Connect with us

Hi, what are you looking for?

HEADLINES

Targeted attacks on radar for industrial organizations

Of the industrial companies that participated in the IT Security Risks Survey, every fourth has faced a variety of cyberattacks. Worryingly, one of the fastest growing types of threat among the multitude targeting industrial organizations in 2017 was targeted attacks. To make factory floors more secure in 2018, it’s critical to eliminate targeted attacks from cybersecurity blind spots, warns Kaspersky Lab.

Of the industrial companies that participated in the IT Security Risks Survey, every fourth has faced a variety of cyberattacks. Worryingly, one of the fastest growing types of threat among the multitude targeting industrial organizations in 2017 was targeted attacks. To make factory floors more secure in 2018, it’s critical to eliminate targeted attacks from cybersecurity blind spots, warns Kaspersky Lab.

Due to the steady increase in complexity and number of attacks on the industrial market, the consequences of ignoring cybersecurity issues could now be disastrous. 28% of the 962 industrial companies surveyed have faced targeted attacks in the last 12 months. That’s 8 p.p. more than last year, when only 20% of the industrial market experienced targeted attacks.

This confirms the predictions of Kaspersky ICS CERT experts about the emergence of specific malware targeting vulnerabilities in industrial automation components in 2018. The fact that the most dangerous incident type has grown by more than a third strongly suggests that cybercriminal groups are paying much closer attention to the industrial sector.

Forty-eight percent of industrial businesses state that there’s insufficient insight into the threats specifically faced by their business. Faced with a lack of network visibility, 87% of industrial players responded affirmatively when asked if any of the IT/OT security events they experienced over the previous year were complex. This is a strong indicator of the increasingly complex nature of security incidents affecting both IT and OT infrastructures, and it comes as little surprise that industrial organizations spend on average from several days (34%) to several weeks (20%) detecting a security event. These findings indicate that for enterprises with critical infrastructures it has become essential to use dedicated security solutions capable of dealing with a multitude of threats – from commodity malware to attacks designed to exploit vulnerabilities in industrial automation system components.

Advertisement. Scroll to continue reading.

Industrial organizations themselves are fully aware of the need for high-quality protection against cyberthreats. 62% of employees at industrial companies firmly believe it’s necessary to use more sophisticated IT security software. However, software alone is not enough: almost half (49%) of industrial company respondents blame staff for not properly following IT security policies, which is 6% more than respondents in other sectors. Cybersecurity awareness training is a ‘must’ when it comes to cybersecurity in industrial organizations, given that any employee, from the administration side to the factory floor, plays a key role in the safety of an enterprise and maintaining operational continuity.

“Cyberattacks on industrial control systems have become the indisputable number-one concern. The good news is that the majority of industrial market players know which threats are coming to the fore today and will be relevant in the near future. That’s why it’s crucially important to implement a complex security solution that’s specifically designed to protect automated industrial environments, is highly flexible and configured in accordance with the technological processes of each organization,” says Andrey Suvorov, head of critical infrastructure protection business development, Kaspersky Lab.

Kaspersky Lab offers technologies and services that cover the various needs of industrial businesses and are designed to secure every industrial layer, including SCADA servers, HMIs, engineering workstations, PLCs, network connections and people. Kaspersky Industrial CyberSecurity is a holistic solution, covering all stages of the adaptive security model – from forecasting new attack vectors to the use of specialized technologies for prevention, detection and response.

Advertisement. Scroll to continue reading.
Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

Acting on reports about a suspicious message urging customers to click a malicious link to redeem ‘Smart points’, the telco quickly sprang into action...

HEADLINES

Likening the Converge network to a digital fortress, CISO Andrew T.  Malijan said that its battlements were strengthened in 2024 as it blocked a...

HEADLINES

ThinkShield Firmware Assurance is one of the only computer OEM solutions to enable deep visibility and protection below the operating system (OS) by embracing Zero...

HEADLINES

Kaspersky experts have uncovered a series of scams related to the growing demand, ranging from impersonating trusted brands to creating entirely fraudulent storefronts.

HEADLINES

This achievement highlights the increasing demand for Sophos’ proactive, expert-led security solutions, which help organizations of all sizes stay protected 24/7 against increasingly sophisticated...

HEADLINES

Trend's 2025 predictions report warns of the potential for malicious "digital twins," where breached/leaked personal information (PII) is used to train an LLM to...

HEADLINES

The findings show that platform security – securing the hardware and firmware of PCs, laptops and printers – is often overlooked, weakening cybersecurity posture...

HEADLINES

In rigorous evaluations conducted by prestigious cybersecurity testing organizations, Kaspersky Plus (starting in Q4 2024, Kaspersky Premium), Kaspersky Endpoint Security for Business (KESB), and...

Advertisement