{"id":2112,"date":"2021-03-02T20:11:01","date_gmt":"2021-03-03T01:11:01","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=2112"},"modified":"2021-03-02T20:11:02","modified_gmt":"2021-03-03T01:11:02","slug":"supply-chain-attack-a-risk-for-the-companies","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/","title":{"rendered":"Supply Chain Attack &#8211; A risk for the companies"},"content":{"rendered":"\n<p>An attack on the supply chain consists of compromising digital providers of external services such as: Internet service providers, Telecommunications providers, Software providers, External service providers, Hardware providers, etc. With the aim of infiltrating a target organization from there.<\/p>\n\n\n\n<p>Attackers look for insecure network protocols, unprotected server infrastructures, and insecure encryption practices. They go in, change the source codes, and hide the malware in the build and update processes. Because the software is created and released by trusted vendors, these applications and updates are signed and certified. In attacks on the software supply chain, vendors may not be aware that their applications or updates are infected with malicious code when they are released to the public. The malicious code is then executed with the same trust and the same permissions as the application.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Example of supply chain attack<\/h2>\n\n\n\n<p>A clear example of this type of attack is the one suffered by SolarWinds, since a group of hackers compromised the software provider SolarWinds, managing to implement an update with Sunburst malware for its well-known network monitoring application Orion. In this way, they could infect the networks of the companies or institutions where it is deployed.<\/p>\n\n\n\n<p>This type of attack has several ways of attacking each one in a different way, such as:<\/p>\n\n\n\n<p><strong><em>\u25b8Compromised specialized code sent to hardware or firmware components<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Compromised software creation tools or up-to-date infrastructure<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Malware pre-installed on devices like: USB, phones, printers, etc.<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Stolen code signing certificates or malicious applications signed using the identity of the development company<\/em><\/strong><\/p>\n\n\n\n<p>Other reads:<br><a href=\"https:\/\/truxgoservers.com\/blog\/the-steps-of-the-cyber-kill-chain-and-what-is-it\/\">The steps of the Cyber Kill Chain and what is it?<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/phobos-a-serious-threat-for-working-enterprises\/\">Phobos \u2013 A serious threat for working enterprises<\/a><br><\/p>\n","protected":false},"excerpt":{"rendered":"<p>An attack on the supply chain consists of compromising digital providers of external services such as: Internet service providers, Telecommunications providers, Software providers, External service providers, Hardware providers, etc. With the aim of infiltrating a target organization from there. Attackers look for insecure network protocols, unprotected server infrastructures, and insecure encryption practices. They go in, [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2113,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-2112","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Supply Chain Attack - A risk for the companies - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Cyber \u200b\u200battacks can be a risk for everyone, but this attack known as Supply Chain Attack is focused on attacking companies and we will see how\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Supply Chain Attack - A risk for the companies - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Cyber \u200b\u200battacks can be a risk for everyone, but this attack known as Supply Chain Attack is focused on attacking companies and we will see how\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-03-03T01:11:01+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-03-03T01:11:02+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/03\/chain-attk.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"628\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minuto\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"Supply Chain Attack &#8211; A risk for the companies\",\"datePublished\":\"2021-03-03T01:11:01+00:00\",\"dateModified\":\"2021-03-03T01:11:02+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/\"},\"wordCount\":280,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/chain-attk.png\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/\",\"name\":\"Supply Chain Attack - A risk for the companies - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/chain-attk.png\",\"datePublished\":\"2021-03-03T01:11:01+00:00\",\"dateModified\":\"2021-03-03T01:11:02+00:00\",\"description\":\"Cyber \u200b\u200battacks can be a risk for everyone, but this attack known as Supply Chain Attack is focused on attacking companies and we will see how\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/chain-attk.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/chain-attk.png\",\"width\":1200,\"height\":628},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/supply-chain-attack-a-risk-for-the-companies\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Supply Chain Attack &#8211; A risk for the companies\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Supply Chain Attack - A risk for the companies - Truxgo Server Blog","description":"Cyber \u200b\u200battacks can be a risk for everyone, but this attack known as Supply Chain Attack is focused on attacking companies and we will see how","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/","og_locale":"es_MX","og_type":"article","og_title":"Supply Chain Attack - A risk for the companies - Truxgo Server Blog","og_description":"Cyber \u200b\u200battacks can be a risk for everyone, but this attack known as Supply Chain Attack is focused on attacking companies and we will see how","og_url":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/","og_site_name":"Truxgo Server Blog","article_published_time":"2021-03-03T01:11:01+00:00","article_modified_time":"2021-03-03T01:11:02+00:00","og_image":[{"width":1200,"height":628,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/03\/chain-attk.png","type":"image\/png"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"1 minuto"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"Supply Chain Attack &#8211; A risk for the companies","datePublished":"2021-03-03T01:11:01+00:00","dateModified":"2021-03-03T01:11:02+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/"},"wordCount":280,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/03\/chain-attk.png","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/","url":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/","name":"Supply Chain Attack - A risk for the companies - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/03\/chain-attk.png","datePublished":"2021-03-03T01:11:01+00:00","dateModified":"2021-03-03T01:11:02+00:00","description":"Cyber \u200b\u200battacks can be a risk for everyone, but this attack known as Supply Chain Attack is focused on attacking companies and we will see how","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/03\/chain-attk.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/03\/chain-attk.png","width":1200,"height":628},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/supply-chain-attack-a-risk-for-the-companies\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Supply Chain Attack &#8211; A risk for the companies"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2112","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=2112"}],"version-history":[{"count":3,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2112\/revisions"}],"predecessor-version":[{"id":2118,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2112\/revisions\/2118"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/2113"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=2112"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=2112"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=2112"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}