Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Honda Malaysia Targets 60,000 Sales in 2026 with Expanded e:HEV Lineup

    Older Windows 11 PCs need a Secure Boot fix ASAP

    Why Ring’s Super Bowl ad hits so sinister

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026

      To avoid accusations of AI cheating, college students are turning to AI

      January 29, 2026

      ChatGPT can embrace authoritarian ideas after just one prompt, researchers say

      January 24, 2026
    • Business

      New VoidLink malware framework targets Linux cloud servers

      January 14, 2026

      Nvidia Rubin’s rack-scale encryption signals a turning point for enterprise AI security

      January 13, 2026

      How KPMG is redefining the future of SAP consulting on a global scale

      January 10, 2026

      Top 10 cloud computing stories of 2025

      December 22, 2025

      Saudia Arabia’s STC commits to five-year network upgrade programme with Ericsson

      December 18, 2025
    • Crypto

      HBAR Shorts Face $5 Million Risk if Price Breaks Key Level

      February 10, 2026

      Ethereum Holds $2,000 Support — Accumulation Keeps Recovery Hopes Alive

      February 10, 2026

      Miami Mansion Listed for 700 BTC as California Billionaire Tax Sparks Relocations

      February 10, 2026

      Solana Drops to 2-Year Lows — History Suggests a Bounce Toward $100 is Incoming

      February 10, 2026

      Bitget Cuts Stock Perps Fees to Zero for Makers Ahead of Earnings Season, Expanding Access Across Markets

      February 10, 2026
    • Technology

      Older Windows 11 PCs need a Secure Boot fix ASAP

      February 11, 2026

      Why Ring’s Super Bowl ad hits so sinister

      February 11, 2026

      This dual-CPU PC from 1995 was so cool, Microsoft had to kill it

      February 11, 2026

      1,300 games for $10: ‘No ICE in Minnesota’ bundle launched

      February 11, 2026

      Gemini gave my Plex server a checkup. Its diagnosis surprised me

      February 11, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»US tells CNI orgs to stop connecting OT kit to the web
    Technology

    US tells CNI orgs to stop connecting OT kit to the web

    TechAiVerseBy TechAiVerseMay 9, 2025No Comments4 Mins Read1 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    US tells CNI orgs to stop connecting OT kit to the web
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    US tells CNI orgs to stop connecting OT kit to the web

    alexandrink1966 – stock.adobe.co

    The US authorities have released new guidance for owners of critical national infrastructure in the face of an undisclosed number of cyber incidents.

    By

    • Alex Scroxton,
      Security Editor

    Published: 08 May 2025 18:33

    A growing number of ongoing cyber incidents affecting American operators of critical national infrastructure has prompted a new cross-agency warning from the US authorities, with the Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Environmental Protection Agency (EPA), and Department of Energy (DOE), all weighing in.

    In a jointly-penned advisory, the organisations said that they were “aware of cyber incidents” affecting the operational technology (OT) and industrial control systems (ICS) of CNI operators.

    “The authoring organisations urge critical infrastructure entities to review and act now to improve their cyber security posture against cyber threat activities specifically and intentionally targeting internet connected OT and ICS,” said the advisory’s authors.

    OT systems are incredibly easy targets for state-backed and financially-motivated threat actors alike when connected to the internet because they often lack up-to-date authentication and authorisation methods and can be found quickly by running searches for open ports on public IP ranges.

    “Cyber threat actors use simple, repeatable, and scalable toolsets available to anyone with an internet browser,” said CISA.

    “Critical infrastructure entities should identify their public-facing assets and remove unintentional exposure.”

    Sean Tufts, managing partner for critical infrastructure and operational technology at Optiv, a security consultancy, said: “The industry has been working diligently on auditing N/S [North/South] traffic on the firewalls. We’ve seen great improvement in finding these connections and cutting them.

    “What is currently left are mission-critical applications like SAP. This is especially true in manufacturing, where workflow management has digitally transformed faster than security could keep up. Ensuring these connections are correctly configured and architected is a task measured in years, not days,” he added.

    Detailed advice

    The full advisory – which can be downloaded here – contains additional guidelines on security OT and ICS estates. These include:

    • Changing default passwords where possible and using strong, unique passwords – current trends seem to suggest that targeted systems all use default or easily-guessable passwords. This is particularly important to do on public-facing internet devices that can control OT systems or processes;
    • Securing remote access to OT networks – many CNI bodies or their contractors seem to have been making risky tradeoffs when implementing remote access, and it is now time to reevaluate those. If remote access is a must, private IP network connections and VPNs should be used, as well as phishing resistant multifactor authentication (MFA). CNI operators may also like to consider reassessing who truly needs access to what, and to clear out dormant or unused accounts.
    • Segmenting the IT and OT networks – to keep critical systems apart with a so-called ‘demilitarised zone’ to pass control data to enterprise logistics. This cuts down the potential impact of incidents and reduces the risk of disruption to OT operations should a hacker try to come in via the IT estate.
    • Practicing and maintaining the ability to operate OT systems manually – so that operations can be stood up again quickly if there is an incident.
    • Keeping channels of communication open to their managed service providers, system integrators, and system manufacturers – they may be able to help provide system-specific guidance for more obscure assets or help address misconfigurations.

    Your systems are defenceless

    “Critical infrastructure systems are being targeted not because the attackers are sophisticated, but because the systems are defenceless,” said Nic Adams, co-founder and CEO at 0rcus, a threat intelligence specialist.

    “The threat is pure operational negligence. If your control layer can be accessed without physical proximity, isolated network design, and verified authentication, it is functionally compromised. Breaches now announce themselves with subtle logic changes, unauthorised sessions, or misconfigurations missed during commissioning. Look past malware. Treat every control asset as a live-fire target. If you haven’t tested under adversarial pressure, it won’t even come close to holding.”

    Adams warned that CNI organisations that aren’t prepared to make the recommended changes risked “becoming the next headliner and laughing stock”.

    Read more on Regulatory compliance and standard requirements


    • Revealed: How Russia’s Sandworm ramped up attacks on Ukraine’s critical infrastructure

      By: Alex Scroxton


    • CISA, NSA Provide OT, ICS Defense Strategies to Critical Infrastructure

      By: Jill McKeon


    • CNI leaders’ attitude to ransomware lackadaisical at best

      By: Alex Scroxton


    • Operational Technology (OT) Security Risks, Best Practices in Healthcare

      By: Jill McKeon

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleUK Digital Services Tax survives US trade negotiations
    Next Article Preparing for post quantum computing will be more difficult than the millenium bug
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Older Windows 11 PCs need a Secure Boot fix ASAP

    February 11, 2026

    Why Ring’s Super Bowl ad hits so sinister

    February 11, 2026

    This dual-CPU PC from 1995 was so cool, Microsoft had to kill it

    February 11, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025667 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025251 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025151 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025111 Views
    Don't Miss
    Gadgets February 11, 2026

    Honda Malaysia Targets 60,000 Sales in 2026 with Expanded e:HEV Lineup

    Honda Malaysia Targets 60,000 Sales in 2026 with Expanded e:HEV Lineup Honda Malaysia is accelerating…

    Older Windows 11 PCs need a Secure Boot fix ASAP

    Why Ring’s Super Bowl ad hits so sinister

    This dual-CPU PC from 1995 was so cool, Microsoft had to kill it

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Honda Malaysia Targets 60,000 Sales in 2026 with Expanded e:HEV Lineup

    February 11, 20263 Views

    Older Windows 11 PCs need a Secure Boot fix ASAP

    February 11, 20262 Views

    Why Ring’s Super Bowl ad hits so sinister

    February 11, 20263 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    This new Roomba finally solves the big problem I have with robot vacuums

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.