nerdexam
Palo_Alto_Networks

PCDRA · Question #86

What is the purpose of targeting software vendors in a supply-chain attack?

The correct answer is B. to steal users' login credentials.. A supply chain attack is a type of cyberattack that targets a trusted third-party vendor who offers services or software vital to the supply chain. Software supply chain attacks inject malicious code into an application in order to infect all users of an app. The purpose of targe

Submitted by brentm· Apr 18, 2026Threat Hunting

Question

What is the purpose of targeting software vendors in a supply-chain attack?

Options

  • Ato take advantage of a trusted software delivery method.
  • Bto steal users' login credentials.
  • Cto access source code.
  • Dto report Zero-day vulnerabilities.

How the community answered

(45 responses)
  • B
    93% (42)
  • C
    4% (2)
  • D
    2% (1)

Explanation

A supply chain attack is a type of cyberattack that targets a trusted third-party vendor who offers services or software vital to the supply chain. Software supply chain attacks inject malicious code into an application in order to infect all users of an app. The purpose of targeting software vendors in a supply-chain attack is to take advantage of a trusted software delivery method, such as an update or a download, that can reach a large number of potential victims. By compromising a software vendor, an attacker can bypass the security measures of the downstream organizations and gain access to their systems, data, or networks.

Topics

#Supply Chain Attack#Threat Actor Motivations#Credential Theft#Cyberattack Objectives

Community Discussion

No community discussion yet for this question.

Full PCDRA Practice