CISA Renews Plea for Better Password Security Amid New Attacks

May 7, 2025, 9:30 PM UTC

New guidance from the US Cybersecurity and Infrastructure Security Agency has put critical infrastructure companies on guard to address growing threats to their operational technology security.

The guidance on Tuesday came after the CISA, FBI and Department of Energy warned of increased cyber attacks on U.S. critical infrastructure, including the energy and transportation sectors. The attacks used unsecured passwords in operational technology devices as their launch point.

The warning is a wake-up call for all critical infrastructure industries that rely on operational technology, including healthcare, said Sonu Shankar, chief product officer of Phosphorus Cybersecurity. Operational technology refers to the hardware ...

Learn more about Bloomberg Law or Log In to keep reading:

See Breaking News in Context

Bloomberg Law provides trusted coverage of current events enhanced with legal analysis.

Already a subscriber?

Log in to keep reading or access research tools and resources.