Accessibility

OT and Cloud Training in Bangkok: Day 3 Recap

The third day of the OT and cloud security for government agencies in ASEAN countries brought focus back to operational technology and focusing on real-world case studies and practical response scenarios.

Through a series of case studies, participants examined how cyberattacks against OT environments unfold in practice and what lessons can be drawn from past incidents to improve prevention and preparedness. 

Sessions also explored common operational technology attack vectors, highlighting how adversaries exploit vulnerabilities across IT-OT boundaries, legacy systems and remote access points. Particular attention was given to supply chain vulnerabilities and the growing importance of third-party risk management processes as dependencies on external vendors and service providers continue to expand the attack surface of critical infrastructure operators. 

Day concluded with an interactive table-top exercise simulating a ransomware attack on industrial control systems (ICS). Working in groups, participants practiced organisational-level response , focusing on technical measures, decision-making, communication and escalation during energy infrastructure-focused cyber incident. The exercise reinforced the importance of preparedness, cooperation across IT and OT staff and clear response procedures when managing complex OT cyber crises. 

Training is delivered in collaboration between the European Union (facilitated by the EU Delegation to Japan and the EU Delegation to Thailand and implemented by the EU-funded project EU CyberNet), the ASEAN-Japan Cybersecurity Capacity Building Centre (AJCCBC), the National Cyber Security Agency of Thailand (NCSA) and the Japan International Cooperation Agency (JICA).   

Photos: https://flic.kr/s/aHBqjCHAqE 



Keep reading similar articles
At CyCon 2026: Municipal Resilience in Crisis, Conflict and Systemic Disruption

EU CyberNet hosted an interactive workshop, titled “Securing Cities: Municipal Cyber Resilience in Crisis, Conflict and Systemic Disruption” at CyCon 2026 on 26 May 2026.

Critical Sector Auditing and Risk Analysis Workshop Concluded After Three Days

The critical sector auditing and risk analysis workshop for Malaysia concluded after three days with practical table-top exercise to implement different auditing approaches.

Day 2 of the Critical Sector Auditing and Risk Analysis Workshop

Following the high-level opening conference, the second day of the critical sector auditing and risk analysis workshop for Malaysia focused on understanding different auditing approaches and their uses.

EU CyberNet Crash Course #3: Communication in Cybersecurity

The 3rd EU CyberNet Crash Course, titled “Communication in Cybersecurity” and led by Jussi Toivanen explored the fundamentals and role of communication in cyber-related crises and raising cyber awareness.

Critical Sector Auditing and Risk Analysis Workshop Opened with a High-Level Conference in Malaysia

Organised in cooperation between EU CyberNet and National Cyber Security Agency of Malaysia (NACSA), the workshop on critical sector auditing and risk analysis for Malaysia opened today, 20 May 2026 with a high-level conference.

Workshop on Critical Sector Auditing and Risk Analysis to Take Place This Week in Malaysia

EU CyberNet in cooperation with the National Cyber Security Agency (NACSA) of Malaysia and the Delegation of the European Union to Malaysia is organising a three-day programme on critical sector auditing and risk analysis from 20 to 22 May in Putrajaya, Malaysia.