top of page
OT Knowledge Hub
Plain-language guides to OT and ICS security: how industrial systems work, the standards that apply, and the lessons from real-world attacks. Browse by topic below.
Stuxnet: The Attack That Proved Code Can Break Machines
How Stuxnet reached an isolated enrichment plant, quietly damaged centrifuges and changed how industry thinks about cyber risk to physical equipment.
Ukraine's Power Grid Attacks (2015 and 2016)
Two winter attacks on Ukraine's grid showed how remote access and purpose-built malware can cut power, and how manual operations brought it back.
TRITON/TRISIS: The First Malware Built to Target Safety Systems
TRITON went after the last line of defence in an industrial plant, the safety instrumented system, and a safe shutdown is what gave it away.
Colonial Pipeline: When IT Ransomware Stopped an OT Operation
Ransomware never touched Colonial Pipeline's control systems, yet the pipeline stopped for days, a lesson in how IT and OT depend on each other.
Water Utilities Under Attack: Exposed PLCs and Default Passwords
A wave of attacks on small water systems showed how internet-exposed controllers and default passwords put basic services within reach of low-effort attackers.
FrostyGoop and PIPEDREAM: The New Generation of ICS Malware
PIPEDREAM and FrostyGoop show where industrial malware is heading, protocol-native, cross-vendor and able to disrupt operations without custom exploits.
Volt Typhoon: Quietly Positioning Inside Critical Infrastructure
Volt Typhoon is not about causing damage today, it is about being in place to disrupt critical services later, and it hides by using the tools already there.
bottom of page