Control Loop: The OT Cybersecurity Podcast cover image

Control Loop: The OT Cybersecurity Podcast

Latest episodes

undefined
Jan 10, 2024 • 40min

A free community initiative to protect small utilities.

Responses to Aliquippa water authority attack. Predatory Sparrow disrupts Iran’s gas stations. MITRE launches a threat model for critical infrastructure embedded devices. Guest Dawn Cappelli,  Head of Dragos's OT-Cyber Emergency Readiness Team shares details about  the launch of Dragos’s free community initiative to protect small utilities that serve majority of Americans. Learn more about the Dragos Community Defense Program that includes Dragos Platform and Neighborhood Keeper. On the Learning Lab, we have the final part of the 3-part discussion on building automation systems that Dragos Mark Urban had with colleagues Daniel Gaeta and Zach Spencer.Control Loop News Brief.Responses to Aliquippa water authority attack.States and Congress wrestle with cybersecurity after Iran attacks small town water utilities (AP)Predatory Sparrow disrupts Iran’s gas stations.A suspected cyberattack paralyzes the majority of gas stations across Iran (AP)Iran petrol stations hit by cyberattack, oil minister says (Reuters)Israel-linked group claims cyberattack that shut down 70% of Iran’s gas stations (The Times of Israel)Energy Department offers $70 million in funding for cybersecurity research.Energy Department has cyber threats to infrastructure in mind with $70 million funding offer (FedScoop)MITRE launches a threat model for critical infrastructure embedded devices.MITRE, Red Balloon Security, and Narf Announce EMB3D – A Threat Model for Critical Infrastructure Embedded Devices (MITRE)US Department of Homeland Security’s Annual Threat Assessment.Homeland Threat Assessment 2024 (DHS)Control Loop Interview.Guest Dawn Cappelli, Dragos's Head of OT-Cyber EmergencyReadiness Team, joins us this episode to discuss the launch of free community initiative to protect small utilities that serve majority of Americans. Learn more about the Dragos Community Defense Program that includes Dragos Platform and Neighborhood Keeper.Control Loop Learning Lab.On the Learning, Mark Urban is back with part 3 of his discussion on building automation systems with Dragos' Daniel Gaeta, ICS/OT Cybersecurity Senior Solutions Architect, and Zach Spencer. Senior Enterprise Account Executive.Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on N2K Networks website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Dec 27, 2023 • 43min

Encore: Active visibility into OT systems.

Rockwell Stratix routers vulnerable to Cisco zero-day. SecurityWeek’s ICS Cyber Security Conference. Malware attacks against IoT devices increase by 400%. Nuclear power plant operator cited over cybersecurity plan. CISA’s ICS advisories. Guest Garrett Bladow, Distinguished Engineer at Dragos, joins us from the CyberCon 2023 event in Bismarck, North Dakota. Garrett discusses active visibility into OT systems. On the Learning Lab, Mark Urban shares the second part of his conversation about cyber threat intelligence with Paul Lukoskie, who is Dragos’ Director of Intelligence Services.Control Loop News Brief.Rockwell Stratix routers vulnerable to Cisco zero-day.PN1653 | Stratix® 5800 & 5200 vulnerable to Cisco IOS XE Web UI Privilege Escalation (Active Exploit) (Rockwell Automation)SecurityWeek’s ICS Cyber Security Conference.2023 ICS Cybersecurity Conference (SecurityWeek)Malware attacks against IoT devices increase by 400%.Zscaler ThreatLabz 2023 Enterprise IoT and OT Threat Report (Zscaler)Nuclear power plant operator cited over cybersecurity plan.UK Cites Nuclear Plant Operator Over Cybersecurity Strategy (Silicon UK)Rockwell and Dragos announce partnership.Dragos and Rockwell Automation Strengthen Industrial Control System Cybersecurity for Manufacturers with Expanded Capabilities (Business Wire)CISA’s ICS advisories.CISA Releases Two Industrial Control Systems Advisories (CISA)Hitachi Energy’s RTU500 Series Product (Update B) (CISA)CISA Releases Nine Industrial Control Systems Advisories (CISA)Control Loop Interview.Guest is Garrett Bladow, Distinguished Engineer at Dragos, discussing active visibility into OT systems. Control Loop Learning Lab.On the Learning Lab, Mark Urban is joined by Dragos’ Director of Intelligence Services, Paul Lukoskie, for part two of their discussion on cyber threat intelligence.Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Dec 13, 2023 • 41min

Utility attacks and electrical sector supply chain vulnerabilities.

Iranian hacktivists hit Pennsylvania water utility. Attacks against water systems are an instance of a larger threat. Supply chain vulnerabilities in the electrical sector. Guest Nick Sanna of the FAIR Institute and Safe Security talks about the challenges the White House faces in attempting to harmonize critical infrastructure regulations. The Learning Lab has part 2 of the 3-part discussion on building automation systems that Dragos Mark Urban had with colleagues Daniel Gaeta and Zach Spencer.Control Loop News Brief.Iranian hacktivists hit Pennsylvania water utility.Municipal Water Authority of Aliquippa hacked by Iranian-backed cyber group (CBS News)Iranian-Linked Cyber Army had Partial Control of Aliquippa Water System (BeaverCountian)A hack in hand is worth two in the bush (Securelist)Cyber phases of hybrid wars spread beyond the theaters of operation.How cybersecurity teams should prepare for geopolitical crisis spillover (CSO)And attacks against water systems are an instance of a larger threat.Iran-Backed Cyber Av3ngers Escalates Campaigns Against U.S. Critical Infrastructure (SentinelOne)Anti-Israel hacking campaign highlights danger of internet-connected devices (CyberScoop)Chinese operators intrude into infrastructure.China’s cyber army is invading critical U.S. services (Washington Post)Supply chain vulnerabilities in the electrical sector.A Software Supply Chain Dependent on Adversaries (Fortress)Control Loop Interview.Guest Nick Sanna of the FAIR Institute and Safe Security  details the challenges the White House faces in attempting to harmonize critical infrastructure regulations.Control Loop Learning Lab.On the Learning, Mark Urban is back with part 2 of 3 of his discussion on building automation systems with Dragos' Daniel Gaeta, ICS/OT Cybersecurity Senior Solutions Architect, and Zach Spencer. Senior Enterprise Account Executive.Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on N2K Networks website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Nov 29, 2023 • 38min

Building automation systems and maritime cyber regulations.

GRU's Sandworm implicated in campaign against Danish electrical power providers. Paris wastewater agency hit by cyberattack. LockBit hits Boeing. Bletchley Declaration represents a consensus starting point for AI governance. The US Executive Order on artificial intelligence is out. Guest Austin Reid of ABS Group discusses Ship and Shore challenges for security and the current and emerging regulatory landscape. On the Learning Lab, Dragos Mark Urban part 1 of 3 discussing building automation systems with Dragos' Daniel Gaeta and Zach Spencer.Control Loop News Brief.GRU's Sandworm implicated in campaign against Danish electrical power providers.The attack against Danish critical infrastructure (SektorCERT)Exclusive: This pizza box-sized equipment could be key to Ukraine keeping the lights on this winter (CNN)Paris wastewater agency hit by cyberattack.Greater Paris wastewater agency dealing with cyberattack (The Record)Cyberattaque D'Ampleur Au SIAAP (SIAAP)Iranian hacktivists claim an attack on a Pennsylvania water utility.Iranian-Linked Cyber Army Had Partial Control Of Aliquippa Water System (BeaverCountian.com)Municipal Water Authority of Aliquippa hacked by Iranian-backed cyber group (CBS News) LockBit hits Boeing.Ransomware groups rack up victims among corporate America (CyberScoop)#StopRansomware: LockBit 3.0 Ransomware Affiliates Exploit CVE 2023-4966 Citrix Bleed Vulnerability (CISA)Bletchley Declaration represents a consensus starting point for AI governance.Can Rishi Sunak’s big summit save us from AI nightmare? (BBC)The Bletchley Declaration by Countries Attending the AI Safety Summit, 1-2 November 2023 (Gov.uk)The US Executive Order on artificial intelligence is out.Administration Actions on AI (AI.gov)Control Loop Interview.Guest is Austin Reid of ABS Group discussing ship and shore challenges for security and the current and emerging regulatory landscape.Control Loop Learning Lab.On the Learning, Mark Urban discusses building automation systems in part 1 of 3 with Dragos' Daniel Gaeta, ICS/OT Cybersecurity Senior Solutions Architect, and Zach Spencer. Senior Enterprise Account Executive.Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Nov 15, 2023 • 37min

Port disruption and a discussion of maritime and OT.

