WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home H2OSecCon 2026 ICS/OT Vulnerability Management – Claroty Report Highlights Upward Trend of Disclosed ICS Vulnerabilities
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

ICS/OT Vulnerability Management – Claroty Report Highlights Upward Trend of Disclosed ICS Vulnerabilities

Author: Jennifer Walker

Created: Thursday, August 19, 2021 - 18:29

Categories: OT-ICS Security

Vulnerability management is at the core of every cybersecurity program. While managing vulnerabilities in control system environments is challenging – for a variety of reasons – it is still necessary. To make it even more challenging, if it seems the disclosure of vulnerabilities impacting ICS/OT has been more frequent than usual this year, it has. According to Claroty’s third Biannual ICS Risk & Vulnerability Report, there has been a 41% increase in ICS vulnerabilities disclosed in the first half (1H) of 2021 compared to the previous six months. What’s more concerning, the report highlights most ICS vulnerabilities are classified as high or critical severity, have low attack complexity, are remotely exploitable, and may cause total loss of availability. Furthermore, in the past two months, there have been even more disclosed vulnerabilities impacting control system environments, such as INFRA:HALT (including an update), BadAlloc (Update C), Cisco (including all ISA3000 (Industrial Security Appliance) firewalls), a Code Execution Vulnerability in Siemens SINEMA Remote Connect Client, along with several other ICS-CERT advisories. Access the full report at Claroty.

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 21, 2026)

May 21, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) Poland Warns of Escalating Cyber Threats to Water Utilities and ICS Operations

May 21, 2026 in Cybersecurity, OT-ICS Security, Security Preparedness

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 21, 2026

May 21, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar