Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Security Bug

Asus.com Compromised With Exploit Code 117

Juha-Matti Laurio writes in with news that the Web site of ASUSTeK Computer (asus.com) has been compromised to spread exploit code. The original report from Kaspersky Lab claimed that the compromise lead to code exploiting the recently patched Microsoft Windows Animated Cursor (.ANI) 0-day vulnerability, but sans.org found no evidence of this. Apparently a malicious iframe was added to one of the machines in asus.com's DNS round-robin.
This discussion has been archived. No new comments can be posted.

Asus.com Compromised With Exploit Code

Comments Filter:
  • Re:Ouch (Score:-1, Funny)

    by zmilo ( 815667 ) on Saturday April 07, 2007 @07:51PM (#18651181)
    Clearly you haven't played "Sonic Volleyball," sir.
  • by Anonymous Coward on Saturday April 07, 2007 @08:31PM (#18651421)
    Yes, the admins are to blame. Even as Windows administrators, they should be advocating the use of Solaris, Linux, AiX, HP-UX, FreeBSD, Mac OS X, or some other non-Windows system. Why is that? Because those are secure, reliable, efficient, high-quality operating systems. If the admins don't advocate the use of such systems, and instead suggest Windows, then they are not performing their job correctly. They should be relieved of their duties.

    But we can't blame just the admins. We also have to blame the network designers and integrators who actually put such systems into place. Again, if any of them recommends the use of Windows, then they are not performing their job correctly. They should be relieved of their duties.

    Furthermore, we also have to blame the management that allows for the purchase and installation of those Windows systems. They should know by now that Windows is not the sort of system that should be used for any purpose whatsover. Again, any manager who in any way authorizes the use of Windows is not performing his or her job correctly. He or she should be relieved of his or her duties.

  • Re:Advice (Score:2, Funny)

    by lavid ( 1020121 ) on Saturday April 07, 2007 @08:53PM (#18651493) Homepage
    Isn't "installing a laptop" just plugging in the power supply / battery?
  • by plague*star ( 731804 ) on Saturday April 07, 2007 @09:29PM (#18651689)
    ... you don't have to visit porn, warez or shady sites to get your computer infected with all sorts of nastiness; "trusted" sites will just do.

    I suspect the actual plan was to infect all the people mis-typing "anus.com"

    P*S

  • by ez76 ( 322080 ) <slashdot@@@e76...us> on Saturday April 07, 2007 @09:52PM (#18651879) Homepage
    This is intentional and symbolizes the company's value proposition, the Empty Promise (TM).
  • Re:Advice (Score:1, Funny)

    by Anonymous Coward on Sunday April 08, 2007 @06:53AM (#18654239)
    Did you check the digital signatures of the drivers that you downloaded?

Lots of folks confuse bad management with destiny. -- Frank Hubbard

Working...