THE UK's National Cyber Security Centre (NCSC) warns of increasing cyberattacks on industrial systems, specifically targeting Operational Technology (OT), such as Programmable Logic Controllers (PLCs) and Human-Machine Interfaces (HMIs). These attacks can lead to physical disruptions due to vulnerabilities, primarily caused by improper internet exposure of these systems.
NCSC emphasizes that organizations must ensure their industrial networks are securely isolated and audit all components for external accessibility. Recommended security measures include disabling outdated protocols, implementing individual accounts with multi-factor authentication, and ensuring PLCs are not left in programming modes to prevent unauthorized changes. Furthermore, robust network segmentation and continuous monitoring of OT devices are advised.
The NCSC also highlights a broadening threat landscape, indicating that both state and non-state actors are involved in these attacks, impacting a wide array of organizations beyond traditional critical infrastructures.