OT Cybersecurity
Vendor Access Emerges as a Primary Weak Link in OT Security
As vendor ecosystems expand, industrial firms are still struggling with the basics of secure remote access, oversight and credential control.
DON’T WAIT: Engineering Outcomes Between Red Lines and Rules of Engagement
Danielle (DJ) Jablanski argues that critical-infrastructure owners must stop waiting for perfect regulation or deterrence and instead start today to map interdependencies, engineer fault-tolerant redundancy, and reduce the severity of inevitable cyber-physical impacts.
Safe Use of AI in OT Environments: Gaining the Benefits without the Risk
Christopher Walcutt argues that AI can be used safely in OT environments if organizations first establish strong cybersecurity maturity, segmentation, visibility, and strict containment controls.
Cyber-Informed Engineering
Cyber-informed engineering keeps OT systems safe by adding simple physical controls that prevent catastrophic failures even if digital systems are breached.
Keeping your Milk Cool and your Tech Safe
Security engineer and architect Brad Voris recounts designing zero-trust controls for legacy dairy-plant systems to protect millions of gallons of milk from tampering or contamination.
Critical Infrastructure Wars: A New Hope - Accenture's Dragos Deal Is The Shot Heard 'Round The Internet
Also this week: Introducing the CYBR.Minded podcast, why Zero Trust Framework's creator wants cybersecurity to stop talking about risk, a GPS correction tool gives Iran-linked hackers access to a major water utility, a guide to conference swag people actually want, and more!
Accenture's Dragos Deal Signals a New Phase in the Race to Secure Critical Infrastructure
Accenture's acquisition of a majority stake in Dragos and full ownership of runZero and NetRise reflects growing urgency across the cybersecurity industry to defend critical infrastructure against nation-state threats, particularly those attributed to China.
Industrial Ransomware Held Steady in Q1 2026, That's the Problem
The normalization of ransomware in industrial systems, along with an operating culture that treats downtime as unacceptable, is an uncomfortable tension that's not likely to go away soon.
Pilot Program to Boost Water Utility Cybersecurity Falls Short
The tens of thousands of at-risk water utilities across this country are still out there — now slightly more aware of how exposed they are, which isn’t exactly progress.
AI-Generated Code Is Already Running Critical Infrastructure: Can AppSec Keep Up?
Traditional security tools were designed when code changes were measured in hundreds of lines per sprint and development cycles lasted weeks. Today, AI accelerates code production to thousands of lines daily with fundamentally different patterns than human-written code.