Security News > 2020 > August > Over 70% of ICS Vulnerabilities Disclosed in First Half of 2020 Remotely Exploitable

Over 70% of ICS Vulnerabilities Disclosed in First Half of 2020 Remotely Exploitable
2020-08-19 18:40

Over 70% of the industrial control system vulnerabilities disclosed in the first half of 2020 were remotely exploitable through a network attack vector, industrial cybersecurity company Claroty reported on Wednesday.

Learn more about ICS vulnerabilities at SecurityWeek's 2020 ICS Cyber Security Conference and SecurityWeek's Security Summits virtual event series.

The number of vulnerabilities added to the NVD in the first half of 2020 is roughly 10% higher compared to the number of flaws disclosed in the same period of 2019.

"While it may seem logical to assume that this and similar increases were caused by an increase in adversary activity and/or a decrease in ICS vendors' security posture, the primary factors are likely heightened awareness of the risks posed by ICS vulnerabilities and increased focus from researchers and vendors on identifying and remediating such vulnerabilities as effectively and efficiently as possible," Claroty explained in its report.

According to the company, the fact that over 70% of the vulnerabilities covered in the NVD can be exploited remotely shows that fully air-gapped industrial networks that are better protected against cyber threats have become "Vastly uncommon."


News URL

http://feedproxy.google.com/~r/Securityweek/~3/GW7nb3_BwqM/over-70-ics-vulnerabilities-disclosed-first-half-2020-remotely-exploitable