Guest Austin Reid of ABS Group discusses cyber risk and threats to Maritime Transportation Systems. Topics include a cyber incident disrupting Australian ports, the Sandworm attacks on Ukraine's power grid in 2022, the Department of Energy's simulated cyberattack competition, and cyber and electronic threats to space systems. The podcast also explores the launch of Shield's Ready campaign to enhance critical infrastructure security and resilience, and the cybersecurity challenges in the maritime industry.
undefined
Nov 1, 2023 • 43min

Active visibility into OT systems.

Rockwell Stratix routers vulnerable to Cisco zero-day. SecurityWeek’s ICS Cyber Security Conference. Malware attacks against IoT devices increase by 400%. Nuclear power plant operator cited over cybersecurity plan. CISA’s ICS advisories. Guest Garrett Bladow, Distinguished Engineer at Dragos, joins us from the CyberCon 2023 event in Bismarck, North Dakota. Garrett discusses active visibility into OT systems. On the Learning Lab, Mark Urban shares the second part of his conversation about cyber threat intelligence with Paul Lukoskie, who is Dragos’ Director of Intelligence Services.Control Loop News Brief.Rockwell Stratix routers vulnerable to Cisco zero-day.PN1653 | Stratix® 5800 & 5200 vulnerable to Cisco IOS XE Web UI Privilege Escalation (Active Exploit) (Rockwell Automation)SecurityWeek’s ICS Cyber Security Conference.2023 ICS Cybersecurity Conference (SecurityWeek)Malware attacks against IoT devices increase by 400%.Zscaler ThreatLabz 2023 Enterprise IoT and OT Threat Report (Zscaler)Nuclear power plant operator cited over cybersecurity plan.UK Cites Nuclear Plant Operator Over Cybersecurity Strategy (Silicon UK)Rockwell and Dragos announce partnership.Dragos and Rockwell Automation Strengthen Industrial Control System Cybersecurity for Manufacturers with Expanded Capabilities (Business Wire)CISA’s ICS advisories.CISA Releases Two Industrial Control Systems Advisories (CISA)Hitachi Energy’s RTU500 Series Product (Update B) (CISA)CISA Releases Nine Industrial Control Systems Advisories (CISA)Control Loop Interview.Guest is Garrett Bladow, Distinguished Engineer at Dragos, discussing active visibility into OT systems. Control Loop Learning Lab.On the Learning Lab, Mark Urban is joined by Dragos’ Director of Intelligence Services, Paul Lukoskie, for part two of their discussion on cyber threat intelligence.Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Oct 18, 2023 • 53min

A look at a Whole-of-State cybersecurity strategy.

