Intelligent CISO Issue 29 | Page 22

infographic ICS VULNERABILITIES RISE AS RELIANCE ON REMOTE ACCESS TO INDUSTRIAL NETWORKS INCREASES DURING COVID-19 More than 70% of industrial control system (ICS) vulnerabilities disclosed in the first half of 2020 can be exploited remotely, highlighting the importance of protecting Internet-facing ICS devices and remote access connections. This is according to the inaugural Biannual ICS Risk & Vulnerability Report, by Claroty, a global leader in Operational Technology (OT) security. The report comprises the Claroty research team’s assessment of 365 ICS vulnerabilities published by the National Vulnerability Database (NVD) and 139 ICS advisories issued by the Industrial Control Systems Cyber Emergency Response Team (ICS- CERT) during 1H 2020, affecting 53 vendors. The research team discovered 26 of the vulnerabilities included in this data set. Compared to 1H 2019, ICS vulnerabilities published by the NVD increased by 10.3% from 331, We recognised the critical need to understand, evaluate and report on the comprehensive ICS risk and vulnerability landscape. while ICS-CERT advisories increased by 32.4% from 105. More than 75% of vulnerabilities were assigned high or critical Common Vulnerability Scoring System (CVSS) scores. “There is a heightened awareness of the risks posed by ICS vulnerabilities and a sharpened focus among researchers and vendors to identify and remediate these vulnerabilities as effectively and efficiently as possible,” 22 Issue 29 | www.intelligentciso.com