← All stories
● Covered by 1 source · 1 reportMedium impact1 negative

Claroty Research Finds 18% of Data Center Infrastructure Assets Vulnerable to Attack

🔄 Updated 2d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • 18% of data center infrastructure assets are one hop from internet-exposed systems.
  • Claroty analyzed over 750,000 data center assets.
  • Vulnerabilities include insecure protocols, KEVs, and outdated firmware.
  • Attacks could disrupt cooling, power, and environmental controls.

Vulnerability of Data Center Infrastructure

New research from Claroty reveals that approximately 18% of cyber-physical systems (CPS) in data centers are just one network connection away from internet-exposed systems. This proximity creates a potential access vector for attackers to reach critical operational technology (OT) and infrastructure assets.

Scope of the Analysis

Claroty's analysis covered more than 750,000 data center assets, including 191,000 OT assets and 174,000 infrastructure assets. These infrastructure assets encompass systems such as HVAC, power monitoring and distribution, fire management, and UPS systems. While less than 0.4% of infrastructure assets are directly internet-exposed, 18% are a single 'hop' away from such systems.

Potential Attack Paths and Consequences

Attack paths could exploit weaknesses like insecure communication protocols, known exploited vulnerabilities (KEVs), unmanaged remote access, flat network architectures, weak authentication, and misconfigured asset communications. Successful attacks on these CPS could lead to disruptions in cooling operations, power distribution, environmental controls, and backup generation systems, degrading overall operational resilience.

Specific System Vulnerabilities

The research found that 41% of power distribution units and 32% of HVAC systems are one hop away from a risky internet connection. Building management systems were also identified as vulnerable, with 88% communicating over insecure protocols and 40% using outdated firmware. Additionally, 11,000 OT control systems, including SCADA and PLC devices, had known exploited flaws.

Recommendations for Strengthening Security

Claroty's report suggests practical steps to enhance data center operational resilience. These include adopting continuous exposure management, implementing zero trust network segmentation, hardening building management systems, and deploying protocol-aware threat detection.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~11 min · 9 stories · Aug 16

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Claroty research indicates that nearly one in five cyber-physical systems in data centers are one network connection away from internet-exposed systems, creating potential attack vectors. This proximity to internet-exposed systems could allow attackers to disrupt critical data center functions like cooling, power, and environmental controls.