emzamweni wokukhomba iqembu elincane kakhulu futhi elithile labasebenzisi," kusho u-ASUS esitatimendeni sabezindaba. "I-ASUS Support isebenza nabasebenzisi abathintekile futhi ihlinzeka ngosizo lokuxazulula izinsongo zokuphepha."

I-ASUS iqinisekise ukuba khona kwe-backdoor kusisetshenziswa Sokuvuselela Okubukhoma

β€œInombolo encane” ngandlela-thile iphikisana nolwazi oluvela kuKaspersky Lab, ethi ithole uhlelo olungayilungele ikhompuyutha (olubizwa ngokuthi i-ShadowHammer) kumakhompyutha angu-57. Ngesikhathi esifanayo, ngokusho kochwepheshe bezokuphepha, amanye amadivaysi amaningi angase agqekezwe.

U-ASUS uthe esitatimendeni sabezindaba ukuthi i-backdoor isusiwe enguqulweni yakamuva ye-Live Update utility. I-ASUS iphinde yathi inikeze ukubethela okuphelele kanye namathuluzi engeziwe okuqinisekisa ukuphepha ukuze kuvikelwe amakhasimende. Ngaphezu kwalokho, i-ASUS idale ithuluzi ethi izonquma ukuthi isistimu ethile ihlaselwe yini, futhi iphinde yakhuthaza abasebenzisi abathintekayo ukuthi baxhumane nethimba layo losekelo.

Lokhu kuhlasela kubikwa ukuthi kwenzeka ngo-2018 esikhathini esingangezinyanga ezinhlanu, kanti iKaspersky Lab yathola indawo engemuva ngoJanuwari 2019.

I-ASUS iqinisekise ukuba khona kwe-backdoor kusisetshenziswa Sokuvuselela Okubukhoma




Source: 3dnews.ru

Engeza amazwana