TECHNOLOGY
Gas stations and beyond: Why cybersecurity is a top priority for industrial infrastructure

December 19, 2021 1:55 p.m.
By Chris Connell, Managing Director for Asia Pacific at Kaspersky
Industrial Control Systems (ICS) demand specific approaches to cybersecurity due to their complex structure, connected devices with different capabilities, software and operating systems, and critical functions. And this isn’t just a theory.
Something as common as a gas station has all the attributes of an ICS, such as connected equipment including pumps and tanks, controllers, a management system, a payment system, as well as connection to the corporate network, third-party service systems, and the internet. Just like any industrial facility, it has cybersecurity issues that companies should consider, to avoid disruptions that may affect the business, its employees, and the general public. This happened recently when gas stations in Iran were shut down because of a targeted attack.
This look through an ICS infrastructure is based on our research carried out at the end of 2020. It included the analysis of a modern gas station’s automation software architecture, a typical infrastructure, and the communications inside it. This allowed us to classify potential attack vectors and their impact on the fuel station’s network.
At a gas station
Imagine you’re driving your car and you need to fill it. You stop at a gas station, put the dispenser in the tank, and go to the convenience store to pay for the fuel. Once inside, the fresh coffee smells nice, you take some snacks for the road, complete your purchase and return to your vehicle.
To deliver the fuel to your tank, several systems should work: the back-office system and point of sales are used for payments and management functions. They are connected to the forecourt controller (FCC). This is the area with pumps outside the convenience store where customers park their cars to fill up. It is equipped with many systems such as a pump control, an automatic tank gauge (ATG), payment systems, etc. The FCC is the main device that controls fuel distribution, so when you pay through a cashier, the FCC commands the pump to supply it to your car so you can continue your journey.
Information about operations, the amount of fuel sold and available is transmitted to the management system locally and then to a head office that accumulates information from all stations.
Where are the problems?
Through our research, we managed to classify what could go wrong in this process. There are several potential operational technology (OT) and IT security issues that can affect the work of the station.
The first group of risks involves potential remote access from external networks. Just like many industrial systems today, the gas station employs solutions that are connected to public services through the internet, these include cloud banking systems or specialised fleet management systems. Remote access to the fuel station allows further malicious actions inside the network.
This was a real case described in one of Kaspersky’s studies. At the gas station, fuel management software was used to track the amount stored, set the price, and process payments. The system was connected to the internet and had vulnerabilities that allowed remote admin access with the ability to even change the fuel price.
There are also suppliers and service companies that have access to some parts of the infrastructure. Compromising these third parties may open doors to the target system for attackers. In fact, this type of threat is of great concern for companies of any size profile: a third (32%) of large organizations suffered attacks involving data shared with suppliers. What’s more, the financial impact of such incidents on enterprises is the highest across all types of attacks in 2021.
Another set of risks involves network and device issues that may potentially lead to the disruption of fuel station services or direct financial impact. Attacks can come from remote networks or by connecting to wireless networks or wired network ports available onsite.
Then, if the network is not segmented, the attack can spread from entry points such as secondary equipment in a shop and office workstations to critical components such as fuel management controls. The usage of unencrypted protocols (HTTP, CDP, FTP, Telnet, etc.) in the gas station network may allow adversaries to disclose sensitive information for further attack development.
Another critical but evergreen problem is vulnerabilities or security flaws in the fuel controller, POS terminals, and network equipment, as well as corporate endpoints and applications. In 2015, 5,800 automatic tank gauges (ATGs) were found to be exposed to unauthorized access from the internet because of a lack of password protection on a serial port. ATG is an electronic component placed in the tank that monitors the level of fuel and checks if it is leaking fluid. And through this serial port, the ATG can be programmed. If the signal it transfers is not correct, the operator won’t get an alert about any deviation. Figures from 2015 also suggested that at the time, most systems were in gas stations in the US and represented 3% of those used in the country. By compromising such critical systems as automatic tank gauges, criminals can unlock options for fraud or even physical damage.
It is also important to verify all workstations used on the forecourt such as points of sale, back-office systems, fuel controllers or payment terminals, as well as their configuration and even access to USB ports. For example, a lack of encryption or incompliancy to the PCI DSS standard in a payment system can contribute to the risk of an attack. For a fuel controller, it is also important to check industrial protocols. Lack of source authentication or integrity control may give adversaries, performing a man-in-the-middle attack, the opportunity to intercept data and manipulate station controllers.
Another point to manage is wireless gateways and reader units. A security assessment should be performed to identify insecure industrial protocols, the possibility of jamming and spoofing attacks.
How to improve
There are major security measures that should help increase the overall level of operational technology infrastructure. It is applicable to fuel stations but is no less relevant to any industrial network.
Network security: Purpose-based network segmentation enhances overall security and minimizes the surface of a possible attack. The segment of the network that has access to untrusted parts of it, such as corporate IT, should also be separated and protected with appropriate enterprise-grade protection software.
Passive OT network monitoring is essential for asset and communication inventory and detection of intrusions before they affect the technological process. Monitoring data also helps IT security teams to analyze events and consider hardening measures.
Access control: This should include restricting physical and logical access to the automation and control system. Security measures for remote access control for service companies will help to avoid third-party incidents.
Endpoint protection: It is important to implement specialized industrial-grade security software for OT hosts and servers. Ensure that the software is approved by the automation vendor and compatible with its solutions. This should help to avoid a situation where the protection product affects operation functions.
Security management: A system for centralized security event collection and protection software policy management should be implemented. It is also important that the solution allows vulnerability and patch management. If the system can be integrated with Security Information and Event Management (SIEM), that is a ‘nice to have’ option for organizations that plan to upgrade their protection level. Real-time continuous monitoring and endpoint data collection with rules-based response and analysis capabilities will help to further improve protection from advanced attacks.
A more fundamental approach that involves long-term measures is also important to improve the overall cybersecurity posture. This means adhering to industry standards for information security controls such as IEC 62443, NIST, NERC CIP, and so on. The organization should also conduct penetration testing or security analysis regularly, to identify vulnerabilities and information security problems before they are exploited by someone. And then, of course, follow all recommended measures to fix them properly.
Going deeper, there are specific requirements for companies with different levels of protection. But the measures listed above are essential to fill most cybersecurity gaps. Be it a fuel station, refinery, or giant car manufacturer, the basic principles of OT and IT protection should allow the company to build a reliable cybersecurity system and develop it according to their needs. This will provide a great foundation for satisfied business owners and happy clients.
TECHNOLOGY
Rest easy with the Index Sleep Monitor smart sleep band from Garmin

11:09 a.m. August 29, 2025
GARMIN has announced the Index™ Sleep Monitor, an ultra-comfortable and lightweight smart sleep band that tracks sleep for a more comprehensive view of overall fitness and recovery.
Featuring up to 7 nights of battery life with continuous Pulse Ox tracking, the Index Sleep Monitor is worn on the upper arm and tracks sleep stages, heart rate variability (HRV) status, breathing variations, skin temperature and more to calculate a sleep score for users and provide valuable insights about their health.
After a night of sleep, the data seamlessly syncs to the Garmin Connect™ smartphone app and can be combined with metrics from a compatible Garmin smartwatch to fill in gaps in data for users who don’t wear their watch at night or are looking to better understand how well they recovered.
“We are thrilled to add the Index Sleep Monitor to our suite of innovative health and wellness products. Wearing this smart sleep band every night can provide in-depth sleep insights and a more complete picture of fitness and recovery so users can wake up ready to seize the day.” — Susan Lyman, Garmin Vice President of Consumer Sales and Marketing
Rest and recover
Throughout the night, the Index Sleep Monitor tracks the following sleep and recovery metrics, which can then be viewed on the Garmin Connect app:
● Sleep score: Every morning, receive a personalized score (0-100) for last night’s sleep based on sleep duration, stress, sleep stages and more.
● Sleep stages: View light, deep and REM sleep stages and when they occur during the night.
● HRV status: See the previous night’s average HRV and status (balanced, unbalanced, low or poor). After several nights of wear, the smart sleep band will establish a personal baseline to help provide a better understanding of recovery and overall wellness.
● Pulse Ox: Track blood oxygen saturation during sleep1.
● Breathing variations: Used in conjunction with Pulse Ox, view and better understand shifts in breathing patterns while sleeping.1
● Respiration: View respiration rates throughout the night.
● Skin temperature: Track skin temperature changes, which can be related to recent activity, sleep environment, potential illness and more.
● Women’s health tracking: Using skin temperature, women can get more insights into their menstrual cycle, including improved period predictions and past ovulation estimates2. Women can also track their menstrual cycle or pregnancy and get exercise and nutrition education in the Garmin Connect app.
● Body BatteryTM energy monitoring: View energy levels to see if the body is charged or needs more rest. Users who wear a compatible smartwatch while awake can get a more complete picture of their energy levels—day and night.
● Stress tracking: See if last night’s sleep was calm, balanced or stressful.
When it’s time to wake up, the smart wake alarm feature looks at lighter sleep stages during a pre-selected window of time to gently wake users with a light vibration so they feel more refreshed.
Available in two sizes (S-M and L-XL), the Index Sleep Monitor is easy to clean; just remove the module and toss the band into the washing machine on the gentle cycle.
It is for P10,290.00 and available via official Garmin Stores online in Kinetic, Shopee, and Lazada and in all Garmin Brand Stores and Garmin Specialty Stores.
For more information, visit https://ph.garmin.com/.
TECHNOLOGY
Time to make your moment: OPPO Reno14 Series 5G now available for pre-order

9:11 p.m. August 10, 2025
OPPO’s latest smartphone series is now available for pre-order in the Philippines—and it’s built for those who want to turn everyday moments into stories worth sharing.
The OPPO Reno14 Series 5G brings together AI-powered photography, vivid 4K video, sleek design, and powerful performance, all in one beautifully crafted device. Whether you’re creating content, diving into your favorite game, or simply making your moment, the OPPO Reno14 Series 5G makes it effortless to discover and explore—without compromise.
Your Studio, In Your Pocket
Capture yourself at your best with AI Portrait capabilities that naturally refine lighting, angles, and facial details—no filters or editing apps needed. Want to adjust after the shot? Features like AI Recompose and AI Perfect Shot help you fix framing, expressions, and more—all within the native camera.
Even in low light, the Ultra-Clear Low-Light Camera System and AI Flash Photography keep your shots vivid and full of life—perfect for nights out, concerts, and candle-lit dinners.
Powered by next-gen chipsets, MediaTek Dimensity 8450 for OPPO Reno14 Pro 5G, Dimensity 8350 for OPPO Reno14 5G, and Snapdragon 6 Gen 1 for OPPO Reno14 F 5G, you can count on a fluid experience whether you’re gaming, streaming, or multitasking.
Smart features like AI HyperBoost 2.0 and AI LinkBoost 3.0 optimize gameplay, prevent lag, and keep your connection smooth wherever you are.
Designed to be seen
The Iridescent Mermaid Design of the OPPO Reno14 Series 5G is more than a color, it’s a statement. Inspired by the shimmer of light underwater, the finish is paired with Velvet Glass and aerospace-grade aluminum for a look and feel that’s luxurious, durable, and uniquely OPPO.
TECHNOLOGY
Concentrix Philippines releases iX Hero

9:21 p.m. July 30, 2025
Concentrix Corporation, a global technology and services leader that’s also the Philippines’ largest private employer, today announced the newest release of iX Hero: the company’s agentic AI-powered application that works together with a human in the loop to supercharge the way customer experience is delivered.
Joining the launch of iX Hero in the Philippines were Concentrix Chief Product Officer Ryan Peterson; Global Vice President, Product Management, Craig Cotton; and Vice President, Product and Domain Leader, Ratna Puri, together with Concentrix Philippines Executive Vice President and Chief Business Officer Amit Jagga, as well as Vice President for Transformation and Delivery Shared Services Larah Sta. Maria. The Department of Information and Communications Technology (DICT) represented by Assistant Secretary Migui Planas was also present for the event, which included a demo of the application and other AI-driven products in the Concentrix Intelligent Experience (iX) suite.
iX Hero supercharges advisor performance through multiple AI-driven features: from automatic conversation transcription and knowledge apps that find and surface ready-to-use answers to customer questions, to noise cancellation that cuts out distracting background noise and speech harmonization that helps every word during a conversation shine through, all the way to generating transaction summaries and insights that offer coaching tips for improvement – all in one place, all in real-time. It’s akin to giving the advisors superpowers that lead to faster onboarding, better performance, and smarter conversations, so they can focus on what matters most: the customers.
According to Concentrix Chief Product Officer Ryan Peterson, “iX Hero is the culmination of decades of Concentrix expertise in AI and automation, built on insights and fine-tuned from millions of interactions. As a company that supports over 2,000 of the world’s leading brands, we know what it takes for AI to complement human ingenuity because we’ve developed the products that have achieved concrete outcomes and growth for our people, clients and business.”
Enabling Job Access and Inclusivity
iX Hero’s impact to the workforce journey starts at the very beginning – helping job applicants get hired. One of iX Hero’s features called Harmony, fine-tunes speech patterns for clearer pronunciation, making sure every word lands perfectly while keeping voices natural and authentic, and has been piloted in the language assessment part of Recruiting in Concentrix Philippines. In the integrated business solutions industry where clear communication is essential, language skills tests are the first part of the recruiting process. During its pilot in the country prior to the launch, iX Hero’s Harmony enabled applicants’ speech to be clear and easy to understand while retaining their authentic voice, enabling passing scores for those who would otherwise not be able to move on to the next stages of the recruiting process due to language proficiency challenges on speech. As iX Hero is also deployed in the advisor workspace once they are hired, the real-time support continues, leading to superior performance and resulting in game-changing customer experiences.
According to Concentrix Philippines EVP and Chief Business Officer Amit Jagga, “Having the Harmony feature in iX Hero is a perfect example of how AI helps provide access to employment and greater job inclusivity for many Filipinos, in addition to upskilling. More than just a tech product launch, iX Hero represents our commitment to harnessing AI for good and keeping humans at the heart of digital transformation.”
According to DICT Assistant Secretary Planas, “In the DICT we have a slogan that says ‘Walang Iwanan sa Digital Bayanihan’, meaning “no one left behind,” which underscores the government’s mission for every Filipino to have access to technology, connectivity and with it, future-ready jobs. It is very encouraging to have private sector partners like Concentrix who contribute positively to this mission, in a very tangible way, through AI-powered products like iX Hero that can scale in use throughout the country, not just where the organization operates but also as it extends to Concentrix clients and partners who will use it as a solution and tool for their own workforce.”
Real-world results from iX Hero include 20% efficiency gains from quicker adaptation and skill acquisition in a supportive learning environment for sustained professional growth, 22% reduction in average call handling times, 13.5% increase in customer satisfaction and 30% improved communication from speech clarity, language proficiency and non-verbal skills. iX Hero received the TMC Generative AI Product of the Year Award and Concentrix’s iX Product Suite has already received over 20 industry awards globally.
For more information, meet iX Hero on the company website.