The content on this page was provided by an independent third party and syndicated by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

ICS/OT Vulnerability Intelligence Report Highlights Gap Between Severity Scores and Real-World Exploitation

EmberOT & partners release a vuln intel report, giving OT defenders a context-driven framework to cut through the noise of a record-breaking year of disclosures

A scoring system designed for IT environments was never built to answer the question that matters most in OT: which vulnerabilities, in my specific architecture, matter right now?”
— Jori VanAntwerp, EmberOT Founder & CEO

CHANDLER, AZ, UNITED STATES, March 2, 2026 /EINPresswire.com/ — EmberOT and partners have released the ICS/OT Vulnerability Intelligence Report 2024-2025, a comprehensive analysis of industrial control system vulnerabilities that challenges the conventional wisdom of score-based patch prioritization. The report’s most striking finding: of 2,203 vulnerabilities scored High or Critical in 2024 and 2025, only 29, 1.32%, have ever been confirmed as weaponized in the real world.

The report arrives at a pivotal moment. CISA (the Cybersecurity & Infrastructure Security Agency) published 508 ICS advisories in 2025 alone – a 20% increase over the previous year, while total tracked disclosures across all sources rose to 2,207. At the same time, the share of vulnerabilities receiving an official CISA advisory dropped from 28.3% in 2024 to just 17.5% in 2025, leaving the vast majority of disclosures invisible to organizations relying solely on federal feeds.

Key Finding: 98.4% of vulnerabilities scored High or Critical in 2024-2025 have never been confirmed as exploited in the wild, yet they continue to consume the majority of OT security teams’ bandwidth.

“OT defenders are protecting more than just data… They’re protecting process, safety, and business continuity,” states Jori VanAntwerp, Founder at EmberOT. “A scoring system designed for IT environments was never built to answer the question that matters most in OT: which vulnerabilities, in my specific architecture, matter right now? This report gives teams the framework to answer that question with confidence.”

A Prioritization Crisis, not a Data Crisis

The report, authored by Dan Ricci (Founder, ICS Advisory Project), Jori VanAntwerp (Founder, EmberOT), and Dr. Rishabh “George” Das (Independent OT Security Researcher), argues that the industrial security community’s challenge is not a lack of vulnerability data, but rather the absence of a structured, operationally grounded framework for determining which vulnerabilities actually warrant action.

Drawing on the ICS Advisory Project’s tracking of more than 82% of advisories that never appear in official CISA ICS channels, the report introduces a five-lens prioritization framework built around exploitability, network reachability, asset criticality, operational impact, and patch feasibility. The framework is designed to replace CVSS-score-driven triage with environment-specific risk assessment that OT teams can document and defend.

“The gap between what gets reported and what gets fixed has never been wider,” notes VanAntwerp. “That’s more a prioritization problem than a resourcing problem. This report exists to give every operator, from the smallest municipal utility to the largest enterprise, the intelligence they need to make better decisions.”

Key Findings at a Glance

The report covers 2024 and 2025 disclosure data and surfaces findings with direct operational implications:

• The 1.3% Rule: Of 2,203 High/Critical CVEs tracked, only 29 (1.32%) appear in CISA’s Known Exploited Vulnerabilities catalog. The other 98.4% have never been confirmed as weaponized.

• CISA Coverage in Decline: The proportion of vulnerabilities tracked by official CISA ICS Advisories fell from 28.3% in 2024 to 17.5% in 2025 – a 10.8-point drop in a single year.

• The Medium Surge: Medium-severity CVEs nearly doubled year over year (558 to 1,044+), reflecting the multi-year nature of the disclosure lifecycle and warning against treating annual counts as static snapshots.

• EOL and Patch Reality: 45% of advisories recommended hardware upgrades as the remediation path; 7.5% identified assets as End-of-Life with no fix forthcoming, making compensating controls a permanent architectural necessity for many operators.

• Level 1 in the Crosshairs: The highest concentration of network-reachable, low-complexity vulnerabilities resides at Purdue Level 1 – the PLCs and RTUs that directly control physical processes. 1,145 vulnerabilities in this category were identified at this level alone.

• High Disclosures ≠ Insecure Products: Vendors with the highest CVE counts, including Siemens (282 advisories) and Rockwell Automation (104), reflect mature PSIRT infrastructure, not weaker products. A vendor with zero CVEs may simply lack the processes to find what they have.

The Structural Gap: The Immune System That Was Never Built

Beyond the prioritization framework, the report identifies a critical gap in the current OT defense-in-depth strategy: over 80% of official guidance in the 2024-2025 period focused on network segmentation, while less than 1% addressed validation of the actual content of industrial traffic in real time.

The report introduces the concept of the “immune system” protocol-level content validation capable of detecting malformed or malicious traffic before it reaches a vulnerable device, without requiring a patch or hardware replacement. For the significant portion of the asset owner community running End-of-Life equipment or operating under constrained maintenance windows, this layer represents the only remaining path to meaningful risk reduction.

ICS/OT Vulnerability Intelligence Report Availability

The ICS/OT Vulnerability Intelligence Report 2024-2025 is available now at https://emberot.com/ics-ot-vulnerability-intelligence-report-2024-2025. A companion practitioner guide, No Noise. Just Signal: A Practitioner’s Guide to OT Vulnerability Prioritization, containing worked examples, documentation templates, and a repeatable triage process, is forthcoming.

🔥 About EmberOT 🔥

EmberOT solves critical infrastructure security challenges by meeting organizations where they are today. Where predecessor solutions are hardware-dependent and cost-prohibitive, EmberOT’s software-based sensors remove those barriers and help organizations monitor and defend their environments NOW while showing them a path to the FUTURE. Combining secure by design with defense in depth, the EmberOT software provides immediate observability and detection, actionable insights, and guidance on “What should I do next?” to ensure critical infrastructure resilience and security. Learn more at https://www.emberot.com/.

Sonia Awan for EmberOT
Outbloom Public Relations
email us here
Visit us on social media:
LinkedIn
YouTube
X

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

Bioxytran, Inc. Reports Positive Phase 1b/2a Clinical Study Results for ProLectin-M, a Broad-Range Antiviral Drug in Mild to Moderate COVID-19

Bioxytran, Inc. Reports Positive Phase 1b/2a Clinical Study Results for ProLectin-M, a Broad-Range Antiviral Drug in Mild to Moderate COVID-19

BOSTON, MA / ACCESS Newswire / March 2, 2026 / Bioxytran, Inc. (OTCQB:BIXT), a clinical-stage biotechnology company

March 2, 2026

Dr. Ben Clinton’s ‘Teaching What Every Employer Wants’ Hits #1 on Amazon in Education & Teaching

Dr. Ben Clinton’s ‘Teaching What Every Employer Wants’ Hits #1 on Amazon in Education & Teaching

New book gives CTE educators practical tools to teach employability skills as observable, coachable behaviors

March 2, 2026

Sungil Tex Launches USA-Made Biodegradable Lining with 100% Naia™ Yarn to Meet Growing Sustainable Fashion Demand

Sungil Tex Launches USA-Made Biodegradable Lining with 100% Naia™ Yarn to Meet Growing Sustainable Fashion Demand

The new collection developed for a U.S. sustainable fashion brand, offers a certified circular solution made with

March 2, 2026

Viscosity’s Oracle ACE Directors Will Headline AI and Data Innovation at UTOUG Training Days 2026

Viscosity’s Oracle ACE Directors Will Headline AI and Data Innovation at UTOUG Training Days 2026

Breakthroughs in Agentic AI, AI-Ready Data Platforms, and Code-First APEX Development PLANO, TX, UNITED STATES, March

March 2, 2026

Unifly Acquires SORA Consulting to Strengthen European Drone Regulatory Capabilities

Unifly Acquires SORA Consulting to Strengthen European Drone Regulatory Capabilities

Deal adds Swiss SORA expertise and Drone Alliance Europe leadership to Unifly's growing European consulting operations

March 2, 2026

UK Author Chris Goodyear Releases Debut Novel ‘Kakose: Past Life’ Blending Time Travel and Samurai Tradition

