nancy

Make work harder for testers and hackers

Critical infrastructure operators do not need another reminder that IT and OT are connected. They live with that reality every day. What matters now is the discipline of the connection. Which data moves? Who receives it? Which direction does it travel? What happens when something unexpected appears? Resilient infrastructure is built by answering those questions before an incident forces the issue.

Reducing PLC Cyber Risks by Redefining Connectivity

As geopolitical tensions increasingly extend into cyber operations targeting critical infrastructure, recent attacks against internet-exposed PLCs in U.S. critical infrastructure environments have again highlighted a problem the OT industry has discussed for years, but still struggles to eliminate in practice: control systems that remain reachable from outside the operational network.

What the Iberian Blackout Teaches About OT Security

While cybersecurity wasn’t the root cause of this incident, its awareness and measures can greatly affect outcomes when system controls are stressed or disrupted. For operators of critical assets, the relevance lies in the system-level lessons around visibility, coordination, and control integrity.

Physical Layer Isolation in OT: When Security Becomes Architecture

Operational technology (OT) environments were historically designed around reliability and determinism, not cybersecurity. Systems such as SCADA, energy management, and industrial control networks assumed limited connectivity and trusted operators. As these systems increasingly connect to enterprise networks, cloud platforms, and remote monitoring tools, the security model must evolve without compromising operational stability.

Internet-exposed ICS remain a prime cyber target

In October 2025, the Canadian Centre for Cyber Security issued an Alert warning CISO and decision makers of increasing cyber-attacks exploiting internet-accessible industrial control systems (ICS). Reported incidents included tampering with water pressure values, triggering false alarms in an oil & gas facility, and manipulating temperature and humidity levels in a grain drying silo. These individual companies may not be direct targets of adversaries but have become victims of opportunity to gain media attention and undermine public trust.

回到頂端