UK NCSC Warns Internet-Exposed OT Attacks Are Rising, Citing 82% of 200 CPS Cases
Updated
Updated · BankInfoSecurity.com · Aug 31
UK NCSC Warns Internet-Exposed OT Attacks Are Rising, Citing 82% of 200 CPS Cases
3 articles · Updated · BankInfoSecurity.com · Aug 31
Summary
Britain's NCSC said attacks on internet-facing operational technology are increasing across multiple sectors globally and urged operators to verify which control devices are directly reachable online.
The agency warned disruptions have so far been limited, but geopolitical instability and improving tools for state and non-state actors are likely to deepen OT threats.
PLCs, HMIs and other edge devices are attractive entry points because they often run outdated firmware, use default credentials and sit behind forgotten vendor links or misconfigured firewalls rather than true air gaps.
Claroty said 88% of cyber-physical systems it studied failed to transmit an exact product code, while Team82's review of 200 attacks found 82% involved VNC clients and 66% compromised HMIs or SCADA systems.
NCSC's guidance—its third warning in five months—calls for stronger authentication, network segmentation, secure remote access, detailed logging and recovery plans, echoing recent CISA alerts after attacks on more than 100 U.S. water systems.