Microsoft on the state of OT security. Israeli and Palestinian hacktivists target ICS. Coinmining as an (alleged, potential) front for espionage or stage for sabotage. EPA withdraws water system cybersecurity memorandum. Colonial Pipeline says new ransomware claims are due to unrelated third-party breach. Most organizations are struggling with IoT security. CISA views China as the top threat to US critical infrastructure. Improving security for open-source ICS software. CISA ICS advisories. Guest Kuldip Mohanty, CIO of North Dakota, joins us from the CyberCon 2023 event in Bismarck, North Dakota. Kuldip shares how critical infrastructure is treated within the "Whole-of-State” cybersecurity strategy his team implements in North Dakota. On the Learning Lab, Mark Urban shares the first part of his conversation about cyber threat intelligence with Paul Lukoskie, who is Dragos’ Director of Intelligence Services.Control Loop News Brief.Microsoft on the state of OT security.Microsoft Digital Defense Report 2023 (Microsoft)Microsoft Digital Defense Report: Behind the Scenes Creating OT Vulnerabilities (aDolus)Zero-days affect industrial routers.10 zero-day vulnerabilities in industrial cell router could lead to code execution, buffer overflows (Cisco Talos)Israeli and Palestinian hacktivists target ICS.Hacktivists in Palestine and Israel after SCADA and other industrial control systems (Cybernews)Coinmining as an (alleged, potential) front for espionage or stage for sabotage.Across U.S., Chinese Bitcoin Mines Draw National Security Scrutiny (The New York Times)EPA withdraws water system cybersecurity memorandum.EPA withdraws cyber audit requirement for water systems (Nextgov)Colonial Pipeline says new ransomware claims are due to unrelated third-party breach.Reports of second cyberattack on Colonial Pipeline false, company says (Fox 5 Atlanta)Colonial Pipeline attributes ransomware claims to ‘unrelated’ third-party data breach (The Record)Most organizations are struggling with IoT security.New Global Survey Reveals 97% of Organizations Face Challenges Securing IoT and Connected Devices (Keyfactor)Ransomware attack on Clorox.Clorox Security Breach Linked to Group Behind Casino Hacks (Bloomberg)Clorox Warns of a Sales Mess After Cyberattack (The Wall Street Journal)CISA views China as the top threat to US critical infrastructure.China is top cyber threat to US utilities, other critical infrastructure: CISA (Utility Dive)Improving security for open-source ICS software.Improving Security of Open Source Software in Operational Technology and Industrial Control Systems (CISA)CISA’s ICS advisories.Mitsubishi Electric MELSEC-Q Series PLCs (Update A) (CISA)CISA Releases Nineteen Industrial Control Systems Advisories (CISA)Control Loop Interview.Guest is Kuldip Mohanty, CIO of North Dakota, discussing how critical infrastructure is treated within the “whole of state” security strategy used in North Dakota.Control Loop Learning Lab.On the Learning Lab, Mark Urban is joined by Dragos’ Director of Intelligence Services, Paul Lukoskie, to examine cyber threat intelligence. Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Oct 4, 2023 • 42min

When IT infrastructure translates into OT.

Johnson Controls sustains cyberattack. Nearly 100,000 ICS services exposed to the Internet. FBI anticipates an increase in Chinese and Russian targeting of the energy sector. Joint advisory warns of Beijing’s “BlackTech” threat activity. CISA's push for hardware bills of materials. Cybersecurity in the US industrial base. Guest Michael Toecker, Cyber Security Advisor at the United States Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response, continues his discussion of community defense and Neighborhood Keeper. On the Learning Lab, Mark Urban is joined by Alex Baretta, a senior solution architect at Dragos, for part two of their discussion about secure remote access.Control Loop News Brief.Homeland Security IG finds flaws in TSA pipeline security regulations.https://www.oig.dhs.gov/sites/default/files/assets/2023-09/OIG-23-57-Sep23-Redacted.pdf https://www.cisa.gov/news-events/news/attack-colonial-pipeline-what-weve-learned-what-weve-done-over-past-two-years Johnson Controls sustains cyberattack.Building automation giant Johnson Controls hit by ransomware attack (BleepingComputer)Nearly 100,000 ICS services exposed to the Internet.Bitsight identifies nearly 100,000 exposed industrial control systems (BitSight)FBI anticipates an increase in Chinese and Russian targeting of the energy sector.FBI warns energy sector of likely increase in targeting by Chinese, Russian hackers (The Record)Joint advisory warns of Beijing’s “BlackTech” threat activity.CISA, NSA, FBI and Japan Release Advisory Warning of BlackTech, PRC-Linked Cyber Activity (CISA)CISA's push for hardware bills of materials. Hardware Bill of Materials (HBOM) Framework for Supply Chain Risk Management (CISA)CISA task force aims to improve supply chain security with new hardware standards (Nextgov)Cybersecurity in the US industrial base.Aprio Releases U.S. National Manufacturing Survey, Highlighting the Need for Improved Operational Excellence, Digitization and Cybersecurity Practices (Aprio)Control Loop Interview.Guest is Michael Toecker, Cyber Security Advisor at the United States Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response, continues his discussion of community defense and Neighborhood Keeper.Control Loop Learning Lab.On the Learning Lab, Mark Urban concludes his conversation about secure remote access with Alex Baretta, senior solution architect at Dragos. Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Sep 20, 2023 • 36min

Don't take energy for granted.

