DCS; Industrial control system
NameDescriptionContent
NEW CENTER
Current Location:

Cybersecurity and Digitalization: A Cautionary Tale

From:automation | Author:H | Time :2024-11-28 | 176 Browse: | Share:
Cybersecurity and Digitalization: A Cautionary Tale
Cybersecurity and Digitalization: A Cautionary Tale

Digital transformation across the industrial sector has been a work in progress for years, but the push to increase connectivity from the executive suite to HR and accounting to the manufacturing floor is becoming even more acute.

It only makes sense, as digital technologies can drive improved quality control, boost efficiency gains, reduce costs, enable better environmental controls, and create a stronger, more quality product. Not only is digitalization changing the stigma of manufacturing being a musty old environment, but it is also turning the sector into a glistening new workplace employing state-of-the-art technology that allows organizations to take on any competitor across the globe.

As these benefits allow for improved efficiency, faster decision-making, increased equipment uptime, improved supply chain management, reduced errors, faster turnaround times, and decreased costs, the key ingredient to this digital recipe is cybersecurity.

“Digitalization is rapidly expanding, making cybersecurity an essential backbone for sustaining digital enterprises,” said Dewan Chowdhury, chief executive and founder of cybersecurity provider, malcrawler. “The recent Microsoft-CrowdStrike incident highlighted the potential risks of an unsecured digital environment.”

The scenario leading to the Microsoft-CrowdStrike incident had the CrowdStrike Falcon sensor delivering artificial intelligence (AI) and machine learning to protect systems by identifying and remediating advanced threats. In February 2024, CrowdStrike introduced a new sensor capability. On 19 July 2024, a Rapid Response Content update went out to certain Microsoft Windows hosts with the new capability first released in February, CrowdStrike officials said. The sensor expected 20 input fields, while the update provided 21 input fields. In this instance, the mismatch resulted in an out-of-bounds memory read, causing a system crash that affected 8.5 million computers globally and cost companies $5.4 billion.

“While this particular issue resulted from an internal error, it raises concerns about the consequences if an attacker deliberately seeks to cause harm,” Chowdhury said. “This situation demonstrates the critical need for integrating people, processes and technology to enhance cybersecurity in the digital age.”
 

Multiple threats

With increased connectivity in the digital environment, there are more opportunities for threat actors to hit manufacturers with multiple types of attacks including terrorists, hacktivism, supply chain disruption and ransomware.

To that end, one ransomware attack on a German bicycle maker halted production, invoicing and deliveries for three weeks. According to a report in the ICSSTRIVE.com incident repository, disrupted supply chains meant required parts did not arrive so workers could not assemble and deliver the bicycles. As a result of the attack, the company filed for bankruptcy.

While there are plenty of reasons why a company might go out of business, many factors can come into play. Some of these include having a digital environment moving forward with a lack of qualified cybersecurity professionals; problems with elements like artificial intelligence (AI), machine learning, training, education, planning, or even cloud computing could be a cause.

“The age of digitalization, including machine learning and AI is here,” said Mark Carrigan, senior vice president of process safety and OT cybersecurity at Hexagon. “The current and potential benefits these technologies can provide are compelling and will transform how we conduct business.”

With digitalization here to stay, security experts across the board can’t stress enough that having the right people, processes and technologies in place is vital. “Combining skilled personnel, effective processes, and advanced technology is crucial for bolstering cybersecurity,” Chowdhury said. “The shortage of qualified cybersecurity professionals poses a significant challenge. In response, organizations must rely more on artificial intelligence to automate threat detection and response. AI can analyze vast amounts of data quickly, identifying potential threats and mitigating risks, thus compensating for the lack of human resources.”

New cyber education programs are earning funding from multiple sources to help bolster workforce competency.
 


Creating cyber-skilled workers

The skills gap is a huge issue with an average of 3.4 million industrial cybersecurity open positions globally with more than 410,695 of those jobs in the U.S. alone, according to a report from (ICS)2, an international nonprofit membership association focused on inspiring a safe and secure cyber world.

Cyber education is one aspect continuing to grow to help fill that gap. (See “Adding ‘Industrial’ to Cybersecurity Education elsewhere in this issue.) Indeed, new programs are earning funding from multiple agencies to help bolster the workforce.

Arizona State University’s School of Computing and Augmented Intelligence, part of the Ira A. Fulton Schools of Engineering just earned a two-year, $4.5 million grant from the U.S. Defense Advanced Research Projects Agency (DARPA) to establish an institute that will develop national and global cybersecurity educational standards and curriculums designed to address critical workforce shortages.

