← Back to glossary
⛓️

Supply‑chain Attack

Threats

An attack where hackers compromise a trusted vendor or update process.

Definition

A supply‑chain attack happens when attackers target a trusted supplier (software, hardware, or services) so victims get compromised indirectly.

In plain English An attack where hackers compromise a trusted vendor or update process.

Why this matters

Why it matters: It can affect many people at once, even if they follow good security habits.

Example

Example: A malicious update is pushed through a vendor’s compromised build system.