{"id":41864,"date":"2021-07-20T20:32:15","date_gmt":"2021-07-20T20:32:15","guid":{"rendered":"http:\/\/e6d9bcdd-c971-442d-943d-b95938e904a0"},"modified":"2021-07-20T20:32:15","modified_gmt":"2021-07-20T20:32:15","slug":"adversaries-continue-to-abuse-trust-in-the-supply-chain","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/","title":{"rendered":"Adversaries continue to abuse trust in the supply chain"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/www.zdnet.com\/a\/hub\/i\/r\/2021\/07\/20\/c83eff73-ab3f-44f2-8b9c-960dd8494b3c\/thumbnail\/770x578\/e25947fd8bac6b842abd66ce2552ce93\/shutterstock-1838345821.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>We trust so much in our organizations \u2014 systems, partners, and vendors \u2014 for deploying software, monitoring&nbsp;<a href=\"https:\/\/www.npr.org\/2021\/04\/16\/985439655\/a-worst-nightmare-cyberattack-the-untold-story-of-the-solarwinds-hack\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">network performance<\/a>,&nbsp;<a href=\"https:\/\/www.wsj.com\/articles\/one-year-after-notpetya-companies-still-wrestle-with-financial-impacts-1530095906\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">patching<\/a>&nbsp;(both systems and software), procuring software\/hardware, and performing so many other tasks. A recent ransomware attack used one such system to successfully target thousands of victim companies. &nbsp;<\/p>\n<p>In this most recent example, attackers targeted Kaseya VSA IT Management Software, which was designed to allow IT admins to monitor systems, automate mundane tasks, deploy software, and patch systems. Attackers were able to&nbsp;<a href=\"https:\/\/helpdesk.kaseya.com\/hc\/en-gb\/articles\/4403584098961\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">exploit a zero day<\/a>&nbsp;to access customer instances of the product and use its native functionality to deploy ransomware to those customers endpoints.<\/p>\n<p>Further compounding the problem, managed service providers (MSPs) use Kaseya software to manage their customer environments. When the attackers compromised Kaseya, the MSPs inadvertently and unknowingly spread the ransomware to their customers. &nbsp;<\/p>\n<p>This is only one example of how attackers continue to abuse trust in unique ways that leaves many security and IT practitioners to wonder, &#8220;Why didn&#8217;t something like this happen sooner?&#8221;&nbsp;<\/p>\n<h3><strong>Attackers Are Getting Bolder &nbsp;<\/strong><\/h3>\n<p>Ransomware group REvil continues to get even bolder. Make no mistake, an attack like we saw against Kaseya was prescriptive and purposeful to inflict the maximum amount of damage to the most amount of targets. Immediately after the attack, they bragged about infecting more than&nbsp;<a href=\"https:\/\/www.theverge.com\/2021\/7\/5\/22564054\/ransomware-revil-kaseya-coop\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">a million devices and set a ransom demand of $70 million<\/a>. If one organization paid, they promised that the decryptor would work across all organizations that were affected. &nbsp;<\/p>\n<p>This shines a light on a troubling trend we&#8217;re seeing, where attack targets are shifting from individual organizations to exploiting platforms, like Kaseya or SolarWinds, that allow for multiple organizations to be affected. Attackers continue to research the tools we all rely on to find ways to abuse the native functionality to effectively execute an attack. This latest attack abused an old copy of Microsoft Defender that allowed sideloading of other files. &nbsp;<\/p>\n<h3><strong>Software Is Vulnerable All The Way Down The Chain &nbsp;<\/strong><\/h3>\n<p>All the tools that organizations rely on &#8212; such as tax software, oil pipeline sensors, collaboration platforms, and even security agents &#8212; are built on top of the same vulnerable code, platforms, and software libraries that your vulnerability management team is screaming from the hills to patch or update immediately. &nbsp;<\/p>\n<section class=\"sharethrough-top\" data-component=\"medusaContentRecommendation\" data-medusa-content-recommendation-options=\"{&quot;promo&quot;:&quot;promo_zd_recommendation_sharethrough_top_in_article_desktop&quot;,&quot;spot&quot;:&quot;dfp-in-article&quot;}\"> <\/section>\n<p>Organizations need to both hold their supply chain partners, vendors, and others accountable for addressing the vulnerabilities in the software that they&#8217;ve built on top of this house of cards as well as understand the exposure they have by deploying said software within their environments.&nbsp;<\/p>\n<h3><strong>Run Faster Than The Next Guy; Take Defensive Steps Now &nbsp;<\/strong><\/h3>\n<p>Forrester blog,&nbsp;<a href=\"https:\/\/go.forrester.com\/blogs\/ransomware-survive-by-outrunning-the-guy-next-to-you\/?utm_source=zdnet&amp;utm_medium=pr&amp;utm_campaign=sr\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">Ransomware: Survive By Outrunning The Guy Next To You<\/a>, discusses protecting against ransomware by hardening systems to make your organization a hard target. Supply chain attacks bypass defenses by exploiting your trust in systems. To protect against them, you have to scrutinize the inherent trust you&#8217;ve placed on your supply chain. &nbsp;<\/p>\n<p>To start, organizations should take an inventory of the critical partners that have a large foothold within their environment, such as the vendors used for collaboration\/email, MSPs that manage and monitor infrastructure, or security providers that may have an agent deployed to every system. After compiling your list, you should: &nbsp;<\/p>\n<ul>\n<li>Ask those partners what they&#8217;re doing to prevent you from being the next victim of a destructive attack. Ask about the gating process for pushing updates to your environment. How do they QA updates before they&#8217;re pushed? Ask solution providers how they secure their code and assess that code for vulnerabilities.&nbsp;<\/li>\n<li>Find out if they have the appropriate processes and architecture in place to prevent the type of lateral movement we saw with the latest attack. Ask how they secure their own environments, especially their update servers. Ask to see audit or assessment results from third-party assessors. &nbsp;<\/li>\n<li><a href=\"https:\/\/news.bloomberglaw.com\/tech-and-telecom-law\/supply-chain-hit-spurs-companies-to-rethink-vendor-relationships\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">Review your service agreements<\/a>&nbsp;to find out what contractual responsibility those partners have to keep you safe from ransomware and malware. Understand what rights you have to demand compensation, if you are the victim of an attack due to a service provider&#8217;s systems being used as a delivery vehicle. &nbsp;<\/li>\n<\/ul>\n<p>Organizations should take aggressive steps to implement prescriptive <a href=\"https:\/\/go.forrester.com\/blogs\/ransomware-survive-by-outrunning-the-guy-next-to-you\/?utm_source=zdnet&amp;utm_medium=pr&amp;utm_campaign=sr\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">ransomware advice<\/a> as well as take a look at additional <a href=\"https:\/\/go.forrester.com\/blogs\/forresters-list-of-ransomware-resources\/?utm_source=zdnet&amp;utm_medium=pr&amp;utm_campaign=sr\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">ransomware resources<\/a> to limit the blast radius of an attack. &nbsp;<\/p>\n<p><em>This post was written by Analyst Steve Turner, and it originally appeared&nbsp;<\/em><a href=\"https:\/\/go.forrester.com\/blogs\/using-our-tools-against-us-adversaries-continue-to-abuse-trust-in-the-supply-chain\/?utm_source=zdnet&amp;utm_medium=pr&amp;utm_campaign=sr\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\"><em>here<\/em><\/a><em>.&nbsp;<\/em><\/p>\n<p> READ MORE <a href=\"https:\/\/www.zdnet.com\/article\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#ftag=RSSbaffb68\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A recent ransomware attack used one system to successfully target thousands of victim companies.<br \/>\nREAD MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":41865,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[62],"tags":[],"class_list":["post-41864","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-zdnet-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Adversaries continue to abuse trust in the supply chain 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Adversaries continue to abuse trust in the supply chain 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2021-07-20T20:32:15+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/07\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"770\" \/>\n\t<meta property=\"og:image:height\" content=\"578\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Adversaries continue to abuse trust in the supply chain\",\"datePublished\":\"2021-07-20T20:32:15+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/\"},\"wordCount\":764,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/07\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg\",\"articleSection\":[\"ZDNet | Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/\",\"name\":\"Adversaries continue to abuse trust in the supply chain 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/07\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg\",\"datePublished\":\"2021-07-20T20:32:15+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/07\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/07\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg\",\"width\":770,\"height\":578},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/adversaries-continue-to-abuse-trust-in-the-supply-chain\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Adversaries continue to abuse trust in the supply chain\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Adversaries continue to abuse trust in the supply chain 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/","og_locale":"en_US","og_type":"article","og_title":"Adversaries continue to abuse trust in the supply chain 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2021-07-20T20:32:15+00:00","og_image":[{"width":770,"height":578,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/07\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Adversaries continue to abuse trust in the supply chain","datePublished":"2021-07-20T20:32:15+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/"},"wordCount":764,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/07\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg","articleSection":["ZDNet | Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/","url":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/","name":"Adversaries continue to abuse trust in the supply chain 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/07\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg","datePublished":"2021-07-20T20:32:15+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/07\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/07\/adversaries-continue-to-abuse-trust-in-the-supply-chain.jpg","width":770,"height":578},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/adversaries-continue-to-abuse-trust-in-the-supply-chain\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Adversaries continue to abuse trust in the supply chain"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/41864","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=41864"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/41864\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/41865"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=41864"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=41864"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=41864"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}