Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

Scheduled Pinned Locked Moved Uncategorized
askfedi
7 Posts 6 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • xahteiwi@mastodon.socialX This user is from outside of this forum
    xahteiwi@mastodon.socialX This user is from outside of this forum
    xahteiwi@mastodon.social
    wrote last edited by
    #1

    Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

    They say, "oh interesting, what's that?"

    What would your next three sentences be?

    #AskFedi

    larsmb@mastodon.onlineL hzulla@infosec.exchangeH guerda@ruhr.socialG dom@bildung.socialD moses_izumi@fe.disroot.orgM 5 Replies Last reply
    0
    • xahteiwi@mastodon.socialX xahteiwi@mastodon.social

      Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

      They say, "oh interesting, what's that?"

      What would your next three sentences be?

      #AskFedi

      larsmb@mastodon.onlineL This user is from outside of this forum
      larsmb@mastodon.onlineL This user is from outside of this forum
      larsmb@mastodon.online
      wrote last edited by
      #2

      @xahteiwi Imagine you order food. Someone bribes the courier and poisons the food. You're the blackmailed to pay for the antidote.

      You install new locks for your house. A collaborator works at the locksmith. The thieves open your door with their own key.

      1 Reply Last reply
      0
      • xahteiwi@mastodon.socialX xahteiwi@mastodon.social

        Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

        They say, "oh interesting, what's that?"

        What would your next three sentences be?

        #AskFedi

        hzulla@infosec.exchangeH This user is from outside of this forum
        hzulla@infosec.exchangeH This user is from outside of this forum
        hzulla@infosec.exchange
        wrote last edited by
        #3

        @xahteiwi Imagine an evil person secretly replacing an ingredient in a restaurant kitchen where an unsuspecting cook prepares your favourite meal.

        1 Reply Last reply
        1
        0
        • R relay@relay.infosec.exchange shared this topic
        • xahteiwi@mastodon.socialX xahteiwi@mastodon.social

          Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

          They say, "oh interesting, what's that?"

          What would your next three sentences be?

          #AskFedi

          guerda@ruhr.socialG This user is from outside of this forum
          guerda@ruhr.socialG This user is from outside of this forum
          guerda@ruhr.social
          wrote last edited by
          #4

          @xahteiwi if you buy a house, you cannot guarantee that all beams, nails etc are of the best quality. If somebody could infiltrate a steel production site, it can damage a lot of buildings at the same time by a lot of unsuspecting suppliers.
          Now imagine that beams in buildings could change in one day into a limp structure.
          This is a supply chain attack

          1 Reply Last reply
          0
          • xahteiwi@mastodon.socialX xahteiwi@mastodon.social

            Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

            They say, "oh interesting, what's that?"

            What would your next three sentences be?

            #AskFedi

            dom@bildung.socialD This user is from outside of this forum
            dom@bildung.socialD This user is from outside of this forum
            dom@bildung.social
            wrote last edited by
            #5

            @xahteiwi I am that person and I can understand the allegories mentioned in this thread regarding the *physical world*. But I am *so much* not a software developer, that it’s hard for me to translate these examples into “and this is how it works when it comes to software”.

            So, how would you reconnect your allegories to the software world? 😊

            (I am really sorry if this too far off-topic, but I’m that naturally curious person, remember? 😉)

            xahteiwi@mastodon.socialX 1 Reply Last reply
            0
            • dom@bildung.socialD dom@bildung.social

              @xahteiwi I am that person and I can understand the allegories mentioned in this thread regarding the *physical world*. But I am *so much* not a software developer, that it’s hard for me to translate these examples into “and this is how it works when it comes to software”.

              So, how would you reconnect your allegories to the software world? 😊

              (I am really sorry if this too far off-topic, but I’m that naturally curious person, remember? 😉)

              xahteiwi@mastodon.socialX This user is from outside of this forum
              xahteiwi@mastodon.socialX This user is from outside of this forum
              xahteiwi@mastodon.social
              wrote last edited by
              #6

              @dom As it happens that's exactly the next question I would have asked, too. So I think you're not going off-topic at all, rather you're making the problem clearer. So thanks. 🙂

              1 Reply Last reply
              0
              • xahteiwi@mastodon.socialX xahteiwi@mastodon.social

                Suppose you were talking to an intelligent and naturally curious person who uses some software but is not a software developer, and you mentioned the concept of a supply chain attack to them.

                They say, "oh interesting, what's that?"

                What would your next three sentences be?

                #AskFedi

                moses_izumi@fe.disroot.orgM This user is from outside of this forum
                moses_izumi@fe.disroot.orgM This user is from outside of this forum
                moses_izumi@fe.disroot.org
                wrote last edited by
                #7
                @xahteiwi
                Patlabor the Movie (1989), but the attacker backdoors some unassuming JavaScript library used by 690 000 different websites and services instead of the construction robots.
                This film predated Windows Update by a full decade.

                * I prefer the TV series and manga
                1 Reply Last reply
                1
                0
                • R relay@relay.mycrowd.ca shared this topic
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                • Login

                • Login or register to search.
                • First post
                  Last post
                0
                • Categories
                • Recent
                • Tags
                • Popular
                • World
                • Users
                • Groups