Why Default Password Must Go
CISA has raised urgent concern alarms over persistent use of default passwords in manufacturing systems like "1111" that used in U.S. water facility breach via Iranian hackers which allowed attackers easy access to critical infrastructure. Despite widespread awareness of the risk posted by out of the box credentials, manufactures often leave them unchanged for convinced or legacy compatibility, enabling cyber criminals to initiate botnet attacks, install ransomware, or infiltrate supply chains. To combat these threats, CISA is calling for manufactures to eliminate default passwords entirely and adopt secure by design practices like s\assigning unique credential per device, and incorporating credential rotation APIs. Meanwhile, IT teams are urged to proactively audit as update any remaining default setting in their environments, as ignoring this simple yet but critical step can undermine all other security defenses.
https://thehackernews.com/2025/07/manufacturing-security-why-default.html
Comments
Post a Comment