Categories: Europe

NIST Releases Updated Cybersecurity Guidance for Managing Supply Chain Risks | #ukscams | #datingscams | #european


The National Institute of Standards and Technology (NIST) on Thursday released an updated cybersecurity guidance for managing risks in the supply chain, as it increasingly emerges as a lucrative attack vector.

“It encourages organizations to consider the vulnerabilities not only of a finished product they are considering using, but also of its components — which may have been developed elsewhere — and the journey those components took to reach their destination,” NIST said in a statement.

The new directive outlines major security controls and practices that entities should adopt to identify, assess, and respond to risks at different stages of the supply chain, including the possibility of malicious functionality, flaws in third-party software, insertion of counterfeit hardware, and poor manufacturing and development practices.

The development follows an Executive Order issued by the U.S. President on “Improving the Nation’s Cybersecurity (14028)” last May, requiring government agencies to take steps to “improve the security and integrity of the software supply chain, with a priority on addressing critical software.”

It also comes as cybersecurity risks in the supply chain have come to the forefront in recent years, in part compounded by a wave of attacks targeting widely-used software to breach dozens of downstream vendors all at once.

According to the European Union Agency for Cybersecurity’s (ENISA) Threat Landscape for Supply Chain Attacks, 62% of 24 attacks documented from January 2020 to early 2021 were found to “exploit the trust of customers in their supplier.”

“Managing the cybersecurity of the supply chain is a need that is here to stay,” said NIST’s Jon Boyens and one of the publication’s authors. “If your agency or organization hasn’t started on it, this is a comprehensive tool that can take you from crawl to walk to run, and it can help you do so immediately.”





Click Here For The Original Source.

. . . . . . .

admin

Share
Published by
admin

Recent Posts

Dating App: Online Dating Scam Alert: Nafrat’s Deceptive Tactics on Sugo App | Delhi News #nigeria | #nigeriascams | #lovescams

NEW DELHI: A 23-year-old college student downloaded a dating app, Sugo, with the hope of…

16 mins ago

Former romance scammer reveals how he duped women, and how he’s “working on making everything right” | #datingscams | #lovescams

BALTIMORE -- Romance scams are a coldhearted federal crime where victims are robbed of large sums…

36 mins ago

Google sues alleged crypto scammers for luring people into investments they’d never get back #nigeria | #nigeriascams | #lovescams

Google is suing two alleged crypto scammers, accusing them of using its Play Store to…

37 mins ago

Lack of regulation, oversight and competition affects quality, and millions stand to lose | #lovescams | #datingapps

When Aleksandr Zhadan used ChatGPT to talk to over 5,000 women on Tinder, it was…

44 mins ago

Romance Scams That Target Older Adults Rising: What to Do #nigeria | #nigeriascams | #lovescams

Love can make you do some pretty crazy things. At least that’s how the saying…

59 mins ago

Commentary: Online dating is facing an onslaught of AI-powered fraud #nigeria | #nigeriascams | #lovescams

DOMINANT PLAYERS One explanation for the companies’ sluggish response will be familiar to any observer…

1 hour ago