WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts OT/ICS Security – USB Storage Devices are Still a Universal Threat to Industrial Operations
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

OT/ICS Security – USB Storage Devices are Still a Universal Threat to Industrial Operations

Author: Jennifer Walker

Created: Thursday, August 18, 2022 - 17:29

Categories: OT-ICS Security

USBs, those innocuous looking little portable storage devices, while useful in utility are still dangerous for utilities. These devices that are practical for transferring legitimate files and documents are equally functional for transferring malware into and out of production OT/ICS networks – including air-gapped environments. In the Honeywell Industrial Cybersecurity: USB Threat Report 2022, Honeywell’s Cybersecurity Global Analysis, Research, and Defense (GARD) team once again looked at the increasing threat caused by these modest devices. Honeywell’s unique perspective of threats emanating from USB removable media reveals the threat continues to become more prominent, more potent, and impacts all critical infrastructure sectors defined by CISA.

It’s amazing that USBs still represent a significant threat, let alone continue to increase. According to GARD, threats designed for USB exploitation have risen to 52% from 37% last year (and 19% the year before). The findings indicated that trojans were the most detected malware proliferated by USBs and threat actors continue using malware capable of providing remote access or remote control as initial attack vectors.

Unfortunately, abolishing USB storage devices is not practical, even in air-gapped OT environments. While adhering to strict policies are crucial for reducing risk, USB security must include stringent technical controls. Honeywell recommends:

  • Clear USB security policies
  • Close the Mean Time to Remediation (MTTR)
  • Additional scrutiny on files, documents, and other digital content.
  • Outbound network connectivity from process control networks must be tightly controlled and enforced by network switches, routers, and firewalls.
  • Patching and hardening of end nodes.

Access the full report at Honeywell Forge.

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated June 11, 2026)

Jun 11, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness
Members Only

(TLP:GREEN) CISA Invites Water and Wastewater Utilities to Participate in CI Fortify Technical Exchange Group

Jun 11, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – June 11, 2026

Jun 11, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security

Become a Member
FAQs
About
Report Incident
Traffic Light Protocol (TLP)

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar