{"id":52204,"date":"2023-06-05T14:00:00","date_gmt":"2023-06-05T14:00:00","guid":{"rendered":"https:\/\/www.darkreading.com\/attacks-breaches\/after-inception-attack-new-due-diligence-requirements-are-needed"},"modified":"2023-06-05T14:00:00","modified_gmt":"2023-06-05T14:00:00","slug":"after-inception-attack-new-due-diligence-requirements-are-needed","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/","title":{"rendered":"After &#8216;Inception&#8217; Attack, New Due Diligence Requirements Are Needed"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>Researchers investigating a&nbsp;<a href=\"https:\/\/www.darkreading.com\/attacks-breaches\/3cx-breach-cyberattackers-second-stage-backdoor\" target=\"_blank\" rel=\"noopener\">supply chain attack disclosed by 3CX<\/a>&nbsp;in March found it had an unusual and alarming origin: <a href=\"https:\/\/www.darkreading.com\/attacks-breaches\/3cx-supply-chain-attack-originated-from-breach-at-another-software-company\" target=\"_blank\" rel=\"noopener\">another company&#8217;s supply chain attack<\/a>. With the root of the &#8220;Inception&#8221; attack further removed than expected, the 3CX scenario has rattled information security professionals, given the implications of just how far out of their control the security of their software may be \u2014 and the realization that doing everything right may, in some cases, not be enough in a world with so many interdependencies. An attack like this at scale might resemble a spreading virus, propagating from one point of origin and spreading from one connected community to the next. It&#8217;s troubling to think just how deeply buried bad actors may lurk in your environment.<\/p>\n<h2 class=\"regular-text\">How It Came to This<\/h2>\n<p>The accelerating rate of digitization in recent years and an expanding threat landscape have outpaced the rate of talent development. The 2022&nbsp;&#8220;<a href=\"https:\/\/www.isc2.org\/-\/media\/ISC2\/Research\/2022-WorkForce-Study\/ISC2-Cybersecurity-Workforce-Study.ashx\" target=\"_blank\" rel=\"noopener\">Cybersecurity Workforce Study<\/a>,&#8221; released by (ISC)<sup>2<\/sup>&nbsp;in January, noted a &#8220;worldwide gap of 3.4 million cybersecurity workers.&#8221; In another recent survey, more than four in five companies reported having fewer than five in-house security analysts, or not enough to run their security operations center (SOC). As a result, organizations have increasingly looked to external vendors to provide essential services.&nbsp;<\/p>\n<p>The 3CX attack is just the latest to shine a light on how vulnerabilities can arise in an enterprise&#8217;s software supply chain. In a July 2022 survey by the Neustar International Security Council, nearly three-quarters (73%) of information security professionals believed they or their customers were somewhat or significantly exposed, due to increased integration with third-party providers.<\/p>\n<h2 class=\"regular-text\">New Rules for Managing Risk<\/h2>\n<p>Enterprises can implement a host of measures to reduce risk in their supply chain ecosystem.<\/p>\n<p>To start, standardized information gathering (SIG) questionnaires may be posed to potential new partners to understand the security controls they have in place. Third-party evaluation services may also be engaged to provide additional perspective during due diligence.&nbsp;<\/p>\n<p>Suppliers that win a contract must be held accountable for meeting clearly defined security standards, with regular audits required at least annually. This can help enterprises determine whether suppliers are fulfilling their obligations and maintaining the necessary controls to reflect current best practices.&nbsp;<\/p>\n<p>Importantly, organizations must always maintain a complete picture of their partner ecosystem. Engaging in more rigorous preventive measures and contractually obligating partners to hold themselves to security standards equal to or greater than what you apply to your business are important steps to help ensure partner relationships don&#8217;t become vectors for risk.<\/p>\n<p>While these can be highly effective risk reduction measures, they will not&nbsp;eliminate <a href=\"https:\/\/www.darkreading.com\/risk\" target=\"_blank\" rel=\"noopener\">risk<\/a> altogether.&nbsp;Organizations must also have a strong strategy in place for visibility, detection, and mitigation around compromised systems, including those provided by supply chain partners. There is one thing that all compromised systems have in common: Whether to deliver information or to download additional malicious content, compromised machines will periodically beacon out to their masters for further instruction. Layered endpoint, network, and protective DNS security solutions can be used to proactively monitor for beaconing, block it, and provide notifications to security operations.<\/p>\n<h2 class=\"regular-text\">Cooperation Is Required to Continue Making Progress<\/h2>\n<p>The burden of responsibility for reducing supply chain risk historically has been on the victim, with the onus on individual enterprises to prevent their own fate, rather than on the parties responsible for releasing insecure software in the first place. It is time for that paradigm to shift, and the Biden administration&#8217;s recently announced&nbsp;<a href=\"https:\/\/www.darkreading.com\/ics-ot\/bidens-cybersecurity-strategy-calls-for-software-liability-tighter-critical-infastructure-security\" target=\"_blank\" rel=\"noopener\">National Cybersecurity Strategy<\/a>, which aims to recalibrate this dynamic, is a significant step in the right direction.<\/p>\n<p>The strategy is centered around five pillars, the third of which is to &#8220;shape market forces to drive security and resilience.&#8221; It is here that the heavy burden of security is lifted from end users and shared with the vendors who introduce vulnerable software to the marketplace. Too often, the strategy notes, &#8220;software makers are able to leverage their market position to fully disclaim liability by contract.&#8221;<\/p>\n<p>This pillar reinforces progress already made in the industry, where development life-cycle practices are improving to include security at a much earlier stage in product development. Its intent is to compel investment and encourage vendors to follow secure-by-design principles and engage in pre-release testing. These practices will go a long way in ensuring the integrity of products flowing into the market.&nbsp;<\/p>\n<p>In today&#8217;s hyperactive threat landscape, it is imperative that supply chain vendors work together with their enterprise clients to identify and address breaches. Vendors investing in sound design and committing to transparency will help their clients reduce their risk exposure and operate with confidence. Good cybersecurity hygiene is everyone&#8217;s responsibility, so forging a new dynamic of shared accountability is not only a good idea, it&#8217;s the right thing to do.<\/p>\n<p>Read More <a href=\"https:\/\/www.darkreading.com\/attacks-breaches\/after-inception-attack-new-due-diligence-requirements-are-needed\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>To stem supply chain attacks, forging a new dynamic of shared cybersecurity hygiene accountability is the right thing to do.Read More <a href=\"https:\/\/www.darkreading.com\/attacks-breaches\/after-inception-attack-new-due-diligence-requirements-are-needed\">HERE<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[151],"tags":[],"class_list":["post-52204","post","type-post","status-publish","format-standard","hentry","category-darkreading-ti"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>After &#039;Inception&#039; Attack, New Due Diligence Requirements Are Needed 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"After &#039;Inception&#039; Attack, New Due Diligence Requirements Are Needed 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-06-05T14:00:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"After &#8216;Inception&#8217; Attack, New Due Diligence Requirements Are Needed\",\"datePublished\":\"2023-06-05T14:00:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/\"},\"wordCount\":817,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt3e2e7b3902d3410c\\\/63ea989e4b5f702a0976e818\\\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg\",\"articleSection\":[\"DarkReading |TI\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/\",\"name\":\"After 'Inception' Attack, New Due Diligence Requirements Are Needed 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt3e2e7b3902d3410c\\\/63ea989e4b5f702a0976e818\\\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg\",\"datePublished\":\"2023-06-05T14:00:00+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#primaryimage\",\"url\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt3e2e7b3902d3410c\\\/63ea989e4b5f702a0976e818\\\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg\",\"contentUrl\":\"https:\\\/\\\/eu-images.contentstack.com\\\/v3\\\/assets\\\/blt66983808af36a8ef\\\/blt3e2e7b3902d3410c\\\/63ea989e4b5f702a0976e818\\\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-inception-attack-new-due-diligence-requirements-are-needed\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"After &#8216;Inception&#8217; Attack, New Due Diligence Requirements Are Needed\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"After 'Inception' Attack, New Due Diligence Requirements Are Needed 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/","og_locale":"en_US","og_type":"article","og_title":"After 'Inception' Attack, New Due Diligence Requirements Are Needed 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-06-05T14:00:00+00:00","og_image":[{"url":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"After &#8216;Inception&#8217; Attack, New Due Diligence Requirements Are Needed","datePublished":"2023-06-05T14:00:00+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/"},"wordCount":817,"commentCount":0,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#primaryimage"},"thumbnailUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg","articleSection":["DarkReading |TI"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/","url":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/","name":"After 'Inception' Attack, New Due Diligence Requirements Are Needed 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#primaryimage"},"thumbnailUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg","datePublished":"2023-06-05T14:00:00+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#primaryimage","url":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg","contentUrl":"https:\/\/eu-images.contentstack.com\/v3\/assets\/blt66983808af36a8ef\/blt3e2e7b3902d3410c\/63ea989e4b5f702a0976e818\/Cybersecurity_lock_Kheng_Ho_Toh_Alamy.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/after-inception-attack-new-due-diligence-requirements-are-needed\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"After &#8216;Inception&#8217; Attack, New Due Diligence Requirements Are Needed"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/52204","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=52204"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/52204\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=52204"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=52204"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=52204"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}