Litšokelo tsa ho fihlella hole ho marang-rang a indasteri li ntse li phahama nakong ea COVID-19: Tlaleho

Likotsi tsa tsamaiso ea liindasteri tse sebelisoang hole haholo (ICS) li ntse li eketseha, ha ts'epo ea phihlello e hole ea marang-rang a indasteri e ntse e eketseha nakong ea COVID-19, tlaleho e ncha ea lipatlisiso e tsoang ho Claroty e fumana.

 

Ho feta 70% ea bofokoli ba sistimi ea taolo ea indasteri (ICS) e senotsoeng halofong ea pele (1H) ea 2020 e ka sebelisoa hampe, e totobatsa bohlokoa ba ho sireletsa lisebelisoa tsa ICS tse shebaneng le marang-rang le likhokahano tsa phihlello tse hole, ho latela phatlalatso.Tlaleho ea Kotsi le Kotsi ea ICS habeli ka selemo, e lokollotsoeng bekeng ena keClaroty, setsebi sa lefats'e satšireletseho ea theknoloji ea ts'ebetso (OT).

Tlaleho e kenyelletsa tlhahlobo ea sehlopha sa bafuputsi sa Claroty ea bofokoli ba 365 ICS e phatlalalitsoeng ke National Vulnerability Database (NVD) le 139 ICS likeletso tse fanoeng ke Industrial Control Systems Cyber ​​Emergency Response Team (ICS-CERT) nakong ea 1H 2020, e amang barekisi ba 53.Sehlopha sa bafuputsi sa Claroty se sibolotse bofokoli bo 26 bo kenyellelitsoeng setsing sena sa data.

Ho latela tlaleho e ncha, ha ho bapisoa le 1H 2019, bofokoli ba ICS bo phatlalalitsoeng ke NVD bo eketsehile ka 10.3% ho tloha ho 331, ha likeletso tsa ICS-CERT li eketsehile ka 32.4% ho tloha ho 105. Ho feta 75% ea bofokoli e ile ea abeloa Scoring e phahameng kapa e mahlonoko ea Common Vulnerability Scoring. Lintlha tsa tsamaiso (CVSS).

"Ho na le tlhokomeliso e matla ea likotsi tse hlahisoang ke bofokoli ba ICS le ho tsepamisa maikutlo ho matla har'a bafuputsi le barekisi ho tseba le ho lokisa bofokoli bona ka nepo le ka nepo kamoo ho ka khonehang," ho boletse Amir Preminger, VP ea lipatlisiso Claroty.

O boetse a re, "Re hlokometse tlhoko ea bohlokoa ea ho utloisisa, ho lekola le ho tlaleha ka botlalo kotsi ea ICS le maemo a tlokotsi ho thusa sechaba sohle sa ts'ireletso sa OT.Liphuputso tsa rona li bonts'a hore na ho bohlokoa hakae hore mekhatlo e sireletse likhokahano tsa phihlello tse hole le lisebelisoa tsa ICS tse shebaneng le marang-rang, le ho itšireletsa khahlanong le phishing, spam le ransomware, e le ho fokotsa le ho fokotsa litlamorao tse ka bang teng tsa litšokelo tsena. "

Ho ea ka tlaleho, ho feta 70% ea bofokoli bo phatlalalitsoeng ke NVD e ka sebelisoa hampe, e tiisa taba ea hore marang-rang a ICS a nang le moea ka botlaloho arohana le litšokelo tsa cyberli fetohile tse sa tloaelehang haholo.

Ho phaella moo, tšusumetso e tloaelehileng ka ho fetisisa e neng e ka ba teng e ne e le ts'ebetsong ea khoutu e hōle (RCE), e ka khonehang ka 49% ea bofokoli - e bonts'a botumo ba eona e le sebaka se ka sehloohong sa ho tsepamisa maikutlo ho sechaba sa lipatlisiso tsa ts'ireletso ea OT - e lateloa ke bokhoni ba ho bala lintlha tsa kopo (41%). , etsa hore ho haneloe tšebeletso (DoS) (39%), le mekhoa ea tšireletso ea bypass (37%).

Patlisiso e fumana hore botumo ba tlhekefetso e hole bo mpefalitsoe ke phetoho e potlakileng ea lefats'e ho ea ho basebetsi ba hole le ts'epo e ntseng e eketseha ea phihlello ea hole ea marang-rang a ICS.karabelo ho seoa sa COVID-19.

Ho ea ka tlaleho, makala a matla, tlhahiso ea bohlokoa, le metsi le metsi a litšila ke tsona tse anngoeng haholo ke bofokoli bo phatlalalitsoeng ho ICS-CERT advisory nakong ea 1H 2020. Har'a tse 385 tse ikhethileng tse tloaelehileng tsa Vulnerabilities and Exposures (CVEs) tse kenyellelitsoeng ho likeletso. , matla a ne a e-na le 236, tlhahiso ea bohlokoa e ne e e-na le 197, 'me metsi le metsi a litšila a ne a e-na le 171. Ha ho bapisoa le 1H 2019, metsi le metsi a litšila a bile le keketseho e kholo ka ho fetisisa ea CVEs (122.1%), ha tlhahiso ea bohlokoa e eketsehile ka 87.3% le matla ka 58.9%.

Patlisiso ea Claroty e sibollotse bofokoli ba 26 ICS bo senotsoeng nakong ea 1H 2020, e etelletsa pele bofokoli ba bohlokoa kapa bo kotsing e kholo bo ka amang ho fumaneha, ho ts'epahala le polokeho ea ts'ebetso ea indasteri.Sehlopha se tsepamisitse maikutlo ho barekisi le lihlahisoa tsa ICS tse nang le lits'ebetso tse kholo tsa ho kenya, likarolo tsa bohlokoa ts'ebetsong ea indasteri, le tse sebelisang liprothokholo tseo bafuputsi ba Claroty ba nang le boiphihlelo bo bongata ho tsona.Mofuputsi o re bofokoli bona ba 26 bo ka ba le litlamorao tse mpe ho marang-rang a amehileng a OT, hobane ho feta 60% e nolofalletsa mofuta o itseng oa RCE.

Bakeng sa barekisi ba bangata ba anngoeng ke li sibollo tsa Claroty, ena e ne e le ts'oaetso ea bona ea pele e tlalehiloeng.Ka lebaka leo, ba tsoetse pele ho theha lihlopha tsa ts'ireletso tse inehetseng le lits'ebetso ho sebetsana le ts'oaetso e ntseng e eketseha ea ts'oaetso ka lebaka la ho kopana ha IT le OT.

Ho fihlella sete e felletseng ea liphuputso le tlhahlobo e tebileng,download theTlaleho ea Kotsi le Kotsi ea Claroty Biannual ICS: 1H 2020Mona.

 


Nako ea poso: Sep-07-2020