  • ALSTOM COP232.2 VME A32/D32, 029.232 446 controller unit
  • GE 151X1235DB15SA01 Gas turbine controller
  • Abaco VP869 FPGA Card
  • Abaco VP868 FPGA Card
  • Abaco VP780 FPGA Card
  • Abaco VP680 FPGA Card
  • PC821 PCIe FPGA Card
  • Abaco PC820 FPGA Card
  • Abaco PC720 FPGA Card
  • Abaco FlexVPX Backplane
  • Abaco VP880 / VP881
  • Abaco VP889 FPGA Board
  • Abaco VP430 RFSoC Board
  • Abaco VP460 Direct RF Processing System
  • Abaco VP431 RFSoC Board
  • Abaco VP461 6U VPX Xilinx UltraScale
  • Abaco VP891 3U VPX FPGA Processing Card
  • Abaco TM-683 2 PMC rear panel I/O transition module for 6U CPCI
  • Abaco CPCI-100A-FP 2-slot IndustryPack carrier for 3U CPCI systems
  • Abaco BIO-4 Rear transition card for the CPCI-200A IP carrier
  • Abaco VME-4116 VME Analog I/O Output Boards
  • Abaco VME-4140 VME Analog I/O Output Boards
  • Abaco VME-3122B VME Analog I/O Input Boards
  • Abaco VME-3113B Scanning 12-bit Analog-to-Digital Converter with Built-in-Test
  • Abaco Vme-4132 VME Analog I/O Output board
  • N-Tron® NT24K-14FXE6-SC-80 Managed 14-Port Gigabit Industrial Ethernet Switch
  • N-Tron® 7012FXE2-SC-40 Managed 12-port Industrial Ethernet Switch
  • N-Tron® NT24K-11GX3-SC-PT Managed 11-Port Gigabit Industrial Ethernet Switch
  • N-Tron® NT24K-14FXE6-SC-15 Managed 14-Port Gigabit Industrial Ethernet Switch
  • N-Tron® 7018FXE2-SC-15 Managed 18-port Industrial Ethernet Switch
  • N-Tron® NT24k 24-Port Rackmount Gigabit Managed Industrial Ethernet Switch
  • N-Tron® NT24k 24-Port, Dual Redundant VDC Power Input, Rackmount Gigabit Managed Industrial Ethernet Switc
  • N-Tron® NT24K-10FX2-SC Managed 10-Port Industrial Ethernet
  • N-Tron® NT24K-12SFP-DM4 Managed 12-Port Gigabit Industrial Ethernet Switch
  • N-Tron® NT24k 16-Port, Single Redundant VDC Power Input
  • N-tron SLX-6ES-5SC Unmanaged 6-port industrial Ethernet switch
  • NT24k® 10FX2-POE Managed PoE+ Gigabit Ethernet Switch
  • N-Tron® 105FXE-SC-15-POE-MDR Unmanaged 5-port PoE Switch
  • Sixnet® SL-8ES-1 Unmanaged 8-port Industrial Ethernet Switch
  • N-Tron® 106FX2-SC-MDR Unmanaged 6-port Industrial Ethernet Switch
  • Sixnet® SLX-9ES-3SC Unmanaged 9-port Industrial Ethernet Switch
  • N -Tron® 710FXE2-ST-80 Managed 10-port Industrial Ethernet Switch
  • N -Tron® 712FXE4-SC-15-HV Managed 12-port Industrial Ethernet Switch
  • N -Tron® 712FXE4-ST-15-HV Managed 12-port Industrial Ethernet Switch
  • N -Tron® 709FXE-SC-40 Managed 9-port Industrial Ethernet Switch
  • ABB IEMMU21 Module Mounting Unit
  • ABB CMA120 3DDE300400 Basic Controller Panel Unit
  • Bently Nevada 2300/20-RU 2300/20-CN Monitoring controller
  • A-B 4100-234-R IMC™ S Class Compact Motion Controllers
  • B&R Power Panel 300/400
  • ADLINK cPCI-3840 Processor module
  • ACQUISITIONLOGICAL81G -2
  • HIMA K1412B PLC Module
  • IS200VTCCH1CBD GE Speedtronic Turbine Control PCB board
  • TRICONEX 4200 Digital Output Module
  • DEIF SCM-1 PCB CARD Module
  • HIMA F3DIO20802 controller plc F3DIO20802
  • HIMA B5233 PLC Module
  • HIMA B5322 PLC Module
  • HIMA F7105A PLC Module
  • HIMA F7150 PLC Module
  • HIMA Z7308 PLC Module
  • HIMA F60 PS01
  • TRICONEX 4409 PLC Module
  • F8651X HIMA Central module F8651X
  • HIMA-6E-B HIMA-6E-B Large System Controller
  • HIMA P8403 PLC Module
  • F8621A HIMA communication module
  • IS200VRTDH1D GE Mark VI Printed Circuit Board
  • ABB NIACO2 PLC Module
  • ABB NIAMO1 PLC Module
  • HIMA F8652 98465266 PLC Module
  • F8652X HIMA Central module
  • HIMA 62100
  • HIMA 99-7105233 B5233-1 NSMP
  • ABBSPAD 346 C3-AA
  • ABBREF543KM127BABB
  • ABB 0-63007 M003742626
  • Abb FET3251A0P1B3C0H2M
  • ABB 3HAB8800-1
  • ABB 3AUA266001B166
  • ABB3HNM07686-1
  • ABB PQF4-3 TAS
  • Honeywell 30735863-502 - SWITCH
  • Honeywell TK-CCR014 - REDUNDANT NET INTERFACE NEW ORIGINAL FREE EXPEDITED SHIPPING/
  • Honeywell 51403165-400 - new 51403165400/
  • Honeywell318-049-001 quot100 Batteries(Japan Liion2Ah14.8Wh)INTERMEC/ PR2,PR3 P/N
  • Honeywell FC-PSU-UNI2450U - Power Supply
  • Honeywell 965-0676-010 - WARNING COMPUTER SV
  • Honeywell 51403519-160 - Module
  • Honeywell 107843 - HOUSING CARBON FILE P/N NE COND # 11438 (4)
  • Honeywell VR434VA5009-1000 - Brand new in box Condensing boiler valve DHL fast shipping
  • Honeywell SPXCDALMFX - plc new FREE EXPEDITED SHIPPING/
  • Honeywell BCM-PWS - BCM-ETH BCM-MS/TP BCM-MS/TP Network controller setFedEx or DHL
  • Honeywell YSTR12D-22/C/-2J0DFA/BE/400/T/-CM.HO.TG.SB.SM,ZS,F1,LP,/FX/,1C-BT - UNMP
  • Honeywell IWS-1603-HW - 90-250VAC 1.0A UNMP
  • Honeywell 51304386-150 - MEASUREX Factory Packed
  • Honeywell CC-PFB401 - / CCPFB401 (NEW IN BOX)
  • Honeywell 50071726 - St 800 Series Pressure Transmitter Remote Diaphragm 11-42VDC
  • Honeywell 621-2150 - / 6212150 (NEW NO BOX)
  • Honeywell 80360206-001 - USED YAMATAKE CLI BOARD
  • Honeywell BMDX001A-001 - ACCURAY / BOARD BMDX001A001
  • Honeywell XCL8010A - New CPU Controller.
  • Honeywell PGM-7320 - 1PCS NEW Rae Systems MiniRAE 3000 Portable VOC Monitor#XR
  • Honeywell BK-G40 - U65 *FULL INSTALLATION* Gas Meter 3?± Inlet/Outlet Spool NEW UNUSED
  • Honeywell DM106-0-B-00-0-R-1-00000-000-E0 - DPR100 250V NSNP
  • Honeywell KFD840 - PRIMARY FLIGHT DISPLAY CORE PN: 066-01206-0104
  • Honeywell 51401914-100 - 51400996-100
  • Honeywell C7012A1145 - 1PC New UV Flame Detector Expedited Shipping
  • Honeywell OV210 - Baxter Bakery Oven Igition Control. For DRO. 00-616973 NEW
  • Honeywell 51304431-125 - 1PC New /51304431125 1 year warranty#XR
  • Honeywell QPP-0002 - Quad Processor Module / 5 Vdc / Massima 1.2A/24Vdc/max.25mA
  • Honeywell QPP-0002 - Quad Processor Module / 5Vdc / Max. 1.2A/24Vdc/max.25mA
  • Honeywell 8C-PCNT02 - 514543363-275 module
  • Honeywell DPCB21010002 - Tata Printed Circuit Board
  • Honeywell DPCB21010002 - Tata Printed Circuit Board Rev: 0
  • Honeywell 001649-M5T028 - Tata Printed Circuit Board Rev: 0
  • Honeywell YSTD924-(J2A)-00000-FF,W3,TP,TG,SS - NSFS
  • Honeywell XF523-A - / XF523A (NEW IN BOX)
  • Honeywell TK-PRS021 - NEW IN STOCK ship by UPS
  • Honeywell 2MLR-AC22 - " 2mlr-dbsf,2mlf-ad4s,2mlf-dc4s,2mlr-ac22 Rack"
  • Honeywell 9436610 - MEASUREX NSMP
  • Honeywell RT10A-L0N-18C12S0E - RT10A.WLAN.IN.6803.CAM.STD.GMS
  • Honeywell 51305896-200 - P:C1 Rev D Nim Modem - FAST SHIP BY Fedex
  • Honeywell TK-FTEB01 - PCL module Brand New Fast Shipping By DHL
  • Honeywell 8694500 - Measurex Control Processor Module
  • Honeywell DR4500 - Truline and DR4300 Circular Chart Recorder
  • Honeywell EC-7850-A-1122 - / EC7850A1122 (NEW IN BOX)