Home TechnologyPP080: The State of OT Risks in 2025 (and What to ...
Technology⭐ Featured

PP080: The State of OT Risks in 2025 (and What to Do About Them)

What does the risk environment for Operational Technology (OT) look like in 2025? JJ and Drew review four recent reports on the state of OT security from Dragos, Fortinet, and others. We discuss ransomware impacts, ongoing risks of RDP traffic, directly exposed OT devices, and overall attack trends and the tools and processes that organizations ... Read more »

6 April 2026 at 09:11 pm
1 views
PP080: The State of OT Risks in 2025 (and What to Do About Them)

In 2025, the landscape of Operational Technology (OT) risks has evolved significantly, presenting both challenges and opportunities for organizations. As industries continue to integrate advanced technologies into their operations, the need for robust OT security has become more critical than ever. In this article, we delve into the current state of OT risks by examining recent reports from Dragos, Fortinet, and other experts in the field. We will explore the impacts of ransomware, the persistent threats posed by Remote Desktop Protocol (RDP) traffic, the exposure of OT devices, and the broader trends shaping attack strategies. Additionally, we will discuss the tools and processes organizations can implement to mitigate these risks and safeguard their OT infrastructure.

One of the most pressing concerns in the OT realm is the escalating threat of ransomware. Ransomware attacks have become increasingly sophisticated, targeting not only endpoints but also critical OT systems. According to a recent Dragos report, the average ransomware attack on OT systems has resulted in an average of $1.5 million in financial losses and up to 10 days of downtime. This highlights the severe consequences of inadequate OT security measures. Organizations must prioritize the implementation of multi-layered defense strategies, including regular vulnerability assessments, segmentation of OT networks, and the use of advanced threat detection systems.

Another significant risk in OT environments is the exposure of devices to unauthorized access. Many OT devices are directly connected to the internet, making them vulnerable to attacks. A Fortinet study revealed that 60% of OT devices surveyed were directly exposed, leaving them susceptible to malicious actors. This exposure often stems from outdated security protocols and the lack of proper access controls. To address this issue, organizations should adopt a zero-trust architecture approach, which assumes that no device or user is inherently trusted. This involves implementing strict access controls, continuous authentication, and monitoring mechanisms to detect and respond to unauthorized access attempts.

RDP traffic remains a persistent risk in OT environments. Many organizations still rely on RDP for remote access to their OT systems, which can be a gateway for attackers. A recent report from Dragos found that 80% of ransomware attacks on OT systems exploited vulnerabilities in RDP. To mitigate this risk, organizations should consider alternative remote access solutions, such as Virtual Private Networks (VPNs) or secure desktop sharing technologies. Additionally, implementing the latest security patches, disabling unnecessary RDP ports, and enforcing strong password policies can significantly reduce the attack surface.

Beyond these specific threats, the broader attack trends in OT are shifting towards more sophisticated and targeted strategies. Attackers are increasingly leveraging advanced persistent threats (APTs) to gain stealthy access to OT networks. These APTs often involve social engineering tactics, such as phishing campaigns, to compromise human elements within organizations. To counter these threats, organizations must invest in employee training programs and implement robust security awareness initiatives. Furthermore, integrating OT with enterprise security information and event management (SIEM) systems can help detect and respond to APTs more effectively.

In conclusion, the state of OT risks in 2025 presents a complex and evolving challenge for organizations. Ransomware, exposed devices, and RDP traffic continue to pose significant threats, while broader attack trends are becoming more sophisticated. To mitigate these risks, organizations must adopt a proactive approach, incorporating advanced security tools and processes. This includes regular vulnerability assessments, zero-trust architectures, alternative remote access solutions, employee training, and the integration of OT with enterprise SIEM systems. By prioritizing OT security, organizations can safeguard their critical infrastructure and protect against the ever-evolving threat landscape.

