MSPs: the increasing targets in supply chain attacks

The rise of supply chain attacks highlights the vulnerability of MSPs, underscoring the need for enhanced security protocols across the supply chain.

Recent findings from Group-IB in their High-Tech Crime Trends Report 2026 suggest an alarming trend in cybercrime, with supply chain attacks driving a self-reinforcing economy of breaches, credential theft, and ransomware. At the core of this operation are managed service providers (MSPs), identified as significant targets by cybercriminals due to their access to numerous downstream customers.

MSPs often serve as crucial intermediary entities within various supply chains. Because they access multiple client systems, any compromise can quickly spread across different organisations. Hence, this makes them attractive targets for attackers who can leverage a single breach into larger-scale infiltrations.

Research indicates that MSPs might underestimate the potential scale of these attacks. Despite evidence to the contrary, only a minority of MSP leaders consider them a top priority. Yet, incidents like the 2025 breach by the Dragonforce ransomware gang illustrate the potential impact, wherein a single vulnerability within an MSP's remote monitoring tool opened the floodgates to a supply chain attack.

To mitigate these risks, MSPs need to adopt a rigorous approach towards supply chain security. Adhering to recognised security standards and practices, such as implementing least-privilege access and enforcing multi-factor authentication, is paramount. Furthermore, regular access reviews, continuous monitoring, and strict segmentation of client environments can prevent single-point failures from escalating.

A critical aspect of managing supply chain risks involves extending due diligence to technology vendors. Ensuring that third-party tools meet stringent security standards is crucial. With a collective approach to risk management, involving shared accountability, organisations can thwart the cascade effect of breaches across the supply chain.

In the face of these threats, institutions including MSPs should consider frameworks like the NCSC's Cyber Essentials Supply Chain Playbook to better structure their approach to supply chain security. Establishing clear standards and expectations with suppliers can significantly enhance transparency and prevent isolated incidents from becoming systemic failures.

Jamie Akhtar, CEO and Co-Founder of CyberSmart, said: "This research confirms what we’ve long suspected: modern supply chain risk doesn’t live in isolated systems but in interconnected ecosystems where breaches cascade across organisations. This trend shows how attacks on upstream vendors, open-source projects, browser extensions and managed service platforms can give adversaries inherited access to downstream customers, credentials and trust relationships."

Given the evolving landscape of cyber threats, organisations within supply chain networks must remain vigilant and proactive. Ensuring robust security measures not only protects them but also safeguards their clients and the wider interconnected ecosystem.

AI vs. human: assessing cybersecurity performance

Posted 3 days ago by Sophie Milburn
Hack The Box’s report examines the impact of AI on cybersecurity task performance, analysing productivity changes and performance differences...
WatchGuard Technologies celebrates 30 years in the market, highlighting its long-term focus on supporting managed service providers and adapting to...
Asimily launches 'In Flight', a new partner tier aimed at strengthening global growth in IoT security through enhanced collaboration and support...
Vertiv plans significant expansion of its facilities in Derry and Donegal, creating new jobs to strengthen manufacturing of electrical switchgear.
Barracuda Networks unveils ransomware findings; swift breaches and outdated systems are key vulnerabilities. How businesses can adapt to evolving...
Cavelo sponsors MSP Well to promote mental health and wellbeing among MSP and MSSP professionals amidst industry pressures.

IPTel solutions upgrade with Highlight's service platform

Posted 1 week ago by Sophie Milburn
IPTel Solutions adopts the Highlight platform to strengthen service transparency and enhance managed services.
TalkTalk Business has finalised its separation from TalkTalk Group and transitioned to independent operations, focusing on managed network and...