ExamGecko
Question list
Search
Search

Question 49 - PCDRA discussion

Report
Export

What is the purpose of targeting software vendors in a supply-chain attack?

A.
to take advantage of a trusted software delivery method.
Answers
A.
to take advantage of a trusted software delivery method.
B.
to steal users' login credentials.
Answers
B.
to steal users' login credentials.
C.
to access source code.
Answers
C.
to access source code.
D.
to report Zero-day vulnerabilities.
Answers
D.
to report Zero-day vulnerabilities.
Suggested answer: A

Explanation:

A supply chain attack is a type of cyberattack that targets a trusted third-party vendor who offers services or software vital to the supply chain. Software supply chain attacks inject malicious code into an application in order to infect all users of an app. The purpose of targeting software vendors in a supply-chain attack is to take advantage of a trusted software delivery method, such as an update or a download, that can reach a large number of potential victims. By compromising a software vendor, an attacker can bypass the security measures of the downstream organizations and gain access to their systems, data, or networks.Reference:

What Is a Supply Chain Attack? - Definition, Examples & More | Proofpoint US

What Is a Supply Chain Attack? - CrowdStrike

What Is a Supply Chain Attack? | Zscaler

What Is a Supply Chain Attack? Definition, Examples & Prevention

asked 23/09/2024
Mehr Khan
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first