Asus Confirms Security Breach Impacting Online Store Customer Data
Asus has notified customers of a security breach affecting its eShop platform, where unauthorized access exposed certain order-related information. In an email obtained by Kitguru, the company stated that contact details and order records may have been compromised, though no financial data such as credit card information was affected.
Asus detected the incident promptly and took containment measures, securing the affected systems while launching an ongoing investigation. The company reported no evidence of continued unauthorized access or misuse of the exposed data. However, it warned that compromised details could be exploited by threat actors to craft convincing phishing attempts, including fraudulent emails, texts, or calls impersonating Asus.
The breach appears unrelated to a separate 2023 incident involving a third-party supplier, which was linked to the Everest ransomware group. Asus has not disclosed the exact timeline of the eShop breach or the number of affected customers. Further details remain under investigation.
Source: https://www.cyberdaily.au/security/14224-pc-hardware-giant-asus-warns-customers-of-eshop-data-breach
ASUS cybersecurity rating report: https://www.rankiteo.com/company/asus
"id": "ASU1790216968",
"linkid": "asus",
"type": "Breach",
"date": "12/2025",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Technology/Electronics',
'name': 'Asus',
'type': 'Corporation'}],
'customer_advisories': 'Warning about potential phishing attempts',
'data_breach': {'personally_identifiable_information': 'Contact details',
'sensitivity_of_data': 'Low to moderate (no financial data)',
'type_of_data_compromised': 'Order-related information, '
'contact details'},
'description': 'Asus has notified customers of a security breach affecting '
'its eShop platform, where unauthorized access exposed certain '
'order-related information. Contact details and order records '
'may have been compromised, though no financial data such as '
'credit card information was affected. The breach could be '
'exploited for phishing attempts.',
'impact': {'brand_reputation_impact': 'Potential reputational damage due to '
'phishing risks',
'data_compromised': 'Contact details and order records',
'identity_theft_risk': 'Possible exploitation for phishing',
'payment_information_risk': 'None (credit card information not '
'affected)',
'systems_affected': 'Asus eShop platform'},
'investigation_status': 'Ongoing',
'references': [{'source': 'Kitguru'}],
'response': {'communication_strategy': 'Customer notification via email',
'containment_measures': 'Secured affected systems',
'incident_response_plan_activated': 'Yes'},
'title': 'Asus eShop Security Breach Impacting Customer Data',
'type': 'Data Breach'}