logo

Minimizing the Consequences of Shared Credentials Across IT and OT Environments

ID: 4831b329-b345-59b9-b50d-90cd1c85d03e

STIX ID: report--4831b329-b345-59b9-b50d-90cd1c85d03e

Feed Name: Dragos Blog

Date Published: 2022-06-10

Date Updated: 2026-04-27

...
...

Dragos highlights that 44% of OT service engagements involved shared credentials, and when paired with widespread improper network segmentation (77%), this significantly increases the risk of adversary reconnaissance and lateral movement from IT into ICS/OT; the report explains how default and reused credentials, single AD domains, and tools like BloodHound facilitate these attacks, and recommends eliminating default/vendor accounts, enforcing unique per-endpoint credentials via password vaults and RBAC, applying MFA for remote access, segregating AD domains between IT and OT, strengthening segmentation, and continuously monitoring OT networks for anomalous access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.