General security & latest trends
공급망 공격 (Supply chain attack)
Definition
Compromising a trusted vendor, software, or update channel to hit many at once.
For executives (CEO·CISO)
Even with perfect internal security, a compromised trusted third party (vendor, open source, update) breaches you anyway. Commonly missed: scoping security to your own perimeter — formalize vendor due-diligence, software bills of materials (SBOM), and least-privilege integrations.