logo

OT Cybersecurity Best Practices for SMBs: Managing Default Passwords and Identifying ICS/OT Devices Exposed to the Internet

ID: 8a5a70e1-6e90-5427-9eae-6324aa0c0710

STIX ID: report--8a5a70e1-6e90-5427-9eae-6324aa0c0710

Feed Name: Dragos Blog

Date Published: 2024-01-30

Date Updated: 2026-04-27

...
...

**Executive summary:** Dragos OT-CERT publishes pragmatic OT/ICS cybersecurity best practices for under-resourced organizations, focusing on two persistent risks — devices exposed to the internet and unchanged default or hardcoded passwords — and provides concrete steps to identify, remediate, and defend those exposures (asset discovery, public IP scanning, firewalls/VPNs, configuration hardening, patching, compensating controls) while inviting organizations to join OT-CERT for free resources and guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.