← All stories
● Covered by 1 source · 1 reportMedium impact1 negative

Only 13% of OT Network Segments Are Fully Isolated, According to Forescout Research

🔄 Updated 1d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Only 13% of OT network segments are fully isolated.
  • 6% of medical device segments are dedicated solely to IoMT.
  • IP cameras are the least isolated device type.
  • Forescout recommends visibility and containment over network redesign.

Limited Isolation of OT and IoMT Networks

A study by Forescout's Vedere Labs found that most organizations do not isolate their operational technology (OT) or connected medical devices (IoMT) on dedicated network segments. The research, which analyzed 47,700 network segments and over 2.5 million devices across 209 organizations, revealed that only 13% of segments with OT devices were exclusively OT. For medical devices, this figure dropped to just 6%.

Shared Networks Increase Risk

The majority of OT and IoMT segments share space with IT or IoT equipment, increasing potential attack vectors. IP cameras were identified as the least isolated device type, appearing in 5% of total segments, with only 2% of those being exclusively for cameras. The average network segment contained 54 devices of four different types, indicating complex and interconnected environments.

Industry-Specific Vulnerabilities

The largest average 'blast radius' for potential cyberattacks was observed in business and professional services, healthcare, and oil and gas sectors. Even in industries with lower overall averages, specific high-value systems remain vulnerable. For instance, in retail, only 20% of point-of-sale (POS) segments were dedicated solely to POS systems, with the rest often sharing networks with printers, VoIP equipment, or IP cameras.

Recommendations for Improved Security

Forescout recommends focusing on improved visibility and containment rather than complete network redesigns. Key recommendations include creating a comprehensive inventory of connected devices, identifying segments where risky device types converge, migrating critical OT and IoMT systems off general IT networks, breaking down oversized segments, and restricting unnecessary traffic between segments.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~26 min · 21 stories · Sep 23

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

New research from Forescout's Vedere Labs indicates that only 13% of network segments containing operational technology (OT) devices are fully isolated, with most sharing space with IT or IoT equipment. This lack of segmentation increases the attack surface for critical infrastructure and medical devices, posing significant cybersecurity risks.