The supply chain is a crucial element in the business world and, accordingly, this makes it the perfect target for hackers to attack.

When a finished product ends up with a consumer it’s the culmination of a lengthy business process. The supply chain is the succession of activities which are involved in sourcing materials, processing materials and delivering products. Naturally, this process can involve numerous different processes and the involvement of many different organizations. Therefore, the number of opportunities to discover a backdoor or a vulnerability are attractive to a hacker. By infiltrating just one stage of a supply chain, a hacker is granted the chance to attack a large number of individuals.

Supply chain attacks have received a number of headlines over the last few years, so it’s important to arm yourself against them with knowledge.

How Does a Supply Chain Attack Work?

Hackers tend to focus on specific supply chains and carry our research on which part of the process is weakest. This gives the hacker the best opportunity of exploiting the entire supply chain. Typically, these attacks concentrate on smaller firms but, as we will see later, larger firms are also susceptible. The attack will generally be focused upon a target company and hackers will seek to disrupt their operations by infiltrating a third-party supplier e.g. a company which supplies bespoke parts to a manufacturer. The main strategy for a supply chain attack involves disabling IT systems with malware.

This image has an empty alt attribute; its file name is code-1839406_640.jpg

Examples of Supply Chain Attacks

There has been an increase in supply chain attacks in the last few years and some of the most notable ones are:

  • SolarWinds: In late 2020 it was discovered that IT infranstructure company SolarWinds had been the victim of a supply chain attack. Having gained access to SolarWinds’ network, hackers were able to insert malware into SolarWinds’ software. Due to the stealth employed, SolarWinds were unaware that they were distributing this malware. The malware involved allowed hackers to disable system services, transfer files and reboot infected PCs.
  • Shylock: A banking trojan which emerged in 2014, Shylock targeted websites based in the creative and digital industries. The authors of the Shylock trojan used a redirect script that sent victims to a malicious website. However, the team behind Shylock did not directly target these victims. Instead, they infiltrated a creative agency that designed website templates. This allowed the hackers to conceal their malicious script within legitimate website templates.

How to Protect Against Supply Chain Attacks

Defending against a supply chain attack is difficult due to the number of third parties involved. Each one that your organization works with has the potential to create a supply chain breach. However, by implementing the following measures you should enhance your protection:

For more ways to secure and optimize your business technology, contact your local IT professionals.

Read More


Some malware is incredibly difficult to remove, but it is removable. However, that very same malware could come back stronger than ever before.

We first reported on the Trickbot malware back in 2017 when it was being used to target banks in the US. Back then it was using web-injection techniques to infect users and steal login credentials. But much can change in three and a half years. Trickbot has steadily evolved to become a much stronger strain of malware. And this, naturally, means that its more dangerous. Therefore, even if you managed to beat Trickbot before, it’s going to require an even stronger battle this time around.

The good news is that we’re going to give you a lowdown on the latest variant of Trickbot and, more importantly, how to beat it.

What is Trickbot?

Trickbot has changed significantly since we last encountered it, so it’s crucial that we take a comprehensive look at it. Since its early days as a banking trojan, Trickbot has evolved several times. Enhancements to its design has allowed it to spread through networks rapidly and with stealth on its side. Trickbot has also been re-engineered to become a malware loader meaning that it can download even more malware to an infected system. It had appeared, last year, that a collection of tech companies had managed to take the Trickbot network down. But it appears that Trickbot is still active.

The latest Trickbot attack uses a social engineering approach to unleash its payload and is targeting legal and insurance companies in the US. Phishing emails are being distributed which inform the recipient that they are responsible for a traffic violation. A link contained within the email promises to deliver proof of this violation. But the true destination of this link is a website which will download an infected ZIP file. This infected file will then connect the user’s PC to a remote server and completes the infection by downloading further malware.

How to Beat Trickbot

Good security practices are essential when it comes to beating malware such as Trickbot. Protect yourself by carrying out the following:

  • Install Your Updates: Vulnerabilities in your hardware and software allow malware such as Trickbot easy access into your system. Plug this gap by installing all updates when prompted to and, where possible, set these to automatic installs.
  • Teach Email Safety: The busy pressures of the working day mean that we can sometimes switch to automatic when checking our emails. However, by taking a few moments to carry out some basic checks you can make sure you don’t fall victim to malicious emails.
  • Two-Factor Authentication: Trickbot is well known for being able to spread through networks like wildfire, but you can limit this spread. By installing a method of two-factor authentication on your network you can make this spread much harder.
  • Use Anti-Malware Software: A wide range of anti-malware software is available – much of it at no cost – that can protect your PCs from malware. Windows itself has Windows Defender built into it as standard, so make sure you have something in place. And, don’t forget, make sure the software is turned on.

For more ways to secure and optimize your business technology, contact your local IT professionals.

Read More


Anything that can increase your productivity is a godsend. If it’s a simple process it’s even better. And that’s exactly what you can do with a PC shortcut.

Working with a mouse and a keyboard at the same time can become a fiddly task. But, thankfully, much of this complexity can be removed by using PC shortcuts. When we say PC shortcut we’re not referring to the icons on your desktop that launch applications. We’re talking about quick tricks that you can execute in seconds to save you time. These mostly involve either the keyboard or the mouse and you should be able to start implementing them immediately.

Increasing Your Productivity

The best PC shortcuts you should know are:

  • Switching Apps: When you have numerous applications open it can be difficult to navigate your way between them with a mouse. However, if you hold down the ALT key and then tap the TAB key you can quickly switch between each application. A mini preview window will open in the center of the screen to make things as simple as possible.
  • Select a Paragraph: If you want to select an entire paragraph of text to move, copy or delete then you have two options. The first is to manually click and drag your mouse cursor over the entire text. The second, and much quicker, option is to do a triple click of the left mouse button anywhere on the paragraph.
  • Select Everything: If you want to select everything in, for example, a Word document, a text box in any application or even MS Paint, all you have to do is press and hold the CTRL key and then the A key. This will highlight everything instantly and allows you action further processes immediately.
  • Close Your Current Window: The most common way to close a window on your PC is by clicking the X icon in the top right corner. But sometimes this may not be visible or your mouse may not be working correctly. In these cases you can still close the window quickly by pressing and holding the ALT key and then the F4 key.
  • Rescue Your Closed Browser Tab: We’ve all closed a tab on our internet browser by mistake and not been able to remember the address. Rather than digging through your internet history, though, there’s a quick way to re-open that tab. In most internet browsers, if you click and hold the SHIFT key and then the CTRL key and finally the T key, your last closed tab will be re-opened.
  • Zoom In: There’s always a need to zoom in on documents and images, but finding the zoom function in an app isn’t always easy.  There is, however, a quick solution. If you hold down the control key and then move the scroll wheel of a mouse up and down then you should zoom in and out. This works in a wide range of applications such as MS Office, Chrome, Firefox and most graphic design software.

For more ways to secure and optimize your business technology, contact your local IT professionals.

Read More