Skip to content
Search AI Powered

Latest Stories

Report identifies top supply chain cyber risks

A failure to test systems and lack of clear-cut security policies put companies and their customers at risk.

Screen Shot 2023-04-19 at 9.08.57 AM.png

Rampant cyber security weaknesses are putting supply chains at risk, according to a report from British cyber security company Risk Ledger, released this week.


Risk Ledger’s State of Cyber Security in the Supply Chain 2023 report is based on proprietary data from more than 2,500 suppliers on the company's risk management platform. The findings identify the 12 most common weaknesses among suppliers, especially third-tier suppliers and others that are further down a company’s supply chain.

Risk Ledger defines third-party suppliers as external companies that a business uses to provide a service as part of their own delivery or a company that provides elements of a product they make. According to the report, 40% of third-party suppliers do not conduct regular penetration tests of internal systems and 32% do not have a supplier security policy that outlines the security requirements that their suppliers should meet—which puts their own and their customer’s data at risk, according to the report.

“Attackers are targeting under-resourced suppliers with weaker defenses as a way of disrupting or compromising larger organizations,” the company wrote in a statement describing the findings. “The notable ransomware attack on a supplier to semiconductor giant Applied Materials is expected to lead to $250 million in lost sales. With well over 60% of organizations having suffered a data breach through a third party, this regularly results in regulatory fines, huge data recovery costs and loss of consumer trust.”

Two of the top 12 weaknesses revealed in the report include:
  • 17% of suppliers do not enforce multi-factor authentication (MFA) on all remotely accessible services. MFA requires a second source of validation before granting users access to a device or service—in addition to entering a password, the user may also be asked for a code or fingerprint, for example. MFA is the simplest, most effective way to keep hackers out of your online accounts, according to Risk Ledger, but it can be cumbersome for users and is therefore often provided as an optional setting that needs to be intentionally configured. “This often leaves MFA disabled and the accounts vulnerable to unauthorized access through password theft,” according to the report.
  • 23% do not use “Privileged Access Management” controls to securely manage the use of privileged accounts, which are the ultimate target for attackers. With high privileges, an attacker can access more sensitive (and more valuable) data, and modify security detection tools to cover their own tracks.
The report explains that these weaknesses are common causes of cyber security incidents, and that a high proportion of third-, fourth-, and fifth-party suppliers are not using controls to protect themselves or their customers in these areas. It also offers recommendations by cyber security experts for improving companies’ third-party risk management strategies, including benchmarking data.

Recent

More Stories

A man wearing a safety vest kneels in front of a neon green and black autonomous mobile robot. They are in a warehouse facility with picking carts. A light from the robot shines on the man's knee.

Amazon's new fulfillment center in Shreveport, Louisiana, utilizes Proteus autonomous mobile robots.

Amazon's Latest Distribution Center Boosts Efficiency with Surge in Robot Population

Mega-retailer Amazon says its newest fulfillment center, located in Shreveport, Louisiana, uses 10 times more robots than previous warehouse designs, and relies on artificial intelligence (AI) to direct the eight different models deployed in its bustling operation.

“Over the years, we’ve built and scaled the world’s largest fleet of industrial robotics that ease tasks for employees and improve operational safety while creating hundreds of thousands of new jobs along the way,” the company said in a blog post Wednesday. “For the first time, we have introduced technology solutions in all key production areas at the site, meaning our employees will work alongside our growing fleet of robotic systems seamlessly in a way that wasn’t possible until now.”

Keep ReadingShow less

Featured

hurricane milton rainfall forecast map florida

Supply chain networks prep for delays as Milton storms in

Hurricane Milton was just beginning to unleash its slashing wind and pouring rain on Florida’s western coast on Wednesday, but the supply chain disruptions caused by the enormous storm have already been unfolding for days.

For example, millions of residents and workers in the Tampa region have now left their homes and jobs, heeding increasingly dire evacuation warnings from state officials. They’re fleeing the estimated 10 to 20 feet of storm surge that is forecast to swamp the area, due to Hurricane Milton’s status as the strongest hurricane in the Gulf since Rita in 2005, the fifth-strongest Atlantic hurricane based on pressure, and the sixth-strongest Atlantic hurricane based on its peak winds, according to market data provider Industrial Info Resources.

Keep ReadingShow less
robots working in factories

North American manufacturers cut back on robot orders in Q1 and Q2

The North American robotics market saw a decline in both units ordered (down 7.9% to 15,705 units) and revenue (down 6.8% to $982.83 million) during the first half of 2024 compared to the same period in 2023, as North American manufacturers faced ongoing economic headwinds, according to a report from the Association for Advancing Automation (A3).

“Rising inflation and borrowing costs have dampened spending on robotics, with many companies opting to delay major investments,” said Jeff Burnstein, president, A3. “Despite these challenges, the push for operational efficiency and workforce augmentation continues to drive demand for robotics in industries such as food and consumer goods and life sciences, among others. As companies navigate labor shortages and increased production costs, the role of automation is becoming ever more critical in maintaining global competitiveness.”

Keep ReadingShow less
weather map florida and hurricane milton

Hurricane Milton takes aim at weary Florida

The warm waters of the Gulf of Mexico are brewing up another massive storm this week that is on track to smash into the western coast of Florida by Wednesday morning, bringing a consecutive round of storm surge and damaging winds to the storm-weary state.

Before reaching the U.S., Hurricane Milton will rake the northern coast of Mexico’s Yucatan Peninsula with dangerous weather. But hurricane watches are already in effect for parts of Florida, which could see heavy rainfall, flash and urban flooding, and moderate to major river floods, according to forecasts from the National Oceanic and Atmospheric Administration (NOAA).

Keep ReadingShow less
chart of number of containerships off east coast ports

East Coast ports work through hefty backlog of containers

Shippers and carriers at ports along the East and Gulf coasts today are working through a backlog of stranded containers stuck on ships at sea, now that dockworkers and port operators have agreed to a tentative deal that ends the dockworkers strike.

The agreement between the International Longshoremen’s Association (ILA) and the United States Maritime Alliance Ltd. (USMX) hinges on a compromise deal on wage hikes and returns both parties to the negotiating table to hammer out a remaining debate over automation by a new deadline of January 15, 2025.

Keep ReadingShow less