The Phishing Attack That Could Have Shut Down a Plant Floor
A real-world case study shows how a single phishing email led to credential and MFA compromise, creating an urgent question for any industrial organization: Did the attacker reach the OT environment? Dino and Jim walk through how OT visibility, secure remote access controls, and continuous monitoring enabled rapid validation of what happened. They were able to prove the breach did not impact control systems and avoid an expensive, safety-driven shutdown of a continuous manufacturing process. The episode connects technical controls to executive outcomes, including resilience, duty of care, and the financial reality that “not knowing” can be as costly as an actual compromise. Chapters: • (00:00:00) Why continuous manufacturing makes “abundance of caution” shutdowns so costly • (00:01:00) What “OT continuous monitoring” means and why it matters in real incidents • (00:03:00) Safety and connected environments: why “it can go boom” changes the stakes • (00:05:00) Baselines: defining “normal” so abnormal behavior is actionable • (00:07:00) Incident story: phishing email leads to credential and MFA compromise • (00:09:00) What the team validated: tracing access and confirming OT was not impacted • (00:10:00) Lessons from Colonial Pipeline: inability to validate can force shutdowns • (00:11:00) OT reality check: Windows assets, HMIs, historians, and engineering workstations • (00:13:00) Secure OT remote access: why VPN-only access is not sufficient • (00:16:00) The payoff: avoided downtime, avoided product loss, and avoided disruption • (00:19:00) Executive view: duty of care, liability, compliance, and protecting enterprise value • (00:23:00) The “air gap” myth and why defense-in-depth is the only practical path Links And Resources: • Want to Sponsor an episode or be a Guest? Reach out here. ( / luraelumpkin ) • Industrial Cybersecurity Insider on LinkedIn ( / industrial-cybersecurity-insider ) • Cybersecurity & Digital Safety on LinkedIn ( / 12450584 ) • BW Design Group Cybersecurity (https://www.bwdesigngroup.com/sub-cap...) • Dino Busalachi on LinkedIn ( / dinobusalachi ) • Craig Duckworth on LinkedIn ( / craigaduckworth ) Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify (https://open.spotify.com/show/6y0fvWa...) , Apple Podcasts (https://podcasts.apple.com/us/podcast...) , and YouTube ( / @veltatechnology ) to leave us a review!

The Phishing Attack That Almost Shut Down a Plant Floor

Something is jamming GPS over Europe. Here's what we found

The CISA and Federal Agency Zero Trust Briefing Most OT Leaders Haven't Read Yet

Cybersecurity Unveiled Through IT and OT Alignment

Conan O’Brien Mocks Trump At Harvard Commencement | Crowd Erupts During Viral Speech

Is Your IIoT Strategy Creating More Security Risks?

The Evolution of Malware: Past, Present, and the AI-Driven Future

2026 Threat Landscape Reality Check: Turning Threat Intelligence into Analytic Advantage

How Your Phone is Tracked in 2026 – And How to Stop It

World's Deadliest Computer Virus: WannaCry

Cybersecurity Zero Trust Architecture : Explained For Beginners

Counter-Surveillance Using Bluetooth!

The Dangerous Workarounds OT Teams Use to Bypass Security

OT Patching vs IT Patching: What's Commonly Misunderstood

OT Patching vs IT Patching: What's Commonly Misunderstood

OT Security Isn't an IT Problem: What it Takes to Get it Right

I spent 7 days evading America’s 82 MILLION surveillance cameras

Why Israel is the World's Top Hacking Nation | VICE: Cyberwar | Blueprint

Federal Agencies Can Enter Private Networks to Hunt Malware. Is Your Plant Prepared?

