ASUS DriverHub One-Click RCE Vulnerability episode artwork

EPISODE · May 12, 2025 · 17 MIN

ASUS DriverHub One-Click RCE Vulnerability

from Ctrl✇Alt✇AnyKey · host 🅱🅴🅽🅹🅰🅼🅸🅽 🅰🅻🅻🅾🆄🅻 𝄟 🅽🅾🆃🅴🅱🅾🅾🅺🅻🅼

This document (source: https://mrbruh.com/asusdriverhub/) describes the discovery and reporting of two security vulnerabilities in ASUS's preinstalled DriverHub software. The author found that the software's local RPC service, which communicates with driverhub.asus.com, inadequately validated the origin of requests, allowing an attacker to potentially send commands from a malicious website with a crafted subdomain. Further investigation revealed a remote code execution (RCE) vulnerability within the software's update function, enabling the execution of arbitrary signed ASUS binaries with administrative privileges by manipulating how the software handled update URLs and silent install configurations. The RCE was achieved through a multi-step exploit chain involving downloading unsigned files and then a signed executable that would then run a downloaded configuration file, ultimately leading to execution of arbitrary code. The author reported the issues to ASUS, who patched the software, and the vulnerabilities were assigned CVEs.

Episode metadata supplied by the publisher feed · Published May 12, 2025

Embed this episode

NOW PLAYING

ASUS DriverHub One-Click RCE Vulnerability

0:00 17:05

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Ctrl✇Alt✇AnyKey?

This episode is 17 minutes long.

When was this Ctrl✇Alt✇AnyKey episode published?

This episode was published on May 12, 2025.

Can I download this Ctrl✇Alt✇AnyKey episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!