FBI Alerts, OT Vulnerabilities, and What Comes Next

FBI Alerts, OT Vulnerabilities, and What Comes Next

🎙 Craig Duckworth and Dino Busalachi 👥 192 📅 September 3, 2025 ⏱ 24 min 👁 27 📄 expert opinion 🧭 2026-08-17
Available in: English (current) Français

Keywords

FBI advisoryOT vulnerabilitiesCiscoasset visibilityincident response

Summary

In this episode of the Industrial Cybersecurity Insider podcast, hosts Craig Duckworth and Dino Busalachi discuss the recent FBI advisory on nation-state threats targeting OT environments, specifically mentioning Cisco hardware. They highlight the disconnect between IT and OT security teams, noting that OT assets are often invisible to infosec teams, leading to critical blind spots. The conversation covers the skills gap and cultural divide between IT and OT, the economic impact of OT breaches, and why manufacturing has become a prime target for ransomware. They emphasize the importance of asset visibility and continuous monitoring as foundational steps, while acknowledging the impracticality of patching in OT due to downtime and safety risks. The hosts stress the need for a practiced incident response plan that includes OT, and advise CISOs to build relationships with system integrators and OEMs. They conclude with actionable advice: practice, partner, and protect now.

146 words

Critical Evaluation

Value of the Information & Strength of the Argument

The podcast provides valuable practical insights from experienced practitioners, emphasizing real-world challenges in OT security. The argumentation is coherent and grounded in anecdotal evidence, but lacks specific data or references to support claims. The hosts effectively argue that high-level advice from advisories often fails on the plant floor due to operational constraints, advocating for a more nuanced approach.

Scientific Rigor, Source Quality, Title Accuracy

The hosts reference the FBI advisory but do not provide specific details or links, limiting source quality. The discussion is based on professional experience rather than cited research. The title accurately reflects the content, and the episode stays on topic throughout. No comments were provided for analysis.

120 words

Title / Content Match

The title accurately reflects the content, which focuses on the FBI advisory and its implications for OT security.

Quality & Reliability

7/10

The hosts are experienced practitioners in industrial cybersecurity, providing practical insights grounded in real-world experience. However, the discussion is largely anecdotal and lacks specific data or references to the FBI advisory details, limiting verifiability.

Key Moments

Cited Sources

Concurring Sources

  • FBI Cyber Division — Official source for FBI cyber advisories and alerts.
  • CISA Advisories — Cybersecurity advisories from CISA, including those relevant to OT.

Contribution & Novelties

The podcast offers practical, practitioner-oriented insights into OT cybersecurity, emphasizing the gap between advisory recommendations and real-world implementation. It highlights the importance of asset visibility and continuous monitoring, and the need for incident response plans that include OT. The discussion provides actionable advice for CISOs and plant leaders.

Pour aller plus loin :

  • FBI Cyber Division — Official FBI cyber resources and advisories.
  • NIST Cybersecurity Framework — Framework for improving critical infrastructure cybersecurity.
  • MITRE ATT&CK for ICS — Knowledge base of adversary tactics and techniques for industrial control systems.

89 words

Radar Profile

The radar profile shows balanced scores across all dimensions, with slightly higher scores in information quantity and quality, reflecting a substantive discussion. The technical level is moderate, suitable for a broad audience, while reliability is solid due to the hosts' expertise.

Reliability 7/10