WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts OT/ICS Security – USB Storage Devices are Still a Universal Threat to Industrial Operations
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

OT/ICS Security – USB Storage Devices are Still a Universal Threat to Industrial Operations

Author: Jennifer Walker

Created: Thursday, August 18, 2022 - 17:29

Categories: OT-ICS Security

USBs, those innocuous looking little portable storage devices, while useful in utility are still dangerous for utilities. These devices that are practical for transferring legitimate files and documents are equally functional for transferring malware into and out of production OT/ICS networks – including air-gapped environments. In the Honeywell Industrial Cybersecurity: USB Threat Report 2022, Honeywell’s Cybersecurity Global Analysis, Research, and Defense (GARD) team once again looked at the increasing threat caused by these modest devices. Honeywell’s unique perspective of threats emanating from USB removable media reveals the threat continues to become more prominent, more potent, and impacts all critical infrastructure sectors defined by CISA.

It’s amazing that USBs still represent a significant threat, let alone continue to increase. According to GARD, threats designed for USB exploitation have risen to 52% from 37% last year (and 19% the year before). The findings indicated that trojans were the most detected malware proliferated by USBs and threat actors continue using malware capable of providing remote access or remote control as initial attack vectors.

Unfortunately, abolishing USB storage devices is not practical, even in air-gapped OT environments. While adhering to strict policies are crucial for reducing risk, USB security must include stringent technical controls. Honeywell recommends:

  • Clear USB security policies
  • Close the Mean Time to Remediation (MTTR)
  • Additional scrutiny on files, documents, and other digital content.
  • Outbound network connectivity from process control networks must be tightly controlled and enforced by network switches, routers, and firewalls.
  • Patching and hardening of end nodes.

Access the full report at Honeywell Forge.

Related Resources

(TLP:CLEAR) GAO Report: Actions Needed to Address Persistent Cybersecurity Threats to the Water and Wastewater Sector

May 28, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security
Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 28, 2026)

May 28, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 28, 2026

May 28, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar