Home / Current Issue / Paper 1706490
AI-Powered Supply Chain Attacks: A Growing Cybersecurity Threat
Subject area: Science,Engineering and Technology · Area of research: Artificial Intelligence
Abstract
Supply chain attacks are evolving in cybersecurity as a potent subject and assault that uses sophisticated artificial intelligence strategies to penetrate and subvert guaranteed suppliers and software developers. These are complex attacks that take advantage of the existing trust in the supply chain to deliver malware through what may look as normal software updates, firmware, or services, which means that the integration of artificial intelligence boosts the accuracy and sneakiness of these attacks and improves target acquisition, malware adaptability, and manipulation of machine learning models within software products. The research objectives of this research are threefold: To identify how AI exacerbates supply chain risks, this involves understanding the characteristics of recent well-known security breaches; To present mitigation measures that can protect organizational networks. Through the use of case study research along with analysis tools like case studies and data analysis, the research demonstrates the imperative nature of increasing security and ensuring real-time security for protection from AI threats. Advanced and high-impact insights suggest continued AI development in supply chain attacks, which not only elevation but also expedites the attack processes whereby conventional defenses offer little help. The findings indicate that a Zero Trust posture, behavioral analytics, and a secure Software Bill of Materials (SBOM) are actionable and help fortify supply chains. In terms of implications to future research, it adds to previous work the consideration of the new challenges introduced through the use of AI in supply chain attacks, a crucial area of study for the construction of secure cyberspace protection architectures vital for the preservation of the integrity of key organizations and sensitive information in the growingly connected world.
Keywords
Artificial Intelligence. Data Breaches, Zero Trust, Polymorphic Malware, Supply Chain Attacks
References
[1] Anderson, B., & Lee, H. (2021). Strategic Timing in AI-Powered Cyber Attacks. Cybersecurity Defense Journal, 9(1), 112-126. https://doi.org/10.1016/j.cydef.2021.101
[2] Anderson, E., & Shinde, K. (2022). Artificial Intelligence in Cybersecurity: Opportunities and Risks. International Journal of Information Security, 4(2), 79-92. https://doi.org/10.1007/s10207-022-00665-0
[3] Brown, T., & Tran, H. (2022). Evasion Strategies in Malware: The Role of AI in Adaptive Attacks. Journal of Malware Analysis, 14(3), 107-118. https://doi.org/10.1016/j.mala.2022.10718
[4] Chen, L., & Roberts, M. (2021). Advanced Defense Strategies in AI-Driven Cybersecurity. Journal of Information Security Research, 15(3), 201-218. https://doi.org/10.1016/j.jisr.2021.07.005
[5] Chen, R., & Patel, K. (2022). Understanding AI-Driven Threats in Cybersecurity. International Journal of Cyber Studies, 9(3), 85-94. https://doi.org/10.1080/ijc.2022.00323
[6] Davis, K., Nguyen, T., & Brown, A. (2021). Automation in Cyber Attacks: The Role of AI in Modern Supply Chains. Cybersecurity Review, 12(2), 89-104. https://doi.org/10.1016/cyberrev.2021.04.012
[7] Dutta, A., & Smith, B. (2023). Monitoring Challenges in Complex Supply Chains. Cyber Supply Chain Security Journal, 9(2), 65-78. https://doi.org/10.1093/cysu.2023.0195
[8] Garcia, P., & Liu, Y. (2022). Manipulating Machine Learning Models: Risks and Mitigations in Supply Chain Security. International Journal of Cybersecurity, 8(1), 45-60. https://doi.org/10.1080/ijcs.2022.03.008
[9] Gade, R., & Nagar, S. (2023). Supply Chain Security: New Challenges from AI-Driven Attacks. Cybersecurity Technology Review, 5(1), 45-58. https://doi.org/10.1016/j.cyber2023.11002
[10] Ghosh, A., & Lee, J. (2021). AI-Enabled Cyber Threats: Risks and Defenses. Journal of Cybersecurity and Digital Forensics, 6(4), 45-58. https://doi.org/10.1177/11798032
[11] Jiang, H., Lee, P., & Choi, Y. (2022). Model Poisoning in Autonomous Systems: Risks and Mitigations. Journal of Information Security, 14(1), 39-50. https://doi.org/10.1007/s10207-022-00361-5
[12] Jiang, R., & Wu, X. (2022). Optimizing Attack Timing with Predictive AI. Journal of Cybersecurity Applications, 14(2), 89-98. https://doi.org/10.1016/j.cyberapp.2022.098
[13] Jouini, R., & Sassi, S. (2021). AI in Cybersecurity: A Double-Edged Sword. Cybersecurity and Digital Forensics, 2(2), 65-78. https://doi.org/10.1145/3342150
[14] Kavi, A., & Shah, A. (2022). Analyzing Vulnerabilities in Modern Supply Chains. Cyber Risk Journal, 13(2), 33-47. https://doi.org/10.1093/crj/cyb0393
[15] Konda, R., & Yamada, S. (2024). Adversarial Attacks on Machine Learning in Supply Chains. Journal of Information Warfare, 23(2), 39-53. https://doi.org/10.2514/ifwjournal.23.0025
[16] Lee, H., & Thompson, J. (2023). Target Selection in AI-Powered Supply Chain Attacks. Information Systems Security Journal, 19(2), 133-148. https://doi.org/10.1016/issj.2023.02.003
