PCDRA · Question #86
What is the purpose of targeting software vendors in a supply-chain attack?
The correct answer is B. to steal users' login credentials.. A supply chain attack is a type of cyberattack that targets a trusted third-party vendor who offers services or software vital to the supply chain. Software supply chain attacks inject malicious code into an application in order to infect all users of an app. The purpose of targe
Question
What is the purpose of targeting software vendors in a supply-chain attack?
Options
- Ato take advantage of a trusted software delivery method.
- Bto steal users' login credentials.
- Cto access source code.
- Dto report Zero-day vulnerabilities.
How the community answered
(45 responses)- B93% (42)
- C4% (2)
- D2% (1)
Explanation
A supply chain attack is a type of cyberattack that targets a trusted third-party vendor who offers services or software vital to the supply chain. Software supply chain attacks inject malicious code into an application in order to infect all users of an app. The purpose of targeting software vendors in a supply-chain attack is to take advantage of a trusted software delivery method, such as an update or a download, that can reach a large number of potential victims. By compromising a software vendor, an attacker can bypass the security measures of the downstream organizations and gain access to their systems, data, or networks.
Topics
Community Discussion
No community discussion yet for this question.