UK Author Chris Goodyear Releases Debut Novel ‘Kakose: Past Life’ Blending Time Travel and Samurai Tradition

BIRMINGHAM, WEST MIDLANDS, UNITED KINGDOM, March 2, 2026 /EINPresswire.com/ — Chris Goodyear, a design engineer and

March 2, 2026

Corvic AI Launches Corvic Labs to Advance Open Agentic Infrastructure for Developers and Researchers

Corvic AI Launches Corvic Labs to Advance Open Agentic Infrastructure for Developers and Researchers

MOUNTAIN VIEW, CA, UNITED STATES, March 2, 2026 /EINPresswire.com/ — Corvic AI today announced the launch of Corvic

March 2, 2026

Government of Canada Commits to Working with Regeneration, Support Hedley Minerals Recovery and Restoration Project, BC

Government of Canada Commits to Working with Regeneration, Support Hedley Minerals Recovery and Restoration Project, BC

WASHINGTON, DC, UNITED STATES, March 2, 2026 /EINPresswire.com/ — Regeneration Enterprises, Inc. (Regeneration)

March 2, 2026

LSU Health Shreveport Launches First-of-Its-Kind Hybrid Doctor of Physical Therapy Program in Lafayette

LSU Health Shreveport Launches First-of-Its-Kind Hybrid Doctor of Physical Therapy Program in Lafayette

Louisiana’s first Hybrid Doctor of Physical Therapy program addresses critical workforce needs through alignment with

March 2, 2026

Secure Choice Lending Launches ListingCalifornia.com

Secure Choice Lending Launches ListingCalifornia.com

Secure Choice Lending launches Listing California, a platform for top savings, service, and rewards for sellers,

March 2, 2026

Techcyte Achieves CE Marking Under IVDR for Fusion AP Digital Pathology Platform

Techcyte Achieves CE Marking Under IVDR for Fusion AP Digital Pathology Platform

IVDR compliance is a critical milestone not only for regulatory readiness, but for the long-term sustainability of

March 2, 2026

Karns & Karns Personal Injury and Accident Attorneys Launch Dual-Office Expansion into New York City and Brooklyn

Karns & Karns Personal Injury and Accident Attorneys Launch Dual-Office Expansion into New York City and Brooklyn

Award-winning firm brings trial-ready representation and specialized survivor advocacy to Manhattan, Brooklyn, and the

March 2, 2026

Court Appoints Stephen J. Donell as Partition Referee in Estate Dispute, Case No. 24LBCV02623

Court Appoints Stephen J. Donell as Partition Referee in Estate Dispute, Case No. 24LBCV02623

On 01/14/26, L.A. Superior Court grants Stephen Donell authority to oversee the judicial sale of residential real

March 2, 2026

ACCESS Receivables Management Acquires Baltimore Credit and Collection Services, Inc. (BCCS)

ACCESS Receivables Management Acquires Baltimore Credit and Collection Services, Inc. (BCCS)

BCCS and Access Receivables are both members of The International Association of Commercial Collectors (IACC). Clients

March 2, 2026

February Caps / Harris Poll: Trump’s State Of The Union Address Gets A 60% Favorable Rating, With All 11 New Policies Receiving Majority Support

February Caps / Harris Poll: Trump’s State Of The Union Address Gets A 60% Favorable Rating, With All 11 New Policies Receiving Majority Support

52% OF VOTERS SAY ECONOMY IS BETTER TODAY THAN UNDER BIDEN, UP 5 PTS. FROM JANUARY65% OF VOTERS AGREE WITH THE SUPREME

March 2, 2026

Tiny plastics, Green solutions: how algae could help clean polluted waters

Tiny plastics, Green solutions: how algae could help clean polluted waters

GA, UNITED STATES, March 2, 2026 /EINPresswire.com/ — Microplastics have become pervasive pollutants in aquatic

March 2, 2026

EXG Pro Launches Officially Licensed Xanathar Cable Guy Crowdfunding Campaign

EXG Pro Launches Officially Licensed Xanathar Cable Guy Crowdfunding Campaign

EXG Pro, the creators of the globally recognised Cable Guys range, has launched its latest fan-driven project on