[17] Lee, P., Kim, S., & Zhang, R. (2023). Implementing Zero Trust in Supply Chains: A Strategic Approach. International Journal of Cybersecurity, 12(1), 99-115. https://doi.org/10.1016/j.ijcyber.2023.11006
[18] Martinez, A., & Kim, D. (2022). Expanding Attack Surfaces: The Impact of IoT and Cloud Computing on Supply Chain Security. Computers & Security, 110, Article 102345. https://doi.org/10.1016/j.cose.2021.102345
[19] Mitra, A., Zhang, Y., & Lee, C. (2022). Adversarial AI in Malware and Phishing Attacks. ACM Computing Surveys, 55(4), Article 47. https://doi.org/10.1145/3397531
[20] Morgan, J., & Gray, T. (2023). Interpreting Cybersecurity Threat Data. Computers & Cybersecurity Insights, 22(1), 9-21. https://doi.org/10.1080/03018032
[21] Morris, S., & Gupta, R. (2023). Adversarial Manipulation in Machine Learning Models. International Journal of Cyber Threat Intelligence, 11(2), 55-70. https://doi.org/10.1145/3523321
[22] Notter, H., & Sutherland, R. (2021). AI-Driven Cybersecurity: Balancing Risks and Benefits. Journal of Cybersecurity Research, 3(1), 23-34. https://doi.org/10.1080/jcsr.2021.0010
[23] Patel, T., & Nair, S. (2023). Model Inversion and Privacy Risks in AI. AI and Security, 9(3), 23-35. https://doi.org/10.1093/aisecure.2023.117
[24] Ramesh, K., & Singh, A. (2022). Cybersecurity Challenges in the Age of AI: An Overview. Cybersecurity Review, 10(2), 45-60. https://doi.org/10.1016/cyberrev.2022.01.004
[25] Sharma, R., & Patel, T. (2023). AI in Supply Chain Attacks: Emerging Trends and Threats. Journal of Information Security, 17(3), 89-103. https://doi.org/10.1080/jis.2023.0175
[26] Singh, R., & Lopez, J. (2021). Understanding IoT Vulnerabilities in Supply Chains. Journal of Information Security Research, 15(3), 201-216. https://doi.org/10.1007/s10153-021-0011
[27] Taylor, S., Gomez, R., & Li, X. (2023). Automated Target Selection in AI-Powered Cyber Attacks. Journal of Information Security Research, 17(2), 101-118. https://doi.org/10.1016/j.jisr.2023.02.010
[28] Wang, M., & Lee, J. (2022). The Kaseya Attack and the Rise of Ransomware in Supply Chains. Journal of Cybersecurity and Software Applications, 14(2), 45-58. https://doi.org/10.1080/jcsa.2022.12341
[29] Wu, D., & Chen, L. (2023). Timing Attacks with AI in Supply Chains. Cybersecurity Innovation Journal, 11(1), 97-108. https://doi.org/10.1145/3549347
[30] Zhang, Y., & Kumar, A. (2023). Weaponizing Machine Learning: Risks and Mitigations in Modern Cyber Attacks. International Journal of Cybersecurity Studies, 9(1), 45-60. https://doi.org/10.1016/ijcs.2023.01.005
How to cite this paper
@article{1706490,
author = {Oladoyin Akinsuli},
title = {AI-Powered Supply Chain Attacks: A Growing Cybersecurity Threat},
journal = {Iconic Research And Engineering Journals},
year = {2024},
volume = {8},
number = {3},
pages = {696-708},
issn = {2456-8880},
url = {https://www.irejournals.com/formatedpaper/1706490.pdf},
abstract = {Supply chain attacks are evolving in cybersecurity as a potent subject and assault that uses sophisticated artificial intelligence strategies to penetrate and subvert guaranteed suppliers and software developers. These are complex attacks that take advantage of the existing trust in the supply chain to deliver malware through what may look as normal software updates, firmware, or services, which means that the integration of artificial intelligence boosts the accuracy and sneakiness of these attacks and improves target acquisition, malware adaptability, and manipulation of machine learning models within software products. The research objectives of this research are threefold: To identify how AI exacerbates supply chain risks, this involves understanding the characteristics of recent well-known security breaches; To present mitigation measures that can protect organizational networks. Through the use of case study research along with analysis tools like case studies and data analysis, the research demonstrates the imperative nature of increasing security and ensuring real-time security for protection from AI threats. Advanced and high-impact insights suggest continued AI development in supply chain attacks, which not only elevation but also expedites the attack processes whereby conventional defenses offer little help. The findings indicate that a Zero Trust posture, behavioral analytics, and a secure Software Bill of Materials (SBOM) are actionable and help fortify supply chains. In terms of implications to future research, it adds to previous work the consideration of the new challenges introduced through the use of AI in supply chain attacks, a crucial area of study for the construction of secure cyberspace protection architectures vital for the preservation of the integrity of key organizations and sensitive information in the growingly connected world.},
keywords = {Artificial Intelligence. Data Breaches, Zero Trust, Polymorphic Malware, Supply Chain Attacks},
month = {September},
}