FBI and CISA Issue Guidance on Third-Party ICS Integrator Risks to Critical Infrastructure
The FBI and CISA have published a fact sheet warning critical infrastructure operators about the risks of granting third-party industrial control system integrators excessive access. The guidance highlights concerns including the principle of least privilege, supply chain vulnerabilities, and geopolitical risks associated with foreign-owned integrators. A key case study involves malicious foreign cyber actors accessing the network of a U.S. industrial automation solutions company between March and April 2025, where they searched for SCADA-related terms and compiled approximately 800 files containing customer data for potential exfiltration.