March 2, 2026

Selma Blair and Trevor Donovan, ‘Dancing with the Stars’ Alumni, Join Cast in ‘Ethan Almighty – Ethan’s Law’

Selma Blair and Trevor Donovan, ‘Dancing with the Stars’ Alumni, Join Cast in ‘Ethan Almighty – Ethan’s Law’

Expanding Ensemble Brings Recognizable Talent to Inspirational True Story This true story will touch your heart,

March 2, 2026

Simone K. Lelchuk Publishes Judges Journal Article on Strengthening Court-Appointed Neutral Process in Abuse Cases

Simone K. Lelchuk Publishes Judges Journal Article on Strengthening Court-Appointed Neutral Process in Abuse Cases

New national publication urges earlier judicial empowerment of neutrals in complex institutional matters NEW YORK, NY,

March 2, 2026

OUTSIDE TALKER PRESS ANNOUNCES CONEY ISLAND CRACKPOTS: SIX WEIRD AMERICAN PLAYS BY DICK D. ZIGUN

OUTSIDE TALKER PRESS ANNOUNCES CONEY ISLAND CRACKPOTS: SIX WEIRD AMERICAN PLAYS BY DICK D. ZIGUN

Outside Talker Press is thrilled to announce 'Coney Island Crackpots: Six Weird American Plays' by legendary Coney

March 2, 2026

Maritza Perez Releases Christian Memoir ‘From Shackles to Freedom’

Maritza Perez Releases Christian Memoir ‘From Shackles to Freedom’

A powerful new memoir exploring faith, healing, and breaking free from fear-based religion. I wrote this book for

March 2, 2026

Industry Analyst Jeff Kagan Warns of Fraudulent Executive Recruiters and Headhunters

Industry Analyst Jeff Kagan Warns of Fraudulent Executive Recruiters and Headhunters

Executive Recruiters, executives, and companies are being hurt by fraud Allow me to encourage executives, companies,

March 2, 2026

Concerns Over Harmful Private Listing Networks Explained by NAEBA (The National Association of Exclusive Buyer Agents)

Concerns Over Harmful Private Listing Networks Explained by NAEBA (The National Association of Exclusive Buyer Agents)

For National Consumer Protection Week, NAEBA calls for transparency, accurate sales data, and Fair Housing compliance

March 2, 2026

America’s Biggest South Asian Comedy Festival Expands to East Coast, Closes Historic Run at The Bell House in Brooklyn

America’s Biggest South Asian Comedy Festival Expands to East Coast, Closes Historic Run at The Bell House in Brooklyn

NEW YORK CITY, NY, UNITED STATES, February 27, 2026 /EINPresswire.com/ — Desi Comedy Fest, America’s biggest South

March 2, 2026

Revive Salon & Spa Expands Community Outreach Efforts in Noblesville

Revive Salon & Spa Expands Community Outreach Efforts in Noblesville

We want to be more than a salon — we want to be a place of healing and connection, Our goal is that every person…

March 2, 2026

Dennis, Wenger & Abrell Expands Carmel, Indiana Office Amid Growing Personal Injury Demand

Dennis, Wenger & Abrell Expands Carmel, Indiana Office Amid Growing Personal Injury Demand

Dennis, Wenger & Abrell, P.C. expands in Carmel, IN, offering trusted personal injury representation to Hamilton

March 2, 2026

Daytona International Speedway Recap: Dirt Legal DBD Racing WMR KTM Builds Momentum

Daytona International Speedway Recap: Dirt Legal DBD Racing WMR KTM Builds Momentum

Round eight of the Monster Energy Supercross Championship brought the team to the legendary Daytona International

March 2, 2026

eXp Realty Broker Gary Jensen Launches Ozarks Outlook Community Platform

eXp Realty Broker Gary Jensen Launches Ozarks Outlook Community Platform

Gary Jensen launches Ozarks Outlook, a community-driven platform connecting residents with local news, events,

March 2, 2026

Horizon Care Services Named ‘Best of 2026’ for Best Home Health Care

Horizon Care Services Named ‘Best of 2026’ for Best Home Health Care

“We are incredibly honored to receive the ‘Best of 2026’ award for Best Home Health Care" We are incredibly honored to

March 2, 2026

Gladstone Alternative Income Fund Announces Monthly Cash Distribution for March 2026

Gladstone Alternative Income Fund Announces Monthly Cash Distribution for March 2026

MCLEAN, VA / ACCESS Newswire / March 2, 2026 / Gladstone Alternative Income Fund ("Gladstone Alternative" or the

March 2, 2026

THE KOSCIUSZKO FOUNDATION POLISH FILM FESTIVAL IN WASHINGTON DC RETURNS MARCH 19-22

THE KOSCIUSZKO FOUNDATION POLISH FILM FESTIVAL IN WASHINGTON DC RETURNS MARCH 19-22

Washington DC’s Polish Film Festival returns Mar 19–22 at Landmark's Bethesda Row Cinema. Award-winning films, US

March 2, 2026

Velocity 360 USA Training Announces Enhanced Global Checkout for Exemplar Global Certified Auditor Training Programs

Velocity 360 USA Training Announces Enhanced Global Checkout for Exemplar Global Certified Auditor Training Programs

Our mission is to provide world-class auditor training without borders, maintaining the high standards expected of

March 2, 2026

Ontario-Based E-Commerce Brand ThereforeEssential Celebrates 13 Years of Purpose-Driven Apparel

Ontario-Based E-Commerce Brand ThereforeEssential Celebrates 13 Years of Purpose-Driven Apparel

Yvonne Bell Tumblin's online boutique continues to offer ethically made, inspirational clothing and accessories

March 2, 2026

GoTab Promotes Mateen Habib to Chief Growth Officer, Reaffirms Commitment to Operator First Pricing

GoTab Promotes Mateen Habib to Chief Growth Officer, Reaffirms Commitment to Operator First Pricing

First Chief Growth Officer Named Following 150% YoY Growth There is a lot of financial pressure and a lot of confusion

March 2, 2026

Wear Your PJs with a Purpose: Cribs for Kids Invites Communities Nationwide to Join PJs for Safe Sleep Day on April 16

Wear Your PJs with a Purpose: Cribs for Kids Invites Communities Nationwide to Join PJs for Safe Sleep Day on April 16

PITTSBURGH, PA, UNITED STATES, March 2, 2026 /EINPresswire.com/ — On April 16, put on your pajamas for a purpose.

March 2, 2026

Celebrate Spring at Long Island Aquarium with Festive Brunches, Family Fun, Camps, and Special Events All Season Long

Celebrate Spring at Long Island Aquarium with Festive Brunches, Family Fun, Camps, and Special Events All Season Long

Long Island Aquarium unveils spring events including Easter and Mother’s Day brunches, camps, expos and after-hours

March 2, 2026

Principled Technologies and the BenchmarkXPRT Development Community release WebXPRT 5

Principled Technologies and the BenchmarkXPRT Development Community release WebXPRT 5

WebXPRT 5, a free online performance evaluation tool, provides objective information about how well web-connected

March 2, 2026

Proper Insurance Joins Specialty Program Group, Accelerating Growth to the STR Insurance Market

Proper Insurance Joins Specialty Program Group, Accelerating Growth to the STR Insurance Market

Now, as part of SPG, Proper is positioned to grow further as the go-to coverage for short-term rental hosts across the

March 2, 2026

Pyrotechnics Guild International (PGI) announces activities associated with upcoming WISCONSIN FIREWORKS FESTIVAL

Pyrotechnics Guild International (PGI) announces activities associated with upcoming WISCONSIN FIREWORKS FESTIVAL

The PGI is an all-volunteer non-profit organization focused on the safe, legal, and artistic display of fireworks. PGI

March 2, 2026

Cambay Solutions Webinar – From Data Chaos to Clarity: Real-World Analytics with Microsoft Fabric & Power BI

Cambay Solutions Webinar – From Data Chaos to Clarity: Real-World Analytics with Microsoft Fabric & Power BI

Industry expert Scott Stamper to demonstrate how organizations can break down data silos and achieve a single source of

March 2, 2026