Control Loop: The OT Cybersecurity Podcast 10.4.23
Ep 35 | 10.4.23

When IT infrastructure translates into OT.

Show Notes

Johnson Controls sustains cyberattack. Nearly 100,000 ICS services exposed to the Internet. FBI anticipates an increase in Chinese and Russian targeting of the energy sector. Joint advisory warns of Beijing’s “BlackTech” threat activity. CISA's push for hardware bills of materials. Cybersecurity in the US industrial base. Guest Michael Toecker, Cyber Security Advisor at the United States Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response, continues his discussion of community defense and Neighborhood Keeper. On the Learning Lab, Mark Urban is joined by Alex Baretta, a senior solution architect at Dragos, for part two of their discussion about secure remote access.


Control Loop News Brief.

Homeland Security IG finds flaws in TSA pipeline security regulations.

https://www.oig.dhs.gov/sites/default/files/assets/2023-09/OIG-23-57-Sep23-Redacted.pdf 

https://www.cisa.gov/news-events/news/attack-colonial-pipeline-what-weve-learned-what-weve-done-over-past-two-years 

Johnson Controls sustains cyberattack.

Building automation giant Johnson Controls hit by ransomware attack (BleepingComputer)

Nearly 100,000 ICS services exposed to the Internet.

Bitsight identifies nearly 100,000 exposed industrial control systems (BitSight)

FBI anticipates an increase in Chinese and Russian targeting of the energy sector.

FBI warns energy sector of likely increase in targeting by Chinese, Russian hackers (The Record)

Joint advisory warns of Beijing’s “BlackTech” threat activity.

CISA, NSA, FBI and Japan Release Advisory Warning of BlackTech, PRC-Linked Cyber Activity (CISA)

CISA's push for hardware bills of materials. 

Hardware Bill of Materials (HBOM) Framework for Supply Chain Risk Management (CISA)

CISA task force aims to improve supply chain security with new hardware standards (Nextgov)

Cybersecurity in the US industrial base.

Aprio Releases U.S. National Manufacturing Survey, Highlighting the Need for Improved Operational Excellence, Digitization and Cybersecurity Practices (Aprio)


Control Loop Interview.

Guest is Michael Toecker, Cyber Security Advisor at the United States Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response, continues his discussion of community defense and Neighborhood Keeper.


Control Loop Learning Lab.

On the Learning Lab, Mark Urban concludes his conversation about secure remote access with Alex Baretta, senior solution architect at Dragos. 


Control Loop OT Cybersecurity Briefing.

A companion monthly newsletter is available through free subscription and on the CyberWire's website.