WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home H2OSecCon 2026 Say it isn’t so…USB’s are Still a Threat to OT Systems
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Say it isn’t so…USB’s are Still a Threat to OT Systems

Author: Jennifer Walker

Created: Thursday, April 1, 2021 - 18:44

Categories: Cybersecurity

Honeywell just released its USB Threat Report 2020. If your utility uses USB’s in the OT environment, this is a must read report to understand the types of threats Honeywell detected and the potential impact these threats could have on industrial facilities and critical infrastructure.

Key findings from the USB Threat Report 2020 include:

  • USB Remains a Top Threat Vector
  • USB-Borne Malware: A High-Potency Threat
  • High Concentration of USB-Specific Threats
  • USB Borne Threats Are More Dangerous Than Ever
  • Threat Patterns Appear Unique to OT
  • Are USB Borne Threats Targeting OT Systems Directly?
  • Improved Hygiene, Higher Risk

USB’s seem so innocuous while being so useful in their utility for easily transferring files, yet it was a USB that carried the first known and most destructive ICS-targeting malware thus far, Stuxnet. Given this capability for destruction, Honeywell suggests that relying on policy updates or people training alone will not suffice for scalable threat prevention – USB security must include technical controls and enforcement. For more highlights, visit Tripwire.

Related Resources

Members Only

(TLP:AMBER) DHS Office of Intelligence and Analysis Reports (May 21, 2026)

May 21, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

(TLP:CLEAR) Weekly Vulnerabilities to Prioritize – May 21, 2026

May 21, 2026 in Cybersecurity, Security Preparedness
Members Only

(TLP:GREEN) PEAR Ransomware Claims U.S. Drinking Water Utility as Victim

May 21, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar