WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships ICS/OT Vulnerability Management – Claroty Report Highlights Upward Trend of Disclosed ICS Vulnerabilities
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

ICS/OT Vulnerability Management – Claroty Report Highlights Upward Trend of Disclosed ICS Vulnerabilities

Author: Jennifer Walker

Created: Thursday, August 19, 2021 - 18:29

Categories: OT-ICS Security

Vulnerability management is at the core of every cybersecurity program. While managing vulnerabilities in control system environments is challenging – for a variety of reasons – it is still necessary. To make it even more challenging, if it seems the disclosure of vulnerabilities impacting ICS/OT has been more frequent than usual this year, it has. According to Claroty’s third Biannual ICS Risk & Vulnerability Report, there has been a 41% increase in ICS vulnerabilities disclosed in the first half (1H) of 2021 compared to the previous six months. What’s more concerning, the report highlights most ICS vulnerabilities are classified as high or critical severity, have low attack complexity, are remotely exploitable, and may cause total loss of availability. Furthermore, in the past two months, there have been even more disclosed vulnerabilities impacting control system environments, such as INFRA:HALT (including an update), BadAlloc (Update C), Cisco (including all ISA3000 (Industrial Security Appliance) firewalls), a Code Execution Vulnerability in Siemens SINEMA Remote Connect Client, along with several other ICS-CERT advisories. Access the full report at Claroty.

Related Resources

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – April 23, 2026

Apr 23, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security
Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated April 23, 2026)

Apr 17, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) Securin Cyber Threat Intelligence Report: Water & Wastewater Systems

Apr 16, 2026 in Cybersecurity, OT-ICS Security, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar