Wednesday, August 27, 2025

Only 7% of industries address vulnerabilities proactively, Kaspersky study

Islamabad : According to a latest study conducted by Kaspersky in collaboration with VDC Research 7% of industrial organizations tackle vulnerabilities only when necessary. This leaves them exposed to unplanned downtime, production losses and the reputational and financial damages that can result from possible cyber breaches..

A study “Securing OT with Purpose-built Solutions” conducted by Kaspersky in collaboration with VDC Research, illuminates the shifting landscape of cybersecurity within the industrial sector. Focusing on key industries such as energy, utilities, manufacturing and transportation, this research surveyed over 250 decision-makers to unveil vital trends and challenges faced in fortifying industrial environments against cyber threats.

Recent survey findings reveal a concerning trend: a significant number of organizations are not engaging in regular penetration testing or vulnerability assessments. Only 27.1% of respondents perform these critical evaluations on a monthly basis, while the majority—48.4%—conduct assessments every few months. Alarmingly, 16.7% do so only once or twice a year, and 7.4% address vulnerabilities solely as needed. This inconsistent approach can leave organizations vulnerable as they navigate an increasingly complex threat landscape.

Every software platform is inherently vulnerable to bugs, insecure code, and other weaknesses that malicious actors can exploit to compromise IT environments. For industrial companies, effective patch management is therefore crucial to mitigate these risks. Disturbingly, many organizations patch their OT (Operational Technology) systems only every few months or even longer, significantly heightening their risk exposure. Specifically, 31.4% apply patches monthly, while 46.9% do so every few months, and 12.4% update only once or twice a year.

These challenges in maintaining effective patch management are exacerbated in OT environments, where limited device visibility, inconsistent vendor patch availability, specialized expertise requirements and regulatory compliance add layers of complexity to the cybersecurity landscape. As IT and OT systems increasingly converge, there is a pressing need to harmonize these traditionally disparate systems, which have often relied on proprietary technologies rather than open standards. The challenge is further intensified by the rapid proliferation of Internet of Things (IoT) devices—ranging from cameras and smart sensors for asset tracking and health monitoring to advanced climate control systems. This explosion of connected devices broadens the attack surface for industrial organizations, underscoring the urgent need for robust cybersecurity measures.
A strong cybersecurity strategy begins with complete visibility into an organization’s assets, allowing leaders to understand what assets need protection and assess the highest risk areas. In environments where IT and OT systems converge, this demands more than just a comprehensive asset inventory. Organizations must implement a risk assessment methodology that is aligned with their operational realities.

For industrial customers, Kaspersky provides a unique ecosystem that seamlessly integrates specialized OT-grade technologies, expert knowledge and invaluable expertise. Kaspersky Industrial Cybersecurity (KICS), a native XDR platform for critical infrastructure, is the cornerstone of this OT ecosystem, that offers centralized asset inventory, risk management and audit, and enables security scalability across diverse, distributed infrastructure via a single platform. Additionally, Kaspersky recommends that industrial organizations adopt the Secure by Design ideology when deploying new OT devices or systems.
“At Kaspersky, we bring the Secure-by-Design concept to life through our Cyber Immunity approach. This means building products that are resilient by architecture — able to withstand attacks, even those exploiting unknown vulnerabilities. Unlike traditional systems, Cyber Immune products don’t rely on constant patching or external security layers. As a result, our clients benefit from stronger protection, simplified maintenance and a lower total cost of ownership — without compromising on security.” – says Dmitry Lukiyan, Head of KasperskyOS Business Unit.

With Cyber Immune products based on KasperskyOS, organizations can enhance their systems’ resilience with minimal additional cybersecurity costs, thereby reducing overall cybersecurity expenses in the long term.
To read the full report “Securing OT with Purpose-built Solutions”, please visit the website.

To learn more about industrial cyber resilience and ways to enable comprehensive protection of all the assets and processes, read out interactive guide.

Field Correspondent Sohail Majeed
+ posts

Sohail Majeed is a Special Correspondent at The Diplomatic Insight. He has twelve plus years of experience in journalism & reporting. He covers International Affairs, Diplomacy, UN, Sports, Climate Change, Economy, Technology, and Health.

Hot this week

Uraan Pakistan’ drives green buses, mangrove revival, and resilient healthcare, FM

Climate-Smart, Health-Responsive Infrastructure Now a National Priority Islamabad: Federal Minister...

Urgent need for industrial policy to boost sector performance, Haroon

Belgian-British economist and Haroon Akhtar khan Highlight Urgent Industrial...

BCCI agrees to add Pakistan’s name on their jersey

India has confirmed its compliance with the International Cricket...

National Summit for Malaria Elimination in early 2026, Dr. Mukhtar

Pakistan reveals key findings from first G6PD pilot to...

Experts urge integrating the climate-nutrition link into Pakistan’s NDCs and policies

Agriculture both contributes to and is impacted by climate...

NCSW links Women’s empowerment with environmental stewardship

Islamabad: – National Commission on the Status of Women...

Musadik Malik discussed strategies for addressing Karachi’s pressing challenges

Federal Minister Climate visits Karachi, reviews water and waste...

Joint committee urges the protection of auto sector households

Islamabad: The Joint Meeting of Senate Standing Committee on...

ECC approves key economic measures, relief for GB flood affects

Islamabad : The Economic Coordination Committee (ECC) of the...

Ida Rieu aims to strengthen special education across 57 OIC states

2nd Cohort of the COMSTECH–Ida Rieu Schools Joint Master...

Finance Minister hails establishment of PVARA

PVARA Convenes Inaugural Board Meeting to Shape the Future...

Space Camp to Train Future Pakistani Space Scientists & Engineers

SUPARCO's RESOLVE and Space Research Center, University of Central...

Ensuring safe, conducive learning environment in Islamabad schools & colleges, Committee

16TH MEETING OF THE STANDING COMMITTEE ON FEDERAL EDUCATION...

Related Articles

Popular Categories