COMING SOON [PERCH] is in final pre-launch. Be the first to know when it goes live. Get launch updates
TECHNICAL LIBRARY

News & Case Studies

Field research, technical articles and real deployment case studies from our industrial cybersecurity practice. Free to download — we just ask who you are.

TECHNICAL PAPER · ISSUE 01 Sources revalidated Aug 11, 2026

Iranian-Affiliated Cyber Actors Targeting Internet-Facing PLCs in U.S. Critical Infrastructure

Our first [PERCH] Industrial Cybersecurity Technical Paper. U.S. federal agencies warned that Iranian-affiliated actors are reaching internet-connected PLCs across critical infrastructure. This paper adds the industrial operations perspective: why reachability matters before patch status and why OT remediation is structural.

PLCs / ICS-OT Threat Intelligence CISA / FBI Advisory
multisumcybersec.com/papers/issue-01
Title banner of the [PERCH] technical paper ISSUE 01 on Iranian-affiliated actors targeting internet-facing PLCs
PUBLICATION ROADMAP

Coming next in the library.

Our research pipeline — the themes our team is writing right now. Subscribe below and each one lands in your inbox the day it's published.

CASE STUDY COMING SOON

Flat to segmented: rebuilding an industrial network without stopping production

How a mid-size transportation operator moved from a flat OT network to an IEC 62443 zone-and-conduit model over eleven months — the sequencing, the budget trade-offs, and the risk-index movement measured at each stage.

ISA/IEC 62443 Segmentation
WHITEPAPER COMING SOON

Asset inventory is the prerequisite nobody budgets for

Why CISA's OT asset inventory guidance is the single highest-leverage step in an industrial security program — and a practical method to build one without a greenfield project.

CISA CPG 2.0 Inventory
TECHNICAL ARTICLE COMING SOON

Reading KEV like an operator, not an auditor

CISA's Known Exploited Vulnerabilities catalog is not a patch list. A practical framework for translating KEV entries into operational decisions when downtime is not an option.

CISA KEV Vulnerability Mgmt
CASE STUDY COMING SOON

Water utility: from 61 to 28 risk index in three quarters

A regional water operator's improvement journal, reconstructed month by month — which controls moved the score, which ones did not, and what it actually cost.

Water Roadmap
TECHNICAL ARTICLE COMING SOON

Mapping NIST CSF 2.0 onto a plant that already runs 62443

The two frameworks overlap more than they conflict. A crosswalk that avoids duplicating evidence collection and keeps both audiences satisfied.

NIST CSF 2.0 ISA/IEC 62443
THREAT BRIEFING COMING SOON

Remote access is still the front door

A quarter of sector intrusions we reviewed began at a vendor remote-access path. What PULSE sees, and the compensating controls that actually held.

Remote Access MITRE ATT&CK/ICS
WHITEPAPER COMING SOON

Budgeting security by operational impact, not by control count

Most industrial security budgets are allocated by framework checklist. A model for ranking spend by measurable impact on continuity and safety instead.

Budget Risk Modeling