Advanced Persistent Threats Based on Supply Chain Vulnerabilities: Challenges, Solutions, and Future Directions

被引:0
|
作者
Tan, Zhuoran [1 ]
Parambath, Shameem Puthiya [1 ]
Anagnostopoulos, Christos [1 ]
Singer, Jeremy [1 ]
Marnerides, Angelos K. [2 ,3 ]
机构
[1] Univ Glasgow, Sch Comp Sci, Glasgow City G12 8RZ, Scotland
[2] Univ Cyprus, KIOS Ctr Excellence, CY-1678 Nicosia, Cyprus
[3] Univ Cyprus, Dept Elect & Comp Engn, CY-1678 Nicosia, Cyprus
来源
IEEE INTERNET OF THINGS JOURNAL | 2025年 / 12卷 / 06期
关键词
Supply chains; Security; Malware; Surveys; Reconnaissance; Payloads; Systematic literature review; Internet of Things; Weapons; Vectors; Advanced persistent threats (APTs); classification; defense methods; supply chain attack (SCA); CYBERSECURITY; SECURITY; ATTACK; SYSTEM;
D O I
10.1109/JIOT.2025.3528744
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the ever increasing interdependency across a variety of diverse software and hardware components in information and communications technology (ICT) provisioning, supply chain vulnerabilities (SCVs) targeting such dependencies have evolved as a primary choice for malicious actors to stealthy and complex cyber-attacks. The current modus operandi in the cyber threat spectrum is solely correlated with advanced persistent threats (APTs) that have shown to be prevalent across diversified attacks underpinning cyberwarfare and cybercrime. Hence, defense against such threats is undoubtedly considered as a high priority on a global scale. Nonetheless, the reliance on third-party supply chain software and device across diverse ICT ecosystems, combined with the current defense mechanisms' inability to identify specific compromised entry points, results in an increased risk of APTs. This survey explores the state-of-the-art to stratify and showcase the properties of supply chain-based APTs, elaborate on reported risks from such APTs, and expand on existing defense methods. This study connects academic research with industry practices to highlight a new and growing problem. It examines supply chain compromises, offers unique insight into how these exploitations occur, and equips cybersecurity practitioners with the knowledge required to design next-generation APT defense mechanisms.
引用
收藏
页码:6371 / 6395
页数:25
相关论文
共 50 条
  • [41] Privacy and Security in Ubiquitous Integrated Sensing and Communication: Threats, Challenges and Future Directions
    Qu, Kaiqian
    J., Ye
    X., Li
    S., Guo
    IEEE Internet of Things Magazine, 7 (04): : 52 - 58
  • [42] Sustainable supply chain management: continuing evolution and future directions
    Carter, Craig R.
    Hatton, Marc R.
    Wu, Chao
    Chen, Xiangjing
    INTERNATIONAL JOURNAL OF PHYSICAL DISTRIBUTION & LOGISTICS MANAGEMENT, 2019, 50 (01) : 122 - 146
  • [43] Humanitarian supply chain: a bibliometric analysis and future research directions
    Samuel Fosso Wamba
    Annals of Operations Research, 2022, 319 : 937 - 963
  • [44] Data supply chain (DSC): research synthesis and future directions
    Spanaki, Konstantina
    Gurguc, Zeynep
    Adams, Richard
    Mulligan, Catherine
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2018, 56 (13) : 4447 - 4466
  • [45] Humanitarian supply chain: a bibliometric analysis and future research directions
    Wamba, Samuel Fosso
    ANNALS OF OPERATIONS RESEARCH, 2020, 319 (1) : 937 - 963
  • [46] Measuring supply chain performance: current research and future directions
    Shepherd, Craig
    Gunter, Hannes
    INTERNATIONAL JOURNAL OF PRODUCTIVITY AND PERFORMANCE MANAGEMENT, 2006, 55 (3-4) : 242 - 258
  • [47] The new supply chain agenda: a synopsis and directions for future research
    Stank, Theodore P.
    Dittmann, J. Paul
    Autry, Chad W.
    INTERNATIONAL JOURNAL OF PHYSICAL DISTRIBUTION & LOGISTICS MANAGEMENT, 2011, 41 (10) : 940 - 955
  • [48] Future directions and gaps of the global supply chain risk modelling
    Kovac, J.
    Kadarova, J.
    Kalafusova, L.
    PRODUCTION MANAGEMENT AND ENGINEERING SCIENCES, 2016, : 443 - 448
  • [49] Cyber Threats to Smart Grids: Review, Taxonomy, Potential Solutions, and Future Directions
    Ding, Jianguo
    Qammar, Attia
    Zhang, Zhimin
    Karim, Ahmad
    Ning, Huansheng
    ENERGIES, 2022, 15 (18)
  • [50] Sustainable microbial solutions for managing fungal threats in wheat: progress and future directions
    Kashyap, Prem Lal
    Kumar, Sudheer
    Khanna, Annie
    Jasrotia, Poonam
    Singh, Gyanendra
    WORLD JOURNAL OF MICROBIOLOGY & BIOTECHNOLOGY, 2025, 41 (03):