Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Alerts

CISA Warns of Increased Cyber Threats to OT

September 25, 2024
Reading Time: 2 mins read
in Alerts

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about rising cyber threats against operational technology (OT) and industrial control systems (ICS), particularly in critical sectors such as water and wastewater. These systems are vulnerable to attacks due to exposed devices, with threat actors often exploiting default credentials or using brute force methods to gain unauthorized access. CISA’s advisory underscores the potential for cybercriminals to cause significant harm if these vulnerabilities are not addressed, highlighting the importance of securing OT/ICS environments from growing risks.

Earlier in February, the U.S. government imposed sanctions on six individuals associated with the Iranian intelligence agency for targeting critical infrastructure entities worldwide. The cyberattacks primarily focused on compromising Israeli-made Unitronics Vision Series programmable logic controllers (PLCs), which were exposed to the internet through the use of default passwords. This incident emphasizes the ongoing threat to OT systems and the need for proactive measures to mitigate such risks.

In response to these threats, industrial cybersecurity company Claroty has open-sourced two tools, PCOM2TCP and PCOMClient, to assist in extracting forensic data from Unitronics-integrated human-machine interfaces (HMIs) and PLCs. These tools aim to help organizations identify and respond to vulnerabilities in exposed OT systems, especially those with inadequate security features. By converting serial communication messages and enabling direct querying of PLCs, these tools are valuable resources for organizations looking to secure their OT environments.

Moreover, Claroty has raised concerns about the increasing use of remote access solutions in OT networks, warning that excessive deployment can create security and operational risks. A significant portion of organizations rely on multiple remote access tools to connect their OT systems to external networks, leading to expansive and complex attack surfaces. Experts recommend minimizing the use of low-security remote access tools and ensuring that systems are protected with features like multi-factor authentication (MFA) to enhance overall security.

Reference:

  • Threat Actors Continue to Exploit OT/ICS through Unsophisticated Means

Tags: CISAClarotyCyber AlertsCyber Alerts 2024Cyber threatsIndustrial Control Systems (ICS)operational technology (OT)September 2024
ADVERTISEMENT

Related Posts

UNC6040 Vishing Group Target Salesforce Data

UNC6040 Vishing Group Target Salesforce Data

June 5, 2025
New Chaos RAT Variant Hits Windows and Linux

New Chaos RAT Variant Hits Windows and Linux

June 5, 2025
New Chaos RAT Variant Hits Windows and Linux

FBI Warns Hedera NFT Airdrop Crypto Scam

June 5, 2025
Crocodilus Trojan Steals Crypto Globally

Crocodilus Trojan Steals Crypto Globally

June 4, 2025
Crocodilus Trojan Steals Crypto Globally

Bogus CAPTCHA Lures Install NetSupport RAT

June 4, 2025
Crocodilus Trojan Steals Crypto Globally

Fake RubyGems Steal Telegram Bot Tokens

June 4, 2025

Latest Alerts

FBI Warns Hedera NFT Airdrop Crypto Scam

New Chaos RAT Variant Hits Windows and Linux

UNC6040 Vishing Group Target Salesforce Data

Bogus CAPTCHA Lures Install NetSupport RAT

Crocodilus Trojan Steals Crypto Globally

Fake RubyGems Steal Telegram Bot Tokens

Subscribe to our newsletter

    Latest Incidents

    KiranaPro Startup Hacked All Data Wiped

    Nervos Bridge Paused After $3.9 Million Hack

    Ukraine GUR Claims Tupolev Data Theft Hack

    Malaysia Home Minister WhatsApp Breached

    MainStreet Bank Faces Vendor Data Breach

    BitoPro Loses $11.5M In DeFi Hack Wave

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial