What's Happening?
A recent analysis by Forescout has revealed that over 4,400 Rockwell Automation programmable logic controllers (PLCs) are exposed online, with 2,844 located in the United States. This exposure poses significant cybersecurity risks, particularly for water
utilities, as attackers could potentially manipulate these systems without exploiting vulnerabilities. The FBI and EPA have reported incidents in at least seven states, highlighting the need for improved security measures.
Why It's Important?
The exposure of Rockwell PLCs online underscores the vulnerabilities in critical infrastructure systems, particularly in the water sector. This situation highlights the urgent need for enhanced cybersecurity protocols to protect against potential attacks that could disrupt essential services. The exposure also raises concerns about the security of industrial control systems and the potential for widespread impact if these systems are compromised.
What's Next?
To mitigate the risks, it is crucial for operators to remove these controllers from public internet access and implement strong authentication measures. The FBI and EPA recommend isolating remote access through secure networks. As the situation develops, there may be increased regulatory focus on securing industrial control systems and potential updates to cybersecurity standards to prevent similar exposures in the future.








