Hacking OT Is Like Going Back In Time
The NCSC has warned that attacks on operational technology are already causing real disruption. After ten years testing UK plant networks, the thing that gets you is never the exotic ICS exploit.
Practical thinking on penetration testing, threat intelligence, and building security programmes that actually work.
The NCSC has warned that attacks on operational technology are already causing real disruption. After ten years testing UK plant networks, the thing that gets you is never the exotic ICS exploit.
One file, sitting in a storage container, held live keys to storage, the databases, deployment and the applications' own tokens. Here is how far that got us.
AI has not created a new security problem. It has accelerated an old one. The governance model that should have been standard years ago is now non-negotiable, and the organisations still treating security as a gate rather than a lane are running out of road.
Regulation, technology, and the evolving threat landscape are converging on the penetration testing market at the same time. If your business operates in or supplies into a regulated sector, this shift is already affecting you.
Most organisations think about cloud security and on-premises security as separate problems. In a hybrid environment, a foothold in one is increasingly a route into the other.
We spent our careers securing some of the UK's most sensitive environments. When we looked at what scaling businesses were being sold as security, we found a problem we could not look past.
Most organisations have moved fast into the cloud. Security controls rarely keep pace. This is a walkthrough of how Tarian Labs approaches cloud assessments and what we consistently find.
We built Tarian Labs because scaling businesses were being underserved on security. Today we are extending that mission through a formal partner programme for MSPs, cloud providers, and IT consultancies.
Most businesses only act after an incident. The ones that don't are our clients.