T1195.003 — Compromise Hardware Supply Chain
T1195.003: Compromise Hardware Supply Chain
MITRE ATT&CK® Enterprise technique
| Tactics | Initial Access |
| Platforms | Linux, macOS, Windows |
| Permissions required | — |
| Version | 1.1 |
| Parent technique | T1195 |
Description
Adversaries may manipulate hardware components in products prior to receipt by a final consumer for the purpose of data or system compromise. By modifying hardware or firmware in the supply chain, adversaries can insert a backdoor into consumer networks that may be difficult to detect and give the adversary a high degree of control over the system. Hardware backdoors may be inserted into various devices, such as servers, workstations, network infrastructure, or peripherals.
Detection
(no detection guidance published)
Data sources
- (none listed)
References
- ATT&CK page: https://attack.mitre.org/techniques/T1195/003
- ATT&CK Enterprise matrix: https://attack.mitre.org/matrices/enterprise/