Threats & AttacksQuestion 14 of 100

Which term describes a hidden vulnerability in a third-party component that compromises everyone who uses it?

a.Supply chain risk
b.Insider risk
c.Physical risk
d.Configuration drift

Explanation

Supply chain risk arises when a trusted vendor, library, or hardware component is compromised, affecting downstream customers. A single tainted update can reach many organizations. Vendor assessments and software bill of materials help manage this risk.

Practice all 100 questions free — no signup required.

Related questions on this topic

Last reviewed: · editorial process

PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review
Report