What is a basic security concern related to substation automation targeting in Industroyer/CrashOverride?
- A.Excessive use of modern security protocols
- B.Removal of built-in authentication and encryption at the substation
- C.Lack of built-in authentication and encryption
- D.Too many firmware updates being applied
Why C is correct
Many OT components like substation automation targeting in Industroyer/CrashOverride were designed for reliability over security and often lack built-in authentication and encryption.
Know someone studying for OT Security Fundamentals? Send them this one.