Energy Sector’s Reliance on IoT Increases Cyber Vulnerabilities

Robinson+Cole Data Privacy + Security Insider
Contact

CyberX recently released its 2020 Global IoT/ICS Risk Report (Report), which compiles survey questions and answers from 1,821 production networks of electric utilities, and oil and gas companies. Although the Report admitted that oil and gas companies and electric utilities tend to be ahead of the curve on cybersecurity compared to other sectors, they are becoming more vulnerable because they are more reliant on Internet of Things (IoT) and industrial control systems.

According to the Report, utility networks and unmanaged devices are “soft targets for adversaries” and utilities are vulnerable because they are using outdated operating systems and unencrypted passwords. Its survey found that more than 70 percent of the sites monitored have outdated operating systems, and 64 percent use unencrypted passwords.

The authors note that “[o]lder and unpatched Windows systems are particularly vulnerable to successfully compromise them—they simply need to exploit known vulnerabilities that are publicly-documented in open source databases….We know there are older versions of Windows running in many utilities.”

In addition, as they deploy more IoT devices that are connected to their networks, this is increasing vulnerabilities because “as these smart devices get deployed, they increase the attack surface.”

[View source.]

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Robinson+Cole Data Privacy + Security Insider | Attorney Advertising

Written by:

Robinson+Cole Data Privacy + Security Insider
Contact
more
less

PUBLISH YOUR CONTENT ON JD SUPRA NOW

  • Increased visibility
  • Actionable analytics
  • Ongoing guidance

Robinson+Cole Data Privacy + Security Insider on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide