Intro to OT ICS Penetration Testing (Part 8): What Happens When Hackers EXPLOIT Industrial Networks

Intro to OT ICS Penetration Testing (Part 8): What Happens When Hackers EXPLOIT Industrial Networks

🎙 Mike Holcomb 👥 27K 📅 January 19, 2026 ⏱ 71 min 👁 2K 📄 tutorial 🧭 2026-08-16
Available in: English (current) Français

Keywords

exploitationPLCHMIoperating modelateral movement

Summary

This video is part 8 of a series on OT/ICS penetration testing. It focuses on the exploitation phase, detailing how attackers impact industrial networks. The instructor explains various impact types (denial of control, denial of view, loss of availability, etc.) and then dives into specific techniques: execution and privilege escalation, changing operating modes of PLCs, using APIs, GUI access, and modifying controller tasking. He emphasizes the importance of understanding the PLC scan cycle and how attackers can manipulate it. Real-world examples like Stuxnet and the Jaguar Land Rover outage are used to illustrate concepts. The video includes lab walkthroughs and practical advice for penetration testers. The instructor also discusses lateral movement and credential attacks, highlighting common weaknesses in OT environments.

120 words

Critical Evaluation

Value of the Information & Strength of the Argument

The video provides valuable, practical insights into OT/ICS exploitation techniques, grounded in real-world incidents and the MITRE ATT&CK framework. The argumentation is solid, with clear explanations of attack vectors and their potential impacts. The instructor’s experience adds credibility, and the lab demonstrations reinforce the concepts. However, the video is tutorial-oriented and may not delve deeply into advanced exploitation methods, but it serves as an excellent introduction.

75 words

Title / Content Match

The title accurately reflects the content, focusing on exploitation techniques in OT/ICS environments.

Quality & Reliability

8/10

The video is a technical tutorial by an experienced OT security professional, referencing MITRE ATT&CK and real-world incidents (Stuxnet, JLR). It provides practical guidance and lab walkthroughs, but lacks formal citations and peer review.

Key Moments

Cited Sources

Concurring Sources

  • MITRE ATT&CK for ICS — The video references MITRE ATT&CK techniques for ICS, which align with the content.

Contribution & Novelties

The video provides a practical, hands-on approach to OT/ICS penetration testing, focusing on exploitation techniques that are often overlooked in general cybersecurity training. It bridges the gap between IT and OT security, emphasizing the unique challenges of industrial environments. The instructor’s real-world experience and lab demonstrations offer valuable insights for both beginners and experienced professionals.

Pour aller plus loin :

  • MITRE ATT&CK for ICS — The framework referenced in the video for ICS attack techniques.
  • Stuxnet - Wikipedia — The famous cyberweapon that targeted Siemens PLCs, mentioned in the video.
  • Jaguar Land Rover cyberattack - news article — The incident discussed in the video regarding manufacturing outage.

107 words

Radar Profile

The radar profile shows high scores in information quantity, quality, and reliability, with a slightly lower technical depth. This indicates a well-rounded educational video that is accessible yet informative, suitable for those new to OT security.

Reliability 8/10

💬 No comments were provided for analysis.