logo

10 Questions to Ask Suppliers as Part of Third-Party Security Reviews

ID: 2ac0f185-2cf3-566b-8d41-2d7b59af7468

STIX ID: report--2ac0f185-2cf3-566b-8d41-2d7b59af7468

Feed Name: Dragos Blog

Threat Score
75/100

Date Published: 2022-07-12

Date Updated: 2026-04-27

...
...

This report outlines the growing threat of software and supplier supply-chain compromises to ICS/OT environments, cites high-profile examples (SolarWinds, XENOTIME), lists Dragos-identified threat groups that have used supply-chain techniques, and provides ten vendor-focused questions to guide third-party security reviews and mitigate supplier-introduced risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.