šŸ“° Related News
Ekaya Banaras Founder Palak Shah’s ₹40 Lakh Billboard Mistake Became a Masterclass in Startup Marketing
Ekaya Banaras Founder Palak Shah’s ₹40 Lakh Billboard Mistake Became a Masterclass in Startup Marketing
Ekaya Banaras founder Palak Shah recently opened up about one of the most expensive mistakes she made while building her luxury textile brand. During the early years of the company, Shah rented a premium billboard near Delhi’s DLF Emporio to increase brand visibility. However, after forgetting to cancel the campaign, the hoarding reportedly continued running for months — resulting in losses of nearly ₹40 lakh. The incident has now become a viral example of how small operational oversights can turn into costly business lessons for startups and entrepreneurs.
28 May
Betting On AI: Jensen Huang And NVIDIA’s Rise To The Top
Betting On AI: Jensen Huang And NVIDIA’s Rise To The Top
Before AI was inevitable, it was a gamble—and Jensen Huang went all in.
14 Apr
Red Hat OpenShift sandboxed containers 1.12 and Red Hat build of Trustee 1.1 bring confidential computing to bare metal and AI workloads
Red Hat OpenShift sandboxed containers 1.12 and Red Hat build of Trustee 1.1 bring confidential computing to bare metal and AI workloads
Red Hat is excited to announce the release of Red Hat OpenShift sandboxed containers 1.12 and Red Hat build of Trustee 1.1, marking a major leap forward in our confidential computing journey. These releases graduate confidential containers on bare metal from …
14 Apr
Large AI firms hoovering maximum funding, not enough for smaller startups: Y Combinator’s Ankit Gupta
Large AI firms hoovering maximum funding, not enough for smaller startups: Y Combinator’s Ankit Gupta
YC Startup School: India’s talent pool across colleges and universities are key for building next-gen startups, which is what YC is looking to tap into. It wants to target entrepreneurs building for global markets, focussed on fintech, consumer, B2B, and ecom…
14 Apr
TSMC likely to book fourth straight quarter of record profit onĀ insatiable AI demand
TSMC likely to book fourth straight quarter of record profit onĀ insatiable AI demand
TSMC-RESULTS/ (PREVIEW, PIX):PREVIEW-TSMC likely to book fourth straight quarter of record profit onĀ insatiable AI demand
14 Apr
TSMC likely to book fourth straight quarter of record profit onĀ insatiable AI demand
TSMC likely to book fourth straight quarter of record profit onĀ insatiable AI demand
Any profit result ā€Œabove T$505.7 billion would mark the company's highest-ever quarterly net income ​and its ninth consecutive quarter of profit growth
14 Apr
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
TSMC likely to book fourth straight quarter of record profit on insatiable AI demand
On Thursday, ​TSMC is expected to report a net profit of $17.1 billion for the quarter, according to an LSEG SmartEstimate compiled from 19 analysts. The war in the Middle East threatens to disrupt the supply of production materials for semiconductors such as…
14 Apr
If we can’t kick the habit, how do we manage AI’s energy needs?
If we can’t kick the habit, how do we manage AI’s energy needs?
One can only hope that OpenAI’s Sam Altman was joking when he sought to justify the immense energy consumption of artificial intelligence
14 Apr
What caused Nvidia Blackwell GPU prices to spike? #tech
What caused Nvidia Blackwell GPU prices to spike? #tech
Blackwell GPU hourly ā€œrentā€ surges on agentic AI demand A compute pricing index tracking hourly costs for Nvidia Blackwell GPUs shows a sharp climb: hourly rental hit $4.08 , up 48% from $2.75 just two months earlier. The reported driver is rising demand tied…
14 Apr
Anthropic Releases Claude Mythos Preview with Cybersecurity Capabilities but Withholds Public Access
Anthropic Releases Claude Mythos Preview with Cybersecurity Capabilities but Withholds Public Access
Anthropic has introduced Claude Mythos Preview, its most advanced AI model, improving significantly in reasoning, coding, and cybersecurity. Unlike previous releases, it will not be publicly available. Access is limited to a consortium of tech companies throu…
14 Apr