One in five data center assets are within easy reach of attackers, according to an analysis by Claroty [1].

This vulnerability exposes the critical infrastructure that keeps the internet operational. Because these systems manage essential power and cooling, a breach could lead to physical hardware failure or total facility shutdowns.

The analysis examined cyber-physical systems across 750,000 data center facilities worldwide [1]. These systems, known as CPS, integrate computing and networking with physical processes. Claroty said that a significant portion of these assets sit only one connection away from potential attackers [1].

Security risks are most prominent in power, cooling, and building systems [1]. These components are vital for maintaining the temperature and energy requirements of servers. If an attacker gains access to these specific systems, they can manipulate the physical environment of the data center, potentially causing overheating or power loss.

Claroty said that one in five data center CPS assets sit one connection from attackers [1]. The findings highlight a systemic gap in how industrial control systems are isolated from external networks.

Data centers have traditionally focused security efforts on the virtual layer, such as protecting data and software. However, this report suggests that the physical layer remains a primary target. The proximity of these assets to entry points means that once a perimeter is breached, the critical infrastructure is nearly exposed [1].

One in five data center CPS assets sit one connection from attackers.

The findings indicate a critical failure in 'air-gapping' or isolating the physical infrastructure of data centers from the digital networks they serve. As data centers scale to meet AI and cloud demands, the convergence of IT and operational technology (OT) creates a larger attack surface. This suggests that cybersecurity for data centers must shift from purely protecting data to securing the physical systems that sustain the hardware.