Asia & Pacific
Asus
Asus, the global computer and electronics manufacturer, confirmed a third-party data breach linked to one of its suppliers.
On December 3, the company announced that a cybersecurity incident at one of its suppliers had impacted some of its data. The update came just one day after the Everest ransomware group listed Asus on its Tor leak site and claimed to have stolen more than 1 TB of the company's files. Asus said the incident did not impact its products, internal systems or user privacy. However, some camera source code used in Asus phones was exposed.
The same ransomware group also claims to have leaked data from other major software vendors, including ArcSoft.
How it could affect your business
This incident shows how ransomware groups are increasingly targeting manufacturers through supply chain attacks. When a third-party supplier is compromised, your own data can be exposed even if your internal systems are secure. To ease this risk, businesses should thoroughly vet their vendors' security, limit the data they share and continuously monitor supplier access.
