Upcoming Webinar: Navigating OT Remote Access – Technologies and Limitations, October 30
Days
Hours
Minutes
Seconds
Register Now

Tag: andrew ginter

Welcome to the resources page! We have compiled a collection of useful information, tools, and resources to help you

OT Security blog post about how likely a security flaw might end up unaliving someone

How Likely Is That To Kill Anyone?

IT teams newly responsible for OT security are often appalled with the results of an initial vulnerability assessment. “Patch everything! Patch it now!” is often the directive issued to engineering teams. The correct response to such a directive is “How likely is that to kill anyone?” Engineering teams cannot proceed with any change to a system until they have a clear understanding of the answer. And the answer is almost never “zero likelihood.”

Read More »
Susan Farrell joins to discuss weaknesses vs vulnerabilities

CWE for Zero Days – not CVE | Episode 126

The Mitre CWE – Common Weakness Enumeration is database talks about kinds of problems that can show up in the future – future zero days – rather than CVE that talks about what vulnerabilities were discovered in the past. Susan Farrell walks us through the CWE and how both vendors and owners and operators use it.

Read More »