top of page
OT Knowledge Hub
Plain-language guides to OT and ICS security: how industrial systems work, the standards that apply, and the lessons from real-world attacks. Browse by topic below.
TRITON/TRISIS: The First Malware Built to Target Safety Systems
TRITON went after the last line of defence in an industrial plant, the safety instrumented system, and a safe shutdown is what gave it away.
Colonial Pipeline: When IT Ransomware Stopped an OT Operation
Ransomware never touched Colonial Pipeline's control systems, yet the pipeline stopped for days, a lesson in how IT and OT depend on each other.
Water Utilities Under Attack: Exposed PLCs and Default Passwords
A wave of attacks on small water systems showed how internet-exposed controllers and default passwords put basic services within reach of low-effort attackers.
FrostyGoop and PIPEDREAM: The New Generation of ICS Malware
PIPEDREAM and FrostyGoop show where industrial malware is heading, protocol-native, cross-vendor and able to disrupt operations without custom exploits.
Volt Typhoon: Quietly Positioning Inside Critical Infrastructure
Volt Typhoon is not about causing damage today, it is about being in place to disrupt critical services later, and it hides by using the tools already there.
Why Passive-First Assessments Are the Safe Way to Look at OT Networks
Active scanning can upset fragile control devices. Here is why passive-first assessments are the safer way to understand an OT network.
bottom of page