Redfly cyberespionage targets a national grid. DHS Threat Assessment looks at critical infrastructure threats. A look at the ICS threat landscape. DoE grants for research into distributed energy cybersecurity. CISA offers free vulnerability scanning for water infrastructure. CISA issues ICS advisories. Guest Michael Toecker, Cyber Security Advisor at the United States Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response, discusses community defense. On the Learning Lab, Mark Urban is joined by Alex Baretta, a senior solution architect at Dragos, for part one of their discussion about secure remote access.Control Loop News Brief.Redfly cyberespionage targets a national grid.Redfly: Espionage Actors Continue to Target Critical Infrastructure (Symantec)China caught – again – with its malware in another nation's power grid (The Register)China-Linked Hackers Breached a Power Grid—Again (WIRED)DHS Threat Assessment looks at critical infrastructure threats.DHS warns of malicious AI use against critical infrastructure (CyberScoop)A look at the ICS threat landscape.Threat landscape for industrial automation systems. Statistics for H1 2023 (Kaspersky)DoE grants for research into distributed energy cybersecurity.Distributed Energy Resources Get Cybersecurity Boost With $39M DOE Funding (SecurityWeek)DOE Announces $39 Million in Research Funding to Enhance Cybersecurity of Clean Distributed Energy Resources (Department of Energy)Ransomware remains a threat to industrial operations.Massive MGM and Caesars Hacks Epitomize a Vicious Ransomware Cycle (WIRED)US-Canada water org confirms 'cybersecurity incident' after ransomware crew threatens leak (Register)CISA offers free vulnerability scanning for water infrastructure.Free Cyber Vulnerability Scanning for Water Utilities (CISA)Control Loop Interview.Guest is Michael Toecker, Cyber Security Advisor at the United States Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response, discussing community defense.Control Loop Learning Lab.On the Learning Lab, Mark Urban discusses secure remote access with Alex Baretta, senior solution architect at Dragos. Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices
undefined
Sep 6, 2023 • 38min

Intelligence services within the convergence of OT and IT.

Crude "cyberattack" on rail control systems stops Polish trains. Energy One discloses cyberattack against its corporate systems. NIAC calls for a National Water Strategy. Department of Energy holds contest to provide cybersecurity funding for rural utilities. Researchers aim to secure US military’s power grids. A technical issue grounds the UK’s air traffic control system’s automated features. Guest Mark Ryland, Director of the Office of the CISO at Amazon Web Services, joining us as part of a Dragos webinar, Securing Digital Transformation: OT Cybersecurity Innovation and Resilience. On the Learning Lab, Mark Urban is joined by Dragos Vice President of Product Management Kimberly Graham in part three of their discussion on the convergence of OT and IT. Control Loop News Brief.Crude "cyberattack" on rail control systems stops Polish trains.Two Men Arrested Following Poland Railway Hacking (SecurityWeek)Century-old technology hack brought 20 trains to a halt in Poland (Cybernews)Poland investigates hacking attack on state railway network (Reuters)Poland investigates train mishaps for possible Russian connection (Washington Post)Energy One discloses cyberattack against its corporate systems.Australian Energy Software Firm Energy One Hit by Cyberattack (SecurityWeek)US energy company suffers third-party data breach.Eversource Data Breach: Utility Warns MA Customers (Patch)NIAC calls for a National Water Strategy.Presidential Council Calls for Water Department to Address Cyber Threats (MeriTalk)Department of Energy holds contest to provide cybersecurity funding for rural utilities.DOE launches cyber contest to benefit rural utilities (CyberScoop)Researchers aim to secure US military’s power grids.Protecting the protectors: Virginia Tech researchers work to secure power grid communication on military bases. (Newswise)A technical issue grounds the UK’s air traffic control system’s automated features.Cancelled flights: Air traffic disruption caused by flight data issue (BBC)Flight chaos ‘to last for days’ after air traffic control failure (The Telegram)Control Loop Interview.Our guest is Mark Ryland, Director of the Office of the CISO at Amazon Web Services, joining us as part of a Dragos webinar, Securing Digital Transformation: OT Cybersecurity Innovation and Resilience. You can view the entire webinar here. Control Loop Learning Lab.On the Learning Lab, Mark Urban is joined by Dragos Vice President of Product Management Kimberly Graham in part three of their discussion on the convergence of OT and IT. Control Loop OT Cybersecurity Briefing.A companion monthly newsletter is available through free subscription and on the CyberWire's website. Learn more about your ad choices. Visit megaphone.fm/adchoices

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner