|
|
|
|
|
by mcpherrinm
2506 days ago
|
|
How secure is the source integrity of all your dependencies? All your software vendors? How likely are you to get malware on an employee laptop? Phish employee credentials? Have somebody sneak into your office late at night and install keyloggers on everyone's keyboards? Kidnap an employee's family and blackmail them into giving you access? Go through your recruiting pipeline and join as an employee with the motive to steal your data? Get two people to do the same and bypass peer review controls? Of course those are getting outlandish and unlikely, but that depends how "motivated and skilled" your attacker is. |
|
Not sure where OP was coming from. It’s virtually impossible to protect yourself against a dedicated advanced persistent threat group.