Supply Chain Digital Magazine April 2023 | Page 48

Common supply chain cybersecurity threats

Common supply chain cybersecurity threats

Supply chains can comprise thousands of vendors , many of which might be vulnerable . Hackers often target such vendors as a way to hack into larger companies – the so-called backdoor attack .
The consequences of such an attack can be severe , operationally , financially and reputationally .
Below are some of the top cybersecurity threats facing supply chain .
HUMAN ERROR This is something all hackers rely on , and for good reason : we ’ re all fallible . Accidental sharing includes personal or business data , via email , unsecured forms or via social media messaging . It is a particular threat to companies where large numbers of employees have access to primary databases .
POOR HOUSEKEEPING For all the sophistication of cybersecurity solutions , one of the biggest problems remains people ' s complacency and laziness around basic cybersecurity housekeeping . We all know someone who uses the same passwords for everything , or who doesn ' t bother changing default passwords from 0000 or 1111 to something secure .
PDFS Scammers know people are more likely to open a PDF than an email , especially if they think it is a bank statement . Security company Palo Alto Networks says last year there was a 1,160 % increase in malicious PDFs .
DATABASES Database security is a big security challenge for businesses . According to American IT provider , Straight Edge Technology , some hackers use social engineering attacks to steal login credentials , while others use malware to gain access .
SMS So-called ‘ smishing ’ sees the attacker send an SMS text message with a link that , once clicked , begins the attack . Cyber criminals are turning to such attacks because many email programmes – Google Mail and Microsoft Outlook for example – are smart enough to detect phishing emails .
IOT DEVICES IoT devices open up serious cybersecurity threats , especially in supply chain , where IoT tech is commonplace . According to Symantec , IoT devices experience an average 5,200 attacks a month , and with IoT tech expanding almost exponentially , the attack surface for cybercriminals to target is huge .